(it seems my previous topic was deleted without notification and I did not found any forum rules here so I am reposting it again).
After setting up my router (changed DHCP range, moved WAN to eth5, set up NAT rules) my internet stopped working. I can ping any address both from the router and my other devices on the network, even remotely access local devices via ssh from outside, but cannot access any webpage. this happens on all devices on my network
my interfaces look like follows:
Flags: D - dynamic, X - disabled, R - running, S - slave
# NAME TYPE ACTUAL-MTU L2MTU MAX-L2MTU MAC-ADDRESS
0 ether1 ether 1500 1598 2028
1 S ether2 ether 1500 1598 2028
2 RS ether3 ether 1500 1598 2028
3 RS ether4 ether 1500 1598 2028
4 R ether5 ether 1500 1598 2028
5 S wlan1 wlan 1500 1600 2290
6 R ;;; defconf
bridge bridge 1500 1598
Post output of /interface export (you can omit the wireless section but be sure to include everything else) and /ip firewall export … output of /ip firewall nat print you posted is not self-descriptive.
:facepalm: what was it :facepalm: disabling NAT rules 2 and 3 solved the internet access. I had trouble understanding how the from-ports and to-ports work, I will need to study a bit how to do proper port forwarding in mikrotik.
If you just make sure that the in interface on those 2 rules is set to be your WAN interface then only traffic coming in on the WAN will be affected by them, without that the rules will intercept the traffic on all interfaces.