Cleanup ???? Cleanup a network working over 10 years with 150 mikrotiks'router boards only for working with Dude server ?? you are kidding me.Cleanup your network so you don't need port forwardings for things like this...
Or make sure you forward all the ports required for the application you are running (Dude uses more than just SNMP)
CRS1xx, CRS2xx, DISC, LDF, LHG, NetBox, NetMetal, PowerBox, QRT, RB9xx, hAP, hAP ac, hAP ac lite, mANTBox, mAP, RB4xx, cAP, hEX, wAP, BaseBox, DynaDish, RB2011, SXT, OmniTik, Groove, Metal, Sextant, RB7xx don not have a Dude server/agent packages. This problem with port forwardin is not just about only for MIkrotik routerboards. For example i have a many devices like a mail servers (windows machines with SNPM), FTP servers (with SNMP), printers etc etc . I can not put all routing at all. Elementary redirects to port 161 and that's all ended in principle with other monitoring programs.
erebusodora,CRS1xx, CRS2xx, DISC, LDF, LHG, NetBox, NetMetal, PowerBox, QRT, RB9xx, hAP, hAP ac, hAP ac lite, mANTBox, mAP, RB4xx, cAP, hEX, wAP, BaseBox, DynaDish, RB2011, SXT, OmniTik, Groove, Metal, Sextant, RB7xx don not have a Dude server/agent packages. This problem with port forwardin is not just about only for MIkrotik routerboards. For example i have a many devices like a mail servers (windows machines with SNPM), FTP servers (with SNMP), printers etc etc . I can not put all routing at all. Elementary redirects to port 161 and that's all ended in principle with other monitoring programs.
I repeat the Dude server on RB1100AHx4 Dude Edition NOT working with forwarding SNMP porte. When create custom SNMP port on Dude server the server display random informations on forwarded mikrotik devices. Example: if i create 6 custom SNMP ports on Dude server. information on number 4 displaying in number 1 or information on number 3 displaying on number 2. Information for ROS version is not correct on forwarded mikrotik devices. All informations on forwarded device is random including SNMP interface etc.etc etc.erebusodora,CRS1xx, CRS2xx, DISC, LDF, LHG, NetBox, NetMetal, PowerBox, QRT, RB9xx, hAP, hAP ac, hAP ac lite, mANTBox, mAP, RB4xx, cAP, hEX, wAP, BaseBox, DynaDish, RB2011, SXT, OmniTik, Groove, Metal, Sextant, RB7xx don not have a Dude server/agent packages. This problem with port forwardin is not just about only for MIkrotik routerboards. For example i have a many devices like a mail servers (windows machines with SNPM), FTP servers (with SNMP), printers etc etc . I can not put all routing at all. Elementary redirects to port 161 and that's all ended in principle with other monitoring programs.
Feature request - Specify custom SNMP port for the device - [Already implemented]
Thank you!
Hello , eriitguyHello, erebusodora!
I just tested CHR with forwarded SNMP port in the test environment and it working fine.
Thank you!
erebusodora, I just tested more complex configuration. It seems that all working fine.Hello , eriitguy
In my case I have 30 board behind NAT. The schema you showed is just one board . In my case, the information from the boards behind NAT is mixed with other boards behind the NAT. Put two more boards behind NAT and try to see.
Your information is incomplete. No information about SNMP-->Interface, ip, Wireless station, queues etc.etc ???????. I'm talking about a real working environment not for a lab. I pay for license 6 and receive corrupted software !!!????. Tell me for what to use this board RB1100AHx4 Dude Edition !!! after it does not work with Dude or User manager..... only for power CPU??erebusodora, I just tested more complex configuration. It seems that all working fine.Hello , eriitguy
In my case I have 30 board behind NAT. The schema you showed is just one board . In my case, the information from the boards behind NAT is mixed with other boards behind the NAT. Put two more boards behind NAT and try to see.
Thank you!
Helloerebusodora, thank you for detailed information!
Yes, from information you provided it seems that an issue exist.
May I ask you about ROS Winbox access to the Minyor device? Does it is accessible via default 8291 port or it is NAT'ed also to the different port?
And if checkbox 'Router OS' and 'Secure Mode' are enabled on this device, like we see this for Pristoe-CDG device?
Theoretically, we may assume that information may be mixed because some information is retrieved via SNMP (Snmp tab) and some via ROS (RouterOS tab).
Thank you!
P.S: Now I find that ObA device in pictures is missing!!! . In DUde -client MAP the OBA device is there but in server is missing !!! .... strangely
HelloHello, erebusodora!
Thank you for provided screens!
From them we see that all ROS devices behind NAT have similar information: Resources, Routerboard and Health tab. Do they are similar devices and have same uptime?
We may start to find an issue from Minyor, because here you noticed only one issue - incorrect ROS version. We have two option here:
1. Disable ''Router OS" and "Secure mode" checkbox.
2. Change ROS port as described in the forum post: Specify custom Winbox port for ROS device in Dude. I have some issue with this in the test environment with CHR - but Mikrotik support replied that with Routerboard similar behavior is not noticed.
Thank you!
There is no question of changing anything on the topology of the network. Why other monitoring programs work correctly and we can not use the feature Dude server. Why pay then if it does not work with forwarding ports ?. Nowhere in the specifications does it say RB1100AHx4 Dude Edition -dude server is not working with forwarding ports.Fact is that your network design is not good. This has been discussed before. You are trying to work around it, but it would
be better to change the design so you can access your network devices directly, even if that involves a VPN overlay used just
for the monitoring.
Because those other programs use only SNMP (which you have handled) while Dude server also uses other methods of contacting the routers (which you haven't handled).Why other monitoring programs work correctly and we can not use the feature Dude server. Why pay then if it does not work with forwarding ports ?
There are many nets in the world with one, two, three or 30 NAT sequentially. I have personally seen 25 NAT consecutive. And why are they 25 is their reasons. I tried to run the Dude server with VLAN but it did not work properly too. I have too many reason not to work with VPN in Dude server but this is a other question not for this topic. Dude server is not a free product. He works with Miкrotiк products. So when we pay for why not claim about ways to work. I write to support Ticket#2018010822002005 we will see what they will say about it.Because those other programs use only SNMP (which you have handled) while Dude server also uses other methods of contacting the routers (which you haven't handled).Why other monitoring programs work correctly and we can not use the feature Dude server. Why pay then if it does not work with forwarding ports ?
So some of the replies come from the remote routers via your forwarded ports, and other replies come from the NAT router itself.
When you would not be so stubborn and e.g. would create a VPN solution from the network behind the NAT router to the Dude server, it would work and it would be much easier to configure and maintain.
I write to support Ticket#2018010822002005 we will see what they will say about it.erebusodora,
Probably a some time is required to update information in the Dude from the clients.
Anyway, you should change ROS port as you do it for Minyor or uncheck ''Router OS" and "Secure mode" for all ROS devices behind NAT. Also, please be aware that username and password are valid for all these devices - you may retype them again for reliability.
Wait some time - 1-10 minutes and see the results.
Next step is to ask support from Mikrotik, as we do all correctly - only they may help us. We may try to contact them tomorrow if the issue still exists.
Thank you!
This is good for us as we configured port forwarding on NAT device.Please note that The Dude does not know anything about the port forwarding, this is done the layer3 level. Thats why if the address is reachable from the Dude, you will see the same information as if the would be directly connected.
This sounds unusual. My tests shown that all should work fine.Also don't use same ip address specified on different devices, because this could lead to some misleading information shown on some fields
Thanks for understanding at last . I have not same ip behind NAT. I can not use this "Agents can be any RouterOS device. You don't need to install server on it, just use the same RouterOS version" (from Mikrotik support) because then other problems begins with DHCP, wireless disconnect after 6.38.5 version in devices behind NAT...... My dude is 6.40.5 version.Hello, erebusodora!
It seems that you are right, Dude v6 can't work correctly with SNMP forwarded ports at the moment - which was confirmed by support. Forgive me for misleading you...
As you mentioned I have added links between devices.
The results:
1. Information on devices labels is correct.
2. Information on devices tooltip is correct.
3. Information in SNMP tab is random - it may be from another device with same IP from the map and also can be wrong, like traffic on interfaces.
Dude-v6-Specify-custom-SNMP-port-Multiple-devices-issue-01-Map.png
Dude-v6-Specify-custom-SNMP-port-Multiple-devices-issue-02-Tooltip.png
Dude-v6-Specify-custom-SNMP-port-Multiple-devices-issue-03-SNMP-tab-01.png
Dude-v6-Specify-custom-SNMP-port-Multiple-devices-issue-03-SNMP-tab-02.png
Dude-v6-Specify-custom-SNMP-port-Multiple-devices-issue-04-Link-properties.png
Thank you!
I tried everything you described and including many other settings but the result is zero. The Dude not working with forwarding SNMP port. I wrote above the support write me "Dude is not working with worwarded SNMP port".erebusodora,
May I ask you to verify if ROS collecting data method show correct data in your configuration?
What will happening if we will configure 'routeros management' service with custom Winbox port for all devices behind NAT?
For this we should:
1. Elect 'no-snmp' SNMP profile.
2. Enable checkbox ''Router OS" and "Secure mode".
3. Configure custom Winbox port for 'routeros management' service.
See the results in RouterOS device tab.
I currently can't verify this in test environment because Dude on CHR can't connect to the CHR custom Winbox port - it was reported to the support.
Thank you!