Internet and Winbox stop working

Hi all,
I’m new to Mikrotik and trying to get a new CCR ready for production. I thought I had everything configured but, after connecting to our ISP, internet connectivity is lost after about 15 minutes. Additionally, at the same time internet connectivity is lost, both Winbox and Webfig are also no longer able to connect. Hopefully one of you can help. I am out of ideas and haven’t found anything applicable online.

-During the first ~15 minutes of connection to our ISP I see no performance issues.
-I can ping the router fine during the loss of internet/Winbox/Webfig.
-If I had a Winbox session open during the loss of internet I can continue to use that session fine, but if I close the session after loss of internet and try to reconnect I get, “error could not connect to x.x.x.x”.
-If I unplug the WAN port, after about another 15 minutes of trying, I can once again connect via Winbox and Webfig.
-Per the log, it appears the router continues to connect to a NTP server just fine while a web browser reports the internet is not connected.
-I have duplicated this same issue 3 times in a row now.

-We have a fixed public IP on cable internet.
-Ether1 is WAN and I have the other ports bridged.

I am attaching my config and log. The log covers the time from powering on the cable modem (11:16), and through: working internet, loss of internet/Winbox (11:32), unplugging WAN (11:52), and ending shortly after regaining Winbox connectivity (12:06). I added a number of additional log topics to try and diagnose the issue but nothing jumps out at me.

Please let me know any other info that may help to diagnose this issue and thank you kindly in advance.
log.0 12-09pm copy.txt (147 KB)
config.rsc (21.6 KB)

Are you able to login via Mac Telned?

If you have bgp enabled to your ISP they could be sending you bogon routes causing this issue.

I am actually able to access the router via the MAC-Server, specifically Winbox-MAC, while the internet is not working and Winbox-IP is unable to connect. What does this indicate to you?


I do have a BGP peering session with Team Cymru for BOGON routes, which is why the log I uploaded shows 38.229.6.20 and 38.229.46.20 to port 179 currently being dropped by my final firewall input chain rule. However, I have not set up BGP on the router, nor configured my firewall rules to use a dynamic BOGON list yet, so I don’t think this could be the cause of my issue. Could it?