But the CPU runs almost permanently at 100%. What can we do?
I have already tested with these values, but any change.
SNMP or /interface ethernet switch set 0 l3-hw-offloading=yes
Code: Select all
/interface bridge
add name=bridge_DMZ
add name=bridge_FIRMA
add name=bridge_GAST
add name=bridge_PRIVAT
add name=bridge_TELEFON
/interface ethernet
set [ find default-name=ether27 ] poe-out=off
set [ find default-name=ether31 ]
set [ find default-name=ether44 ]
set [ find default-name=sfp-sfpplus1 ] auto-negotiation=no
set [ find default-name=sfp-sfpplus2 ] auto-negotiation=no
set [ find default-name=sfp-sfpplus3 ] auto-negotiation=no
set [ find default-name=sfp-sfpplus4 ] auto-negotiation=no
/interface vlan
add interface=bridge_FIRMA name=vlan99 vlan-id=99
add interface=sfp-sfpplus1 name=vlan200_sfp1 vlan-id=200
add interface=sfp-sfpplus2 name=vlan200_sfp2 vlan-id=200
add interface=sfp-sfpplus3 name=vlan200_sfp3 vlan-id=200
add interface=sfp-sfpplus4 name=vlan200_sfp4 vlan-id=200
add interface=sfp-sfpplus1 name=vlan800_sfp1 vlan-id=800
add interface=sfp-sfpplus2 name=vlan800_sfp2 vlan-id=800
add interface=sfp-sfpplus3 name=vlan800_sfp3 vlan-id=800
add interface=sfp-sfpplus4 name=vlan800_sfp4 vlan-id=800
/interface ethernet switch
set 0 l3-hw-offloading=yes
/interface lte apn
set [ find default=yes ] ip-type=ipv4 use-network-apn=no
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/port
set 0 name=serial0
/snmp community
add addresses=192.168.177.0/24,10.16.0.0/16 authentication-protocol=SHA1 disabled=yes encryption-protocol=AES name=Test security=private
/system logging action
add disk-file-count=1 disk-file-name=auth.log disk-lines-per-file=5000 name=auth target=disk
/user group
add name=dudepass policy=winbox,dude,!local,!telnet,!ssh,!ftp,!reboot,!read,!write,!policy,!test,!password,!web,!sniff,!sensitive,!api,!romon,!rest-api
/interface bridge port
add bridge=bridge_FIRMA ingress-filtering=no interface=ether1
add bridge=bridge_FIRMA ingress-filtering=no interface=ether2
add bridge=bridge_FIRMA ingress-filtering=no interface=ether3
add bridge=bridge_FIRMA ingress-filtering=no interface=ether4
add bridge=bridge_FIRMA ingress-filtering=no interface=ether5
add bridge=bridge_FIRMA ingress-filtering=no interface=ether6
add bridge=bridge_FIRMA ingress-filtering=no interface=ether7
add bridge=bridge_TELEFON ingress-filtering=no interface=ether8
add bridge=bridge_TELEFON ingress-filtering=no interface=ether9
add bridge=bridge_FIRMA ingress-filtering=no interface=ether10
add bridge=bridge_FIRMA ingress-filtering=no interface=ether11
add bridge=bridge_FIRMA ingress-filtering=no interface=ether12
add bridge=bridge_FIRMA ingress-filtering=no interface=ether13
add bridge=bridge_FIRMA ingress-filtering=no interface=ether14
add bridge=bridge_FIRMA ingress-filtering=no interface=ether15
add bridge=bridge_FIRMA ingress-filtering=no interface=ether16
add bridge=bridge_FIRMA ingress-filtering=no interface=ether17
add bridge=bridge_FIRMA ingress-filtering=no interface=ether18
add bridge=bridge_FIRMA ingress-filtering=no interface=ether19
add bridge=bridge_TELEFON ingress-filtering=no interface=ether20
add bridge=bridge_FIRMA ingress-filtering=no interface=ether21
add bridge=bridge_TELEFON ingress-filtering=no interface=ether22
add bridge=bridge_FIRMA ingress-filtering=no interface=ether23
add bridge=bridge_FIRMA ingress-filtering=no interface=ether24
add bridge=bridge_FIRMA ingress-filtering=no interface=ether25
add bridge=bridge_FIRMA ingress-filtering=no interface=ether26
add bridge=bridge_FIRMA ingress-filtering=no interface=ether27
add bridge=bridge_FIRMA ingress-filtering=no interface=ether28
add bridge=bridge_FIRMA ingress-filtering=no interface=ether29
add bridge=bridge_FIRMA ingress-filtering=no interface=ether30
add bridge=bridge_FIRMA ingress-filtering=no interface=ether31
add bridge=bridge_FIRMA ingress-filtering=no interface=ether32
add bridge=bridge_FIRMA ingress-filtering=no interface=ether33
add bridge=bridge_FIRMA ingress-filtering=no interface=ether34
add bridge=bridge_FIRMA ingress-filtering=no interface=ether35
add bridge=bridge_FIRMA ingress-filtering=no interface=ether36
add bridge=bridge_FIRMA ingress-filtering=no interface=ether37
add bridge=bridge_FIRMA ingress-filtering=no interface=ether38
add bridge=bridge_FIRMA ingress-filtering=no interface=ether39
add bridge=bridge_FIRMA ingress-filtering=no interface=ether40
add bridge=bridge_FIRMA ingress-filtering=no interface=ether41
add bridge=bridge_FIRMA ingress-filtering=no interface=ether42
add bridge=bridge_FIRMA ingress-filtering=no interface=ether43
add bridge=bridge_FIRMA ingress-filtering=no interface=ether44
add bridge=bridge_FIRMA ingress-filtering=no interface=ether45
add bridge=bridge_FIRMA ingress-filtering=no interface=ether46
add bridge=bridge_DMZ ingress-filtering=no interface=ether47
add bridge=bridge_DMZ ingress-filtering=no interface=ether48
add bridge=bridge_FIRMA ingress-filtering=no interface=sfp-sfpplus1
add bridge=bridge_FIRMA ingress-filtering=no interface=sfp-sfpplus2
add bridge=bridge_FIRMA ingress-filtering=no interface=sfp-sfpplus3
add bridge=bridge_FIRMA ingress-filtering=no interface=sfp-sfpplus4
add bridge=bridge_TELEFON ingress-filtering=no interface=vlan200_sfp1
add bridge=bridge_TELEFON ingress-filtering=no interface=vlan200_sfp2
add bridge=bridge_TELEFON ingress-filtering=no interface=vlan200_sfp3
add bridge=bridge_TELEFON ingress-filtering=no interface=vlan200_sfp4
add bridge=bridge_DMZ ingress-filtering=no interface=vlan800_sfp1
add bridge=bridge_DMZ ingress-filtering=no interface=vlan800_sfp2
add bridge=bridge_DMZ ingress-filtering=no interface=vlan800_sfp3
add bridge=bridge_DMZ ingress-filtering=no interface=vlan800_sfp4
/ip settings
set max-neighbor-entries=8192
/ipv6 settings
set disable-ipv6=yes max-neighbor-entries=8192
/interface ovpn-server server
set auth=sha1,md5
/ip dhcp-client
add disabled=yes interface=bridge_FIRMA
add disabled=yes interface=bridge_TELEFON
add add-default-route=no disabled=yes interface=bridge_DMZ
add add-default-route=no interface=vlan99 use-peer-dns=no use-peer-ntp=no
/ip dns
set servers=8.8.8.8
/ip firewall address-list
add address=192.168.177.0/24 list=local
add address=10.16.0.0/16 list=local
add address=192.168.0.0/24 list=local
/ip route
add disabled=no dst-address=10.16.0.0/16 gateway=10.99.34.1
add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=10.99.34.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no dst-address=192.168.177.0/24 gateway=10.99.34.1
/ip service
set telnet disabled=yes
set ftp disabled=yes
set www disabled=yes
set ssh port=16381
set api disabled=yes
/ip ssh
set host-key-size=4096 strong-crypto=yes
/snmp
set contact="Test <mikrotik@test.de>" location=Test trap-community=Test trap-version=3
/system clock
set time-zone-name=Europe/Berlin
/system identity
set name=TESTSWITCH
/system logging
add action=auth topics=account
/system ntp client servers
add address=85.215.93.137
/system routerboard settings
set auto-upgrade=yes boot-os=router-os silent-boot=yes
/tool bandwidth-server
set enabled=no
/tool romon
set enabled=yes