I have a 5g ZTE modem with 2 LAN ports. I have connected to an old routerboard i have (951G), if i connect my laptop via LAN to the ZTE modem i can get 700Mbps, if i connect to the mikrotik only 70.
I have tried to hard reset the router and it does not make a difference.
On the modem then lan port settings are: MTU 1358, MSS 1318
if anyone could give some advice i would appreciate it.
I have a simple config,
Code: Select all
# nov/19/2021 20:38:03 by RouterOS 6.49.1
# software id = J3TZ-KVGS
#
# model = 951G-2HnD
# serial number = xxxxx
/interface bridge
add admin-mac=D4:CA:6D:DE:82:0D auto-mac=no fast-forward=no mtu=1500 name=\
bridge-local
add name=bridge_trunk vlan-filtering=yes
/interface wireless
set [ find default-name=wlan1 ] antenna-gain=0 band=2ghz-b/g/n channel-width=\
20/40mhz-Ce country=no_country_set frequency=2427 frequency-mode=\
manual-txpower mode=ap-bridge rx-chains=0 ssid=GCSA-Tech tx-chains=0 \
wireless-protocol=802.11
/interface ethernet
set [ find default-name=ether1 ] name=ether1-master-IMAX speed=100Mbps
set [ find default-name=ether2 ] mac-address=D4:CA:6D:DE:82:0D speed=100Mbps
set [ find default-name=ether3 ] mac-address=D4:CA:6D:DE:82:0E speed=100Mbps
set [ find default-name=ether4 ] l2mtu=1358 mac-address=9C:EB:E8:06:C9:5C mtu=\
1358 name=ether4-WAN speed=100Mbps
set [ find default-name=ether5 ] mac-address=D4:CA:6D:DE:82:10 name=\
ether5-Uplink speed=100Mbps
/interface vlan
add interface=bridge_trunk name=vlan1 vlan-id=1
add interface=bridge_trunk name=vlan20 vlan-id=20
add interface=bridge_trunk name=vlan30 vlan-id=30
/interface list
add name=mactel
add name=mac-winbox
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa2-psk eap-methods="" mode=\
dynamic-keys supplicant-identity=MikroTik
/ip ipsec proposal
set [ find default=yes ] enc-algorithms=3des
/ip pool
add name=default-dhcp ranges=10.1.0.100-10.1.0.150
add name=pool-vlan1 ranges=10.253.10.230-10.253.10.240
add name=pool-vlan20 ranges=10.253.20.230-10.253.20.240
add name=pool-vlan30 ranges=10.253.30.230-10.253.30.240
/ip dhcp-server
add address-pool=default-dhcp authoritative=after-2sec-delay disabled=no \
interface=bridge-local lease-time=3d name=default
add address-pool=pool-vlan1 disabled=no interface=vlan1 lease-time=1d name=\
dhcp-vlan1
add address-pool=pool-vlan20 disabled=no interface=vlan20 lease-time=1d name=\
dhcp-vlan20
add address-pool=pool-vlan30 disabled=no interface=vlan30 lease-time=1d name=\
dhcp-vlan30
/system logging action
set 0 memory-lines=100
set 1 disk-lines-per-file=100
/interface bridge port
add bridge=bridge-local hw=no interface=ether1-master-IMAX
add bridge=bridge_trunk interface=ether5-Uplink
add bridge=bridge_trunk interface=ether2 pvid=20
/interface bridge vlan
add bridge=bridge_trunk tagged=bridge_trunk vlan-ids=1
add bridge=bridge_trunk tagged=bridge_trunk,ether5-Uplink,ether2 vlan-ids=20
add bridge=bridge_trunk tagged=bridge_trunk,ether5-Uplink vlan-ids=30
/interface list member
add interface=ether2 list=mactel
add interface=ether3 list=mactel
add interface=ether2 list=mac-winbox
add interface=ether4-WAN list=mactel
add interface=ether3 list=mac-winbox
add interface=ether5-Uplink list=mactel
add interface=ether4-WAN list=mac-winbox
add list=mactel
add interface=ether5-Uplink list=mac-winbox
add interface=bridge-local list=mactel
add list=mac-winbox
add interface=bridge-local list=mac-winbox
/interface wireless access-list
add authentication=no forwarding=no interface=wlan1 mac-address=\
78:D7:5F:27:11:7C
/ip accounting
set enabled=yes
/ip address
add address=10.1.0.254/24 interface=bridge-local network=10.1.0.0
add address=10.253.10.254/24 interface=vlan1 network=10.253.10.0
add address=10.253.20.254/24 interface=vlan20 network=10.253.20.0
add address=10.253.30.254/24 interface=vlan30 network=10.253.30.0
/ip dhcp-client
add disabled=no interface=ether4-WAN
/ip dhcp-server lease
add address=10.253.30.102 client-id=1:64:79:f0:2f:fe:c7 comment="Lighting PC" \
mac-address=64:79:F0:2F:FE:C7 server=dhcp-vlan30
/ip dhcp-server network
add address=10.1.0.0/24 comment="default configuration" dns-server=10.1.0.254 \
gateway=10.1.0.254
add address=10.253.10.0/24 dns-server=10.253.10.254 gateway=10.253.10.254
add address=10.253.20.0/24 dns-server=10.253.20.254 gateway=10.253.20.254
add address=10.253.30.0/24 dns-server=10.253.30.254 gateway=10.253.30.254
/ip dns
set allow-remote-requests=yes servers=8.8.4.4,8.8.8.8
/ip dns static
add address=192.168.88.1 name=router
/ip firewall filter
add action=drop chain=input comment="block external dns requests" dst-port=53 \
in-interface=ether4-WAN protocol=tcp
add action=drop chain=input comment="block external dns requests" dst-port=53 \
in-interface=ether4-WAN protocol=udp
add action=accept chain=forward in-interface=vlan1 out-interface=vlan1
add action=accept chain=forward in-interface=vlan20 out-interface=vlan20
add action=accept chain=forward in-interface=vlan30 out-interface=vlan30
add action=drop chain=forward in-interface=vlan20 out-interface=vlan30
add action=drop chain=forward in-interface=vlan30 out-interface=vlan20
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether4-WAN src-address=\
10.253.10.0/24
add action=masquerade chain=srcnat out-interface=ether4-WAN src-address=\
10.253.20.0/24
add action=masquerade chain=srcnat out-interface=ether4-WAN src-address=\
10.253.30.0/24
add action=masquerade chain=srcnat dst-address=10.1.0.0/24 out-interface=\
ether4-WAN
/ip proxy
set cache-path=web-proxy1
/ip service
set api disabled=yes
/system clock
set time-zone-autodetect=no time-zone-name=Asia/Kuala_Lumpur
/system identity
set name=MT_imax
/system leds
set 0 interface=wlan1
/system ntp client
set enabled=yes primary-ntp=129.6.15.28 secondary-ntp=129.6.15.29
/tool mac-server
set allowed-interface-list=mactel
/tool mac-server mac-winbox
set allowed-interface-list=mac-winbox
/tool romon port
add