New to Mikrotik so just learning. I had a few basic questions:
1) CRS326-24S+2Q+ - I have upgraded my brand new switch to RouterOS 7.13 but wanted to ask some basic questions:
a) It loaded a default config - should I change this? It is mentioned if i lose power that it will revert to the default config is this the case? If so, how do you prevent this? It appears that somethings
that are default config options cannot be removed like ovpn-server/client interface.
b) I have planned a complex VLAN setup which i would like to control all traffic between those VLANs. Should i change the configuration from Bridge to Route mode?
c) I will be taking specific switch ports and adding them to specific VLANs with tagging. This switch will sit behind a Firewall Gold Firewall and I will use one of the QSFP+ ports to connect it. In
bridge mode will it automatically bridge traffic between these VLANs? Can i filter using firewall rules between these VLANs? Or should i switch to Router model to make this cleaner?
d) There appear to be two switches configured by default in this model of Mikrotik switch. Marvell 98DX8332 - which is configured for switch1. Atheros 8227 - which is configured for switch2.
What is the best way to utilize these two switches?
e) The default configuration for this creates a bridge interface - this appears to the way to bridge between the regular ethernet interfaces. Should i disable this to create segmented VLANs? For
RouterOS 6 this bridge interface was where the Switch IP address for management and using winbox was used for but when i upgraded to RouterOS7 it changed it to the first SFP+ port where
the laptop i was using connected to ? For security i would not like for this to be addressable except for one VLAN or segment - is there a best practice fo this?
Let me know if this is not clear i can upload a diagram of what i am trying to achieve with the Firewalla Gold firewall and the segement VLANs on the CRS326 switch.
Thanks