Community discussions

MikroTik App

Search found 24 matches

by Sayrax
Tue Jun 23, 2020 11:34 pm
Forum: General
Topic: SysLog
Replies: 8
Views: 3943

Re: SysLog

No, this is not a bug. Why do you think so?
I see no reason for each topic to write a rule. If for example I have two remote syslog servers.
by Sayrax
Tue Jun 23, 2020 11:12 pm
Forum: General
Topic: SysLog
Replies: 8
Views: 3943

Re: SysLog

Rules: topics=info,error,critical,system,event,warning,script,wireless,dhcp,ipsec prefix="" action=remote A message has to contain all topics to match. That's an impossible combination, even info and error are exclusive to each other. Try this: /system logging add action=remote topics=inf...
by Sayrax
Tue Jun 23, 2020 10:52 pm
Forum: General
Topic: SysLog
Replies: 8
Views: 3943

Re: SysLog

When I test with telnet. Connecting to the syslog port (514). the server answers me. even makes an entry in the event log. And also on tcpdump the incoming traffic is visible
by Sayrax
Tue Jun 23, 2020 10:50 pm
Forum: General
Topic: SysLog
Replies: 8
Views: 3943

Re: SysLog

You need to add into firewall on "output" chain an ACCEPT for traffic to your IP of syslog server ... Thank. But the OUTPUT table. This refers to outgoing traffic from the server. In this case, syslog. In Syslog server empty firewall and default policy is ACCEPT From Mikrotik to LAN defau...
by Sayrax
Tue Jun 23, 2020 5:50 pm
Forum: General
Topic: SysLog
Replies: 8
Views: 3943

SysLog

Good day! There is a small network. One broadcast domain without vlan. There is a log collector. but Mikrotik intensely refuses to send him. There is no firewall on the collector Actions: /system logging action print name="rsyslog" target=remote remote=192.168.50.5 remote-port=514 src-addr...
by Sayrax
Sun Apr 26, 2020 7:36 am
Forum: General
Topic: Install RouterOS without netinstall
Replies: 0
Views: 1181

Install RouterOS without netinstall

Good afternoon. Interested in the following question: Install RouterOS without netinstall. The problem is that after accessing TFTP, it searches for vmlinuz, and repacking does not give anything :(
by Sayrax
Tue Apr 21, 2020 8:10 am
Forum: General
Topic: MacTelnet-Client
Replies: 13
Views: 8154

Re: MacTelnet-Client

Winbox is not suitable for me, I am a Linux user, and wine is not very fond of. So why don't you use ssh to access routers? mactelnet has one single function which ssh doesn't: connectivity over MAC, which comes handy when IP setup gets south. But hopefully that's not very often and I (being a linu...
by Sayrax
Mon Apr 20, 2020 4:48 am
Forum: General
Topic: MacTelnet-Client
Replies: 13
Views: 8154

Re: MacTelnet-Client

Thanks for the link. BUT it was these sources that I installed. Winbox is not suitable for me, I am a Linux user, and wine is not very fond of.
by Sayrax
Sun Apr 19, 2020 11:16 pm
Forum: General
Topic: MacTelnet-Client
Replies: 13
Views: 8154

MacTelnet-Client

Good afternoon! Faced a problem. installed mactelnet-client. I see routers and switches. But I can’t connect. For winbox, everything works. But the console is not. I tried both for Ubuntu and CentOS and install from source
by Sayrax
Fri Nov 22, 2019 9:19 am
Forum: General
Topic: URI WinBOX
Replies: 2
Views: 1258

Re: URI WinBOX

I understand. But can you do without an intermediary?
by Sayrax
Thu Nov 21, 2019 9:28 pm
Forum: General
Topic: URI WinBOX
Replies: 2
Views: 1258

