Community discussions

MikroTik App
 
pinkviolette
just joined
Topic Author
Posts: 4
Joined: Wed Feb 08, 2023 10:33 pm
Location: France

Help needed to configure

Fri Feb 10, 2023 3:00 pm

Hi everyone,
I now have an infrastructure I make in order to host some games for my community of gamers. I have an AOC cable connected to my server, which is use as a proxmox virtual environment (PVE). I got a VM hosting PfSense but unfortunately, I cannot use all the services PfSense can offer. Iptables is terrible as I don't use both 10G ports on the server.
This is the diagram I wish to go to:
Image

I hope someone will take a bit time to explain me how can I configure my CRS305 to get a nice working infrastructure... :D

What I can/can't do which can be helpful:
- I can DMZ from modem/router
- Link between modem/router is only AOC
- Links between CRS305 and server are only DAC
Wishes:
- I'd like to access proxmox from anywhere
- I have a webserver in VMs (80 and 443)
 
User avatar
BartoszP
Forum Guru
Forum Guru
Posts: 2877
Joined: Mon Jun 16, 2014 1:13 pm
Location: Poland

Re: Help needed to configure

Fri Feb 10, 2023 4:30 pm

 
User avatar
own3r1138
Long time Member
Long time Member
Posts: 689
Joined: Sun Feb 14, 2021 12:33 am
Location: Pleiades
Contact:

Re: Help needed to configure

Fri Feb 10, 2023 4:50 pm

 
ConradPino
Member
Member
Posts: 337
Joined: Sat Jan 21, 2023 12:44 pm
Contact:

Re: Help needed to configure

Fri Feb 10, 2023 8:07 pm

For wire speed performance limit CRS305 configuration to VLAN switching. CRS305 can route and firewall, it's just not good at those jobs.

Does modem/router at 192.168.0.254 support tagged VLAN packets on interface to CRS305?
 
pinkviolette
just joined
Topic Author
Posts: 4
Joined: Wed Feb 08, 2023 10:33 pm
Location: France

Re: Help needed to configure

Fri Feb 10, 2023 9:51 pm

For wire speed performance limit CRS305 configuration to VLAN switching. CRS305 can route and firewall, it's just not good at those jobs.

Does modem/router at 192.168.0.254 support tagged VLAN packets on interface to CRS305?
I don't think so. Settings on modem/router are cheap ^^
Edit: Sure it ain't support tagged VLAN. I just saw on the ticket website (someone ask for it...)
Last edited by pinkviolette on Fri Feb 10, 2023 10:08 pm, edited 1 time in total.
 
pinkviolette
just joined
Topic Author
Posts: 4
Joined: Wed Feb 08, 2023 10:33 pm
Location: France

Re: Help needed to configure

Fri Feb 10, 2023 9:58 pm

In my case, I just want to know how to share 1 wan/2 lans.
 
pinkviolette
just joined
Topic Author
Posts: 4
Joined: Wed Feb 08, 2023 10:33 pm
Location: France

Re: Help needed to configure

Fri Feb 10, 2023 10:12 pm

Well, I just need to:
- 1 wan --> 2 lans
- isolate lan1 and lan2

I've found a youtube link: https://www.youtube.com/watch?v=WpHoojpAe1k
Is it ok? If yes: src address list in Firewall/NAT/+/Advanced is no more there so do you know where it is?
 
ConradPino
Member
Member
Posts: 337
Joined: Sat Jan 21, 2023 12:44 pm
Contact:

Re: Help needed to configure

Sat Feb 11, 2023 12:12 am

Your LAN design is different subnets requiring routing. CRS305 has L3 Hardware Offloading which has limits made worse by CFS305 specific switch chip.

Within L3HW limits, CRS305 will route at wire speed but outside L3HW limits, throughput falls off a cliff; CPU is small. If WAN link is slow enough then L3HW limit won't matter.

Design carefully. Start with CRS305 specifications page, Test results tab, Ethernet test results section.

Who is online

Users browsing this forum: McGremlin, NightWolf and 43 guests