Used this config http://www.mikrotik.com/testdocs/ros/2. ... p#6.54.6.3
and added:
Code: Select all
/ip firewall nat add chain=srcnat src-address=192.168.2.0/24
/ip dns set allow-remote-requests=yes action=masquerade
For now it work but i have been looking /ip firewall connection
Code: Select all
/ip firewall connection print
Flags: S - seen reply, A - assured
# PR.. SRC-ADDRESS DST-ADDRESS TCP-STATE TIMEOUT
0 udp 192.168.1.2:1978 255.255.255.255:20561 10s
1 udp 192.168.2.20:138 192.168.2.255:138 1s
2 udp 192.168.1.3:5678 255.255.255.255:5678 3s
3 udp 192.168.2.100:5678 255.255.255.255:5678 3s
4 tcp 192.168.2.20:2721 192.168.249.223:135 syn-sent 2s
5 tcp 192.168.2.20:2722 192.168.249.224:135 syn-sent 2s
6 tcp 192.168.2.20:2723 192.168.249.225:135 syn-sent 2s
7 tcp 192.168.2.20:2724 192.168.249.221:135 syn-sent 2s
8 tcp 192.168.2.20:2725 192.168.249.222:135 syn-sent 2s
9 tcp 192.168.2.20:2726 192.168.249.226:135 syn-sent 2s
10 tcp 192.168.2.20:2727 192.168.249.227:135 syn-sent 2s
11 tcp 192.168.2.20:2728 192.168.249.228:135 syn-sent 2s
12 tcp 192.168.2.20:2729 192.168.249.229:135 syn-sent 2s
13 tcp 192.168.2.20:2730 192.168.249.230:135 syn-sent 2s
14 tcp 192.168.2.20:2731 192.168.249.231:135 syn-sent 2s
15 tcp 192.168.2.20:2732 192.168.92.68:139 syn-sent 2s
16 tcp 192.168.2.20:2733 192.168.92.96:445 syn-sent 3s
17 tcp 192.168.2.20:2734 192.168.249.192:445 syn-sent 3s
18 tcp 192.168.2.20:2735 192.168.249.191:445 syn-sent 3s
19 tcp 192.168.2.20:2736 192.168.249.232:135 syn-sent 3s
20 tcp 192.168.2.20:2737 192.168.249.193:445 syn-sent 3s
21 tcp 192.168.2.20:2738 192.168.249.194:445 syn-sent 3s
22 tcp 192.168.2.20:2739 192.168.249.233:135 syn-sent 3s
23 tcp 192.168.2.20:2740 192.168.249.234:135 syn-sent 3s
24 tcp 192.168.2.20:2741 192.168.92.105:135 syn-sent 4s
25 tcp 192.168.2.20:2742 192.168.92.104:135 syn-sent 4s
26 tcp 192.168.2.20:2743 192.168.92.80:80 syn-sent 4s
27 tcp 192.168.2.20:2744 192.168.92.81:80 syn-sent 4s
28 tcp 192.168.2.20:2688 192.168.92.92:445 syn-sent 1s
29 tcp 192.168.2.20:2687 192.168.92.60:139 syn-sent 1s
30 tcp 192.168.2.20:2686 192.168.92.59:139 syn-sent 1s
31 tcp 192.168.2.20:2685 192.168.249.202:135 syn-sent 1s
32 tcp 192.168.2.20:2684 192.168.249.201:135 syn-sent 1s
33 tcp 192.168.2.20:2683 192.168.249.200:135 syn-sent 1s
34 tcp 192.168.2.20:2682 192.168.249.199:135 syn-sent 1s
35 tcp 192.168.2.20:2681 192.168.92.61:139 syn-sent 1s
36 tcp 192.168.2.20:2745 192.168.92.69:139 syn-sent 4s
37 tcp 192.168.2.20:2746 192.168.92.70:139 syn-sent 4s
38 tcp 192.168.2.20:2690 192.168.249.204:135 syn-sent 2s
39 tcp 192.168.2.20:2689 192.168.249.203:135 syn-sent 2s
-- [Q quit|D dump|down]
Local (to users) IP is 192.168.2.100/24
All users have ip 192.168.2.x , subnet 255.255.255.0, Default Gateway: 192.168.2.100, DNS: 192.168.2.100.
Did i do something wrong maybe? Thanks