Sorry for the stupid question...
Is it possible to use a container like this with the hAP ac 2?
https://hub.docker.com/r/vladgh/minidlna/
Obviously with an ext4 formatted usb hdd.
Unfortunately I can't use it because hAP ac2 doesn't have enough space in the flash.One note... v7.8rc1 supports "ROSE" (see https://help.mikrotik.com/docs/display/ROS/ROSE-storage).
Sure!Let us know how it goes. I'm sure you'll like not be the only one requesting this one...
Hi, I specified that the files inside the container shouldn't be modified.Hi, dear massinia!
I did everything according to your instructions, but I have a problem with permissions, if I add films via SMB.
MikroTik:/Films# ls -l
total 3047816
-rwxr-xr-x 1 nobody nobody 3117904332 May 21 22:12 Film1.mkv
It works before first reboot. And container can't started with message in log chown: /minidlna/Films/Film1.mkv: Operation not permitted
How can I fixed permissions? Why user and group nobody:nobody? I think that must be minidlna:minidlna.
You don't need to change permissions, don't put the movie folder inside the container folder.one folder for container data and one folder for media.
Yes, I made a mistake on this point. Thank you. Now it works great.You don't need to change permissions, don't put the movie folder inside the container folder.
MMM MMM KKK TTTTTTTTTTT KKK
MMMM MMMM KKK TTTTTTTTTTT KKK
MMM MMMM MMM III KKK KKK RRRRRR OOOOOO TTT III KKK KKK
MMM MM MMM III KKKKK RRR RRR OOO OOO TTT III KKKKK
MMM MMM III KKK KKK RRRRRR OOO OOO TTT III KKK KKK
MMM MMM III KKK KKK RRR RRR OOOOOO TTT III KKK KKK
MikroTik RouterOS 7.10.2 (c) 1999-2023 https://www.mikrotik.com/
Press F1 for help
[admin@MikroTik] > export
# 2023-08-10 21:22:46 by RouterOS 7.10.2
# software id = IZLE-ES5A
#
# model = RBD52G-5HacD2HnD
# serial number = E5780E89B9DB
/interface bridge
add admin-mac=2C:C8:1B:EE:86:3F auto-mac=no comment=defconf name=bridge
/interface ethernet
set [ find default-name=ether1 ] mac-address=04:5E:A4:C9:E0:00
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-XX \
disabled=no distance=indoors frequency=auto installation=indoor mode=\
ap-bridge ssid=Mikro wireless-protocol=802.11
set [ find default-name=wlan2 ] band=5ghz-a/n/ac channel-width=20/40/80mhz-XXXX \
disabled=no distance=indoors frequency=auto installation=indoor mode=\
ap-bridge ssid=MikroTik wireless-protocol=802.11
/interface veth
add address=192.168.88.11/24 gateway=192.169.88.1 name=veth1
/container mounts
add dst=/minidlna name=DLNA src=/usb1-part1/router-serv/minidlna-data
add dst=media name="DLNA MEDIA" src=/usb1-part1/media
/disk
set usb1 type=hardware
add parent=usb1 partition-number=1 partition-offset=512 partition-size=\
"15 634 300 416" type=partition
/interface list
add comment=defconf name=WAN
add comment=defconf name=LAN
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip hotspot profile
set [ find default=yes ] html-directory=hotspot
/ip pool
add name=dhcp ranges=192.168.88.10-192.168.88.254
/ip dhcp-server
add address-pool=dhcp interface=bridge lease-time=10m name=defconf
/container
add envlist=DLNA interface=veth1 mounts="DLNA,DLNA MEDIA" root-dir=\
usb1-part1/router-serv/containers/minidlna start-on-boot=yes
/container config
set registry-url=https://registry-1.docker.io tmpdir=usb1-part1/tmp
/container envs
add key=MINIDLNA_MEDIA_DIR name=DLNA value=/media
add key=MINIDLNA_FRIEDLY_NAME name=DLNA value=minidlna
add key=MINIDLNA_ROOT_CONTAINER name=DLNA value=MBp
/interface bridge port
add bridge=bridge comment=defconf interface=ether2
add bridge=bridge comment=defconf interface=ether3
add bridge=bridge comment=defconf interface=ether4
add bridge=bridge comment=defconf interface=ether5
add bridge=bridge comment=defconf interface=wlan1
add bridge=bridge comment=defconf interface=wlan2
add bridge=bridge disabled=yes interface=ether1
add bridge=bridge interface=veth1
/ip neighbor discovery-settings
set discover-interface-list=LAN
/interface list member
add comment=defconf interface=ether1 list=WAN
add interface=bridge list=LAN
/ip address
add address=192.168.88.1/24 interface=bridge network=192.168.88.0
/ip dhcp-client
add comment=defconf interface=bridge
add interface=ether1
/ip dhcp-server network
add address=0.0.0.0/24 comment=defconf dns-server=0.0.0.0 gateway=0.0.0.0 \
netmask=24
add address=192.168.88.0/24 dns-server=192.168.88.1 gateway=192.168.88.1 \
netmask=24
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=192.168.88.1 comment=defconf name=router.lan
/ip firewall filter
add action=accept chain=input comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked
add action=drop chain=input comment="defconf: drop invalid" connection-state=\
invalid
add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
add action=accept chain=input comment=\
"defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1
add action=drop chain=input comment="defconf: drop all not coming from LAN" \
in-interface-list=!LAN
add action=accept chain=forward comment="defconf: accept in ipsec policy" \
ipsec-policy=in,ipsec
add action=accept chain=forward comment="defconf: accept out ipsec policy" \
ipsec-policy=out,ipsec
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
connection-state=established,related hw-offload=yes
add action=accept chain=forward comment=\
"defconf: accept established,related, untracked" connection-state=\
established,related,untracked
add action=drop chain=forward comment="defconf: drop invalid" connection-state=\
invalid
add action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" \
connection-nat-state=!dstnat connection-state=new in-interface-list=WAN
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=\
out,none out-interface-list=WAN
add action=masquerade chain=srcnat src-address=172.17.0.0/24
/ip smb
set enabled=yes
/ip upnp
set enabled=yes
/ip upnp interfaces
add interface=veth1 type="(unknown)"
add interface=bridge type=internal
add interface=ether1 type=external
/ipv6 firewall address-list
add address=::/128 comment="defconf: unspecified address" list=bad_ipv6
add address=::1/128 comment="defconf: lo" list=bad_ipv6
add address=fec0::/10 comment="defconf: site-local" list=bad_ipv6
add address=::ffff:0.0.0.0/96 comment="defconf: ipv4-mapped" list=bad_ipv6
add address=::/96 comment="defconf: ipv4 compat" list=bad_ipv6
add address=100::/64 comment="defconf: discard only " list=bad_ipv6
add address=2001:db8::/32 comment="defconf: documentation" list=bad_ipv6
add address=2001:10::/28 comment="defconf: ORCHID" list=bad_ipv6
add address=3ffe::/16 comment="defconf: 6bone" list=bad_ipv6
/ipv6 firewall filter
add action=accept chain=input comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked
add action=drop chain=input comment="defconf: drop invalid" connection-state=\
invalid
add action=accept chain=input comment="defconf: accept ICMPv6" protocol=icmpv6
add action=accept chain=input comment="defconf: accept UDP traceroute" port=\
33434-33534 protocol=udp
add action=accept chain=input comment=\
"defconf: accept DHCPv6-Client prefix delegation." dst-port=546 protocol=\
udp src-address=fe80::/10
add action=accept chain=input comment="defconf: accept IKE" dst-port=500,4500 \
protocol=udp
add action=accept chain=input comment="defconf: accept ipsec AH" protocol=\
ipsec-ah
add action=accept chain=input comment="defconf: accept ipsec ESP" protocol=\
ipsec-esp
add action=accept chain=input comment=\
"defconf: accept all that matches ipsec policy" ipsec-policy=in,ipsec
add action=drop chain=input comment=\
"defconf: drop everything else not coming from LAN" in-interface-list=!LAN
add action=accept chain=forward comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked
add action=drop chain=forward comment="defconf: drop invalid" connection-state=\
invalid
add action=drop chain=forward comment="defconf: drop packets with bad src ipv6" \
src-address-list=bad_ipv6
add action=drop chain=forward comment="defconf: drop packets with bad dst ipv6" \
dst-address-list=bad_ipv6
add action=drop chain=forward comment="defconf: rfc4890 drop hop-limit=1" \
hop-limit=equal:1 protocol=icmpv6
add action=accept chain=forward comment="defconf: accept ICMPv6" protocol=\
icmpv6
add action=accept chain=forward comment="defconf: accept HIP" protocol=139
add action=accept chain=forward comment="defconf: accept IKE" dst-port=500,4500 \
protocol=udp
add action=accept chain=forward comment="defconf: accept ipsec AH" protocol=\
ipsec-ah
add action=accept chain=forward comment="defconf: accept ipsec ESP" protocol=\
ipsec-esp
add action=accept chain=forward comment=\
"defconf: accept all that matches ipsec policy" ipsec-policy=in,ipsec
add action=drop chain=forward comment=\
"defconf: drop everything else not coming from LAN" in-interface-list=!LAN
/system clock
set time-zone-name=Europe/Kiev
/system note
set show-at-login=no
/tool mac-server
set allowed-interface-list=LAN
/tool mac-server mac-winbox
set allowed-interface-list=LAN
[admin@MikroTik] >
Well "Log" on left in winbox... or but from New Terminal easier to cut-and-paste here ...Log noted.Where can I watch it?
[admin@MikroTik] > /log print where topics~"container"
20:21:04 container,info,debug removing files, container ea4eee61-aadc-4ebd-95e9-12559c36a670
20:31:51 container,info,debug importing remote image: vladgh/minidlna, tag: latest
20:31:54 container,info,debug getting layer sha256:487e2b03bf21cee5114358865c5f238ace7f45a96
10894c7b35f40f604c07fb1
20:32:00 container,info,debug layer sha256:487e2b03bf21cee5114358865c5f238ace7f45a9610894c7b
35f40f604c07fb1 downloaded
20:32:03 container,info,debug getting layer sha256:5860ffff0c012e63b2ae5e7fa22141c412415e7f9
ddf291acacba37d88ff2974
20:32:23 container,info,debug layer sha256:5860ffff0c012e63b2ae5e7fa22141c412415e7f9ddf291ac
acba37d88ff2974 downloaded
20:32:57 container,info,debug getting layer sha256:8070f1e72ed71395974e02b36921596c0bf8d9750
43a133345d90c9624f057eb
20:32:58 container,info,debug layer sha256:8070f1e72ed71395974e02b36921596c0bf8d975043a13334
5d90c9624f057eb downloaded
20:32:58 container,info,debug import successful, container 3dad3d6a-8426-485c-8d52-3a9b61635
6b8
22:00:29 wireless,info 6A:DD:89:FC:56:65@wlan2: connected, signal strength -57
22:00:32 dhcp,info defconf assigned 192.168.88.247 for 6A:DD:89:FC:56:65
22:22:36 system,info,account user admin logged in from 192.168.88.253 via local
22:23:50 system,info,account user admin logged out from 192.168.88.253 via local
22:24:01 system,info,account user admin logged in from 192.168.88.253 via local
22:24:05 wireless,info 6A:DD:89:FC:56:65@wlan2: disconnected, received disassoc: sending sta
tion leaving (8), signal strength -57
22:24:27 system,info,account user admin logged out from 192.168.88.253 via local
22:26:08 system,info,account user admin logged in from 192.168.88.253 via local
22:27:03 system,info,account user admin logged out from 192.168.88.253 via local
22:30:06 system,info,account user admin logged in from 192.168.88.253 via local