Community discussions

MikroTik App
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Open Access to TikApp

Tue Jul 07, 2020 3:20 pm

Hello guys
I know that most of you are not a fan of opening access to the MT devices over WAN, I use the Mikrotik app very often on Wifi and I would like to have the ability to do so remotely as well

How can I open access from WAN for several IPs?
thanks in advance
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19325
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Open Access to TikApp

Tue Jul 07, 2020 3:47 pm

Hi Shy,
I do what you are looking to do over IKEv2 VPN connection.
One established the vpn tunnel from the smart phone to the router, then one opens the app and its like using winbox at home using ones PC.
Works great and IS SECURE.

I refuse to give any advice on opening up WINBOX on the internet without proper security. :-)
Other than to say look up port knocking as an alternative.............
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Open Access to TikApp

Tue Jul 07, 2020 4:22 pm

found the info for port knocking > https://wiki.mikrotik.com/wiki/Port_Knocking
how do I add secured addresses to the list?

And how do i make the ipsec setup?
 
User avatar
k6ccc
Forum Guru
Forum Guru
Posts: 1497
Joined: Fri May 13, 2016 12:01 am
Location: Glendora, CA, USA (near Los Angeles)
Contact:

Re: Open Access to TikApp

Tue Jul 07, 2020 9:47 pm

how do I add secured addresses to the list?
Firewall rules to allow access or allowed addresses to log on - or both.
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Open Access to TikApp

Tue Jul 07, 2020 11:21 pm

port knock is the thing, works flawlessly

How do i allow access to the box from lan without needs to port knock?
tnx
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19325
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Open Access to TikApp

Wed Jul 08, 2020 12:21 am

Hint winbox is a service on the router, where do you access services and where do you firewall them
Hint your the admin
Hint check out users
Hint check out IP services
Hint check MAC services
 
User avatar
mutluit
Forum Veteran
Forum Veteran
Posts: 821
Joined: Wed Mar 25, 2020 4:04 am

Re: Open Access to TikApp

Wed Jul 08, 2020 3:51 pm

How do i allow access to the box from lan without needs to port knock?
Grant access to the service for the allowed clients. There are many methods possible: firewall settings, services settings, user settings, depending on the port/service. You haven't stated what port or service it is.

Who is online

Users browsing this forum: grayfoxbsd and 78 guests