eneimi:
I assume you’ve connected the lan cable directly from the modem to your pc to confirm that works fine?
If it does, are you working behind a hotspot, or does your router have any queues or firewall filters in place?
Let’s see your router config: ip addresses, dns, routes, firewall filter and nat, hotspot and queues as well (if any).
enemie, if i connect the laptop directly to modem the connection works fine even 5 tab youtube at a time. my setup is so simple no advance routing. but if the rb450g connected to modem the problem still same. im out of idea even i disable all rules.
[myron@Kamote] /ip address> print
Flags: X - disabled, I - invalid, D - dynamic
ADDRESS NETWORK BROADCAST INTERFACE
0 ;;; WAN
xxx.xx.xx.xxx/24 xxx.xx.xx.0 xxx.xxx.xx.xxx WAN
1 ;;; opera vlan id 2
192.168.1.1/24 192.168.1.0 192.168.1.255 opera vlan
2 ;;; office vlan id 3
192.168.2.1/24 192.168.2.0 192.168.2.255 office vlan
3 ;;; hotspot vlan id 4
192.168.3.1/24 192.168.3.0 192.168.3.255 hotspot vlan
4 ;;; ether4_expermental
192.168.100.1/30 192.168.100.0 192.168.100.3 ether4-local
5 D 192.168.2.6/32 192.168.1.3 0.0.0.0
/ip firewall filter
add action=passthrough chain=unused-hs-chain comment=“place hotspot rules here” disabled=yes
add action=drop chain=forward comment=“not allowed” disabled=no in-interface=“hotspot vlan” out-interface=
“office vlan”
add action=drop chain=forward comment=“” disabled=no in-interface=“hotspot vlan” out-interface=“opera vlan”
add action=drop chain=forward comment=worms disabled=no dst-port=
135-139,445,539,5554,1068,9996,4444,43,17300,6969 protocol=tcp
add action=drop chain=forward comment=“” disabled=no dst-port=
1030,1080,1214,1363,1368,1373,1377,1433-1434,2745 protocol=tcp
add action=drop chain=forward comment=“” disabled=no dst-port=
135-139,445,69,53,2283,2535,3127-3128,3410,5554,8866,9898,1900 protocol=udp
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“Port scanners to list " disabled=no protocol=tcp psd=21,3s,3,1
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“NMAP FIN Stealth scan” disabled=no protocol=tcp tcp-flags=fin,!syn,!rst,!psh,!ack,!urg
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“SYN/FIN scan” disabled=no protocol=tcp tcp-flags=fin,syn
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“SYN/RST scan” disabled=no protocol=tcp tcp-flags=syn,rst
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“FIN/PSH/URG scan” disabled=no protocol=tcp tcp-flags=fin,psh,urg,!syn,!rst,!ack
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“ALL/ALL scan” disabled=no protocol=tcp tcp-flags=fin,syn,rst,psh,ack,urg
add action=add-src-to-address-list address-list=“port scanners” address-list-timeout=2w chain=input comment=
“NMAP NULL scan” disabled=no protocol=tcp tcp-flags=!fin,!syn,!rst,!psh,!ack,!urg
add action=drop chain=input comment=“dropping port scanners” disabled=no src-address-list=“port scanners”
add action=drop chain=input comment=“drop ftp brute forcers” disabled=no dst-port=21 protocol=tcp
src-address-list=ftp_blacklist
add action=accept chain=output comment=”" content=“530 Login incorrect” disabled=no dst-limit=
1/1m,9,dst-address/1m protocol=tcp
add action=add-dst-to-address-list address-list=ftp_blacklist address-list-timeout=3h chain=output comment=“”
content=“530 Login incorrect” disabled=no protocol=tcp
add action=drop chain=input comment=“drop ssh brute forcers” disabled=no dst-port=22 protocol=tcp
src-address-list=ssh_blacklist
add action=add-src-to-address-list address-list=ssh_blacklist address-list-timeout=52w2d chain=input comment=
“” connection-state=new disabled=no dst-port=22 protocol=tcp src-address-list=ssh_stage3
add action=add-src-to-address-list address-list=ssh_stage3 address-list-timeout=1m chain=input comment=“”
connection-state=new disabled=no dst-port=22 protocol=tcp src-address-list=ssh_stage2
add action=add-src-to-address-list address-list=ssh_stage2 address-list-timeout=1m chain=input comment=“”
connection-state=new disabled=no dst-port=22 protocol=tcp src-address-list=ssh_stage1
add action=add-src-to-address-list address-list=ssh_stage1 address-list-timeout=1m chain=input comment=“”
connection-state=new disabled=no dst-port=22 protocol=tcp
add action=accept chain=forward comment=“hotspot no rules " disabled=no in-interface=“hotspot vlan” time=
18h-23h59m,sun,mon,tue,wed,thu,fri,sat
add action=accept chain=forward comment=”" disabled=no in-interface=“hotspot vlan” time=
1h-6h59m,sun,mon,tue,wed,thu,fri,sat
add action=accept chain=forward comment=“” disabled=no out-interface=“hotspot vlan” time=
18h-23h59m,sun,mon,tue,wed,thu,fri,sat
add action=accept chain=forward comment=“” disabled=no out-interface=“hotspot vlan” time=
1h-6h59m,sun,mon,tue,wed,thu,fri,sat
add action=accept chain=forward comment=rdp disabled=no dst-port=3389 protocol=tcp
add action=accept chain=forward comment=“brother printer port” disabled=no dst-port=54921 protocol=tcp
add action=accept chain=forward comment=“” disabled=no dst-port=54925,54926 protocol=udp
add action=accept chain=forward comment=ICMP disabled=no protocol=icmp
add action=accept chain=forward comment=“mail, pop3” disabled=no dst-port=25,26,143,110,465,995,2525,587,993
protocol=tcp
add action=accept chain=forward comment=HTTP disabled=no dst-port=80,81 protocol=tcp
add action=accept chain=forward comment=HTTPS disabled=no dst-port=443 protocol=tcp
add action=accept chain=forward comment=MSN disabled=no dst-port=1863,6891-6900,7001 protocol=tcp
add action=accept chain=forward comment=“” disabled=no dst-port=6901 protocol=udp
add action=accept chain=forward comment=“ventrillo and mumble” disabled=no dst-port=4346,64738 protocol=tcp
add action=accept chain=forward comment=“vonage " disabled=no dst-port=10000-20000 protocol=udp
add action=accept chain=forward comment=”" disabled=no dst-port=5050,5060-5063 protocol=udp
add action=accept chain=forward comment=“” disabled=no dst-port=123 protocol=udp
add action=accept chain=forward comment=“” disabled=no dst-port=80 protocol=udp
add action=accept chain=forward comment=SSH disabled=yes dst-port=22,23 protocol=tcp
add action=accept chain=forward comment=eve-online disabled=no dst-port=26000,6112 protocol=tcp
add action=accept chain=forward comment=winbox disabled=no dst-port=8291 protocol=tcp
add action=accept chain=forward comment=“cctv port” disabled=no protocol=tcp src-port=8000-8001
add action=accept chain=forward comment=mirc disabled=no dst-port=6665-7000 protocol=tcp
add action=accept chain=forward comment=“streaming server” disabled=no dst-port=8000 protocol=tcp
add action=accept chain=forward comment=“instant messenger” disabled=no dst-port=5050,5100 protocol=tcp
add action=accept chain=forward comment=“nano allow” disabled=no protocol=tcp src-port=1234,12345
add action=accept chain=forward comment=“ubi to outside” disabled=no dst-port=12345 protocol=tcp
add action=accept chain=forward comment=teamspeak disabled=no dst-port=9987 protocol=udp
add action=accept chain=forward comment=“google talk” disabled=no dst-port=5222,5223 protocol=tcp
add action=accept chain=forward comment=pptp disabled=no protocol=gre
add action=accept chain=forward comment=“zynga poker” disabled=no dst-port=9339 protocol=tcp
add action=accept chain=forward comment=“china stock exchange” disabled=no dst-port=7708-7709 protocol=tcp
add action=accept chain=forward comment=FTP disabled=no dst-port=20,21 protocol=tcp
add action=accept chain=forward comment=“” connection-state=established disabled=yes
add action=accept chain=forward comment=“” connection-state=related disabled=yes
add action=accept chain=forward comment=“fuego smtp/webmail” disabled=no dst-port=2095 protocol=tcp
add action=accept chain=forward comment=“mikrotik remote support” disabled=no dst-port=1122 protocol=tcp
add action=accept chain=forward comment=“cctv port dst” disabled=no dst-port=63600-63400 protocol=tcp
add action=accept chain=forward comment=dns disabled=no dst-port=53 protocol=tcp
add action=accept chain=forward comment=“” disabled=no dst-port=53 protocol=udp
add action=accept chain=forward comment=“taiwan webmail” disabled=no dst-port=3000 protocol=tcp
add action=drop chain=forward comment=torrent disabled=yes dst-port=10000-65500 protocol=tcp src-port=
50000-65500 time=8h-17h59m,sun,mon,tue,wed,thu,fri,sat
add action=drop chain=forward comment=“” disabled=yes dst-port=10000-65500 protocol=udp src-port=50000-65500
time=7h-17h59m,sun,mon,tue,wed,thu,fri,sat
add action=drop chain=forward comment=“” disabled=yes dst-port=10000-65500 protocol=tcp src-port=10000-65500
time=7h-17h59m,sun,mon,tue,wed,thu,fri,sat
add action=drop chain=forward comment=“” disabled=yes dst-port=10000-65500 protocol=udp src-port=10000-65500
time=7h-17h59m,sun,mon,tue,wed,thu,fri,sat
add action=drop chain=forward comment=snmp disabled=yes dst-port=161 protocol=udp
add action=drop chain=input comment=“8080 exploit” disabled=no dst-port=8080 in-interface=WAN protocol=tcp
add action=drop chain=forward comment=“P2P block” disabled=no p2p=all-p2p
add action=drop chain=forward comment=“default drop” disabled=no out-interface=WAN
/ip firewall mangle
add action=mark-connection chain=prerouting comment=“Peer to Peer” disabled=no new-connection-mark=
p2p_download p2p=all-p2p passthrough=yes
add action=mark-packet chain=prerouting comment=“” connection-mark=p2p_download disabled=no new-packet-mark=
p2p passthrough=yes
/queue type
set default kind=pfifo name=default pfifo-limit=10
set ethernet-default kind=pfifo name=ethernet-default pfifo-limit=50
set wireless-default kind=sfq name=wireless-default sfq-allot=1514 sfq-perturb=5
set synchronous-default kind=red name=synchronous-default red-avg-packet=1000 red-burst=20 red-limit=60
red-max-threshold=50 red-min-threshold=10
set hotspot-default kind=sfq name=hotspot-default sfq-allot=1514 sfq-perturb=5
add kind=pcq name=small-type pcq-classifier=dst-address pcq-limit=50 pcq-rate=1000000 pcq-total-limit=2000
add kind=pcq name=p2p_download pcq-classifier=dst-address pcq-limit=50 pcq-rate=128000 pcq-total-limit=2000
add kind=pcq name=p2p_upload pcq-classifier=src-address pcq-limit=50 pcq-rate=64000 pcq-total-limit=2000
set default-small kind=pfifo name=default-small pfifo-limit=10
/queue simple
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment=p2p_user direction=both disabled=no
dst-address=0.0.0.0/0 interface=all limit-at=0/0 max-limit=0/0 name=p2p packet-marks=p2p parent=none
priority=8 queue=p2p_upload/p2p_download total-queue=default-small
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment=office direction=both disabled=yes
dst-address=0.0.0.0/0 interface=all limit-at=0/0 max-limit=64k/1M name=office parent=none priority=8
queue=default-small/default-small target-addresses=192.168.2.0/24 total-queue=default-small
/queue interface
set WAN queue=ethernet-default
set ether2-local queue=ethernet-default
set ether3-local queue=ethernet-default
set ether4-local queue=ethernet-default
set ether5-local queue=ethernet-default
set “opera vlan” queue=default
set “office vlan” queue=default
set “hotspot vlan” queue=default
set ovpn-in1 queue=default
set malinaobranch queue=default
set test queue=default