Please give me some advice regarding my home network architecture. I have nice FTTH fiber connection, but my provider gave me router with NAT ;-(
This router has some basic configuration possibilities: DMZ, port forwarding, DHCP, etc. One of 4 LAN ports is for internet, second for TV and next for future.
I need much more, but I just still wondering if the best idea is to build second NAT with default router MikroTik MT RB2011UiAS-RM or just to use FTTH only as a gateway.
I have also managed 24 ports TPLink Switch which is connected right now to FTTH router.
I have to options:
A. Use RB2011UiAS-RM as a second NAT directly after FTTH router, and next connections to Switch.
B. Use FTTH router as a gateway and that’s all, any other network services and advanced use will be made by RB2011UiAS-RM. In this case I should use same class network in both routers.
Questions:
Some disadvantages of solutions Option A?
If there is feasible option B - if yes how to configure RB2011UiAS-RM router to use same network class on WAN and LAN1 interface (f.e WAN - 192.168.200.200, LAN1 - 192.168.200.210)
I’m going to run HE ipv6 tunnel, OpenVPN server, some HTTPS and HTTP services.
If you have also some concerns to use double NAT I will use option B, but please help me to clarify some questions:
gateway will be this FTTH router and can I use RB2011UiAS-RM in this case same class network in both routers,
2 how should I config WAN (f.e WAN - 192.168.200.200, LAN1 - 192.168.200.210)
Is anything special beside static network config for RB2011UiAS-RM to have FTTH roter as a gateway and
all traffic should go always go thru RB2011UiAS-RM
Don’t expect that 2011 will nat more than 200-300 Mbits /s depending on number and complexity of firewall rules so it may be even less . Is this enough for you?
Now the connection is 50 Mbps and I don’t think that I will need more than 100/100 Mbps in next 12-24 months
This all is for home users, streaming internet TV (Netflix, etc) and standard web browsing.
I’m using two Roku devices (Roku 2 and Roku 3) with unotelly.com DNS service.
That is the reason why I need to have more sophisticated router.
I have to configure DHCP service for different MAC different DNS provided by DHCP.
I kind of know what you mean. Alternatively you can use vpn service provider for netflix. It is quite easy to set up in mikrotik and push traffic through the vpn interface to the roku IP in your network. Have you considered that?