URI WinBOX

Good day! There is a problem in the absence of passing variables to winbox. I registered the following in the registry Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\winbox] "URL Protocol"="" @="URL: winbox Protocol" "BrowserFlags"=dword:00000008 &quo...
by Sayrax
Wed Oct 17, 2018 1:52 am
Forum: General
Topic: Bridge, Bounding,etc [SOLVED]
Replies: 3
Views: 1353

Re: Bridge, Bounding,etc [SOLVED]

Bounding ether1,ether2 - > ESW1 ether3,ether4 -> ESW2 /interface bonding print Flags: X - disabled, R - running 0 R name="bond0" mtu=1500 mac-address=0C:D5:71:14:98:00 arp=enabled arp-timeout=auto slaves=ether1,ether2 mode=802.3ad primary=none link-monitoring=mii arp-interval=100ms arp-ip-...
by Sayrax
Mon Oct 15, 2018 7:01 pm
Forum: General
Topic: Bridge, Bounding,etc [SOLVED]
Replies: 3
Views: 1353

Bridge, Bounding,etc [SOLVED]

Good evening, Colleagues! There is such a scheme
Scheme.png
Two switches are included in the router like bounding(802ad). United in the bridge. In bridge 4 vlans
and working perfect. But if I add ether(on router) to bridge PC don't work. Paid I added.
by Sayrax
Sun Jul 01, 2018 12:08 am
Forum: General
Topic: Block HTTPS sites
Replies: 11
Views: 7016

Re: Block HTTPS sites

Create group in address list and move customers(who not pay) to this group. In firewall do "redirect" to you web-server with message "Pay for services" .
by Sayrax
Wed Jun 27, 2018 3:50 pm
Forum: Beginner Basics
Topic: Two trunks
Replies: 1
Views: 840

Re: Two trunks

Problem solved. The switch was bought. Connected with a bonding interface and created a trunk.
by Sayrax
Wed Jun 06, 2018 10:06 pm
Forum: Beginner Basics
Topic: L2TP/IPSEC server configuration questions
Replies: 6
Views: 1883

Re: L2TP/IPSEC server configuration questions

Connection is up? Or look on forward chain. from L2tp network to lan network
by Sayrax
Fri May 18, 2018 11:06 pm
Forum: Beginner Basics
Topic: Assign Public Ip to ppp client.
Replies: 2
Views: 953

Re: Assign Public Ip to ppp client.

masquerade is a special case of src-nat. you can bind two addresses to the external interface. in one to make the Internet for users and for the second to make nat 1: 1
by Sayrax
Fri May 18, 2018 10:58 pm
Forum: Beginner Basics
Topic: Preventing MySQL and MSSQL Bruteforce attacks
Replies: 7
Views: 3685

Re: Preventing MySQL and MSSQL Bruteforce attacks

If you really need to release directly Mysql. I would recommend the use of certificates, and write a script. Who will look into the events. And with a large number of authorizations, send a mikrotik to the block list. Ideal: to exclude direct access and use VPN. p.s. : If you need hardcore. Install ...
by Sayrax
Mon May 14, 2018 10:24 am
Forum: Beginner Basics
Topic: Two trunks
Replies: 1
Views: 840

Two trunks

Good afternoon! Prompt. How to create two trunks on a router with the same vlans ?
RouterOS
by Sayrax
Mon May 14, 2018 10:09 am
Forum: Beginner Basics
Topic: No access to LAN over OPENVPN (can only ping router) [SOLVED]
Replies: 4
Views: 6154

Re: No access to LAN over OPENVPN (can only ping router) [SOLVED]

How you are configuring firewall and openvpn? In you rules use ipsec?
by Sayrax
Fri May 04, 2018 11:06 pm
Forum: Beginner Basics
Topic: Preventing MySQL and MSSQL Bruteforce attacks
Replies: 7
Views: 3685

Re: Preventing MySQL and MSSQL Bruteforce attacks

Hi! I'm use fail2ban and script. Script add in mikrotik bloked address list. for which to open the database server to the world ?
by Sayrax
Tue May 01, