Community discussions

MikroTik App
 
oliverbedi
just joined
Topic Author
Posts: 22
Joined: Thu Aug 10, 2017 11:49 am

one way trafic between bridges

Thu May 17, 2018 4:12 pm

Halo,

have two network on same mikrotik
Device: Mikrotik hAP lite

bridge1: wlan to brdige
wlan: internet (mobile hotspot)
eth3: lan
eth4: lan

brdige2: proxy to switch
eth1: internet (proxy)
eth2: lan

i want one way trafic from bridge1 to brdige 2, because i can use RDP and SMB

What i do configure firewall??

thanx for time.
 
User avatar
CZFan
Forum Guru
Forum Guru
Posts: 2098
Joined: Sun Oct 09, 2016 8:25 pm
Location: South Africa, Krugersdorp (Home town of Brad Binder)
Contact:

Re: one way trafic between bridges

Thu May 17, 2018 7:34 pm

Create a firewall filter rule:

chain forward, source address bridge2 subnet, destination address bridge1 subnet, connection state new and action drop

rule order is important, but I would think it will be safe to place the above rule at very top
 
oliverbedi
just joined
Topic Author
Posts: 22
Joined: Thu Aug 10, 2017 11:49 am

Re: one way trafic between bridges

Fri May 18, 2018 3:21 pm

halo,

use youre config, but still not working for me.
/ip firewall filter
add action=drop chain=forward connection-state=new dst-address=\
192.168.10.0/24 src-address=10.129.34.0/24

[*]
slovák
[*]
 
sri2007
Member Candidate
Member Candidate
Posts: 206
Joined: Wed May 20, 2015 10:14 pm
Location: Lake Grove, NY

Re: one way trafic between bridges

Fri May 18, 2018 5:16 pm

Hi! You may be able to configure some bridge-filter rules too:

https://wiki.mikrotik.com/wiki/Manual:I ... e_Firewall

And also, if you're configuring bridges, and you want to filter something, you may need to disable fastpath.
 
oliverbedi
just joined
Topic Author
Posts: 22
Joined: Thu Aug 10, 2017 11:49 am

Re: one way trafic between bridges

Mon May 21, 2018 8:15 pm

Halo,

sorry for incomplete information, but me idea is on attachment.

My own idea is with two bridges, with trafic oneway.


Do you know a better solution?
I'm a newcomer, I'll have a better way.


well thank you
You do not have the required permissions to view the files attached to this post.

Who is online

Users browsing this forum: No registered users and 37 guests