I have RouterOS 2.8.12 and hotspot authentification for users on wireless interface, classic setup for ISP. From last week users sometimes have problems to get login page for HOTSPOT. Ping and DNS works OK but it is very hard (sometimes never sometimes for 2-3 minutes) to open login page. I don’t now what can be problem for this unusual behavior.
Problem was Sasser warm on several clients machine, which made a lot of packets on port 445 which have NAT to 80 (fot HotSPOT). From that reason HOPSPOT access is when clients are online unavailable. You can see that connections (more than several 1000) in firewall/connection list. DESTINATION NAT rule for 445 and INPUT chain DROP rule for TCP 445 solved problem. I recomend anyone to have that rule.
Is It practise here to give question and answer by yourself? ![]()
of course, think of all the time and bandwidth saved;-)
but no, if you don’t get an answer within a few days, probably the problem did not occur to others or it could not be understood from the description.