hi i have a problem, my internal network ip address gateway (192.168.0.1) being hijacked, im using mk2.8.15 and dhcp server for my internal address. any one have any suggestion to aviod this happen again, i really hate this, this problem ruin my entire vacation ![]()
set reply-only for arp in /ip arp
that means static arp entries
cmiiw?
ok i will try it, thx
it dosn’t work…if this dummy gateway show’s up my network is going down again ![]()
It appears there is no cure in current version. I have the same problem. Even cheap routers have MAC and IP pairing on any interface and it WORKS. Mikrotik network probably can be put down by anyone using gate IP address.
just like it was suggested, RouteOS DOES have mac and IP pairing, it can be done with proxy ARP. So your cheap routers would not do any better as it seems
now i move my ip gateway address to another ip, hope this works, if is still doesn work, i will find that person who did this and kick his butt… ![]()
Try disable forwarding on wireless between users and set static ARP and reply only on interface… it may help
Normis. Manual isn’t verbose about it. I read it many times. Tried it on my equipment and problems still happen.
I have MT with all interfaces bridged. For which interface I have to set static ARP? Bridge? And arp reply only on interfaces to which clients connects? Would you give me example?
Does “arp reply only” setting affects DHCP? I have centralised DHCP server and it’s not Mikrotik. I want Mikrotik to be transparent for arp traffic except bad MAC-IP pairs.
i have tried to set the arp in reply only mode and add arp list manually, it doesnt work because that dummy gateway using xp box and it has it own dhcp server. so set this to static it doesnt help and make my network totaly jam ![]()
bridge filter may help to filter DHCP packets… and disabled forward on card also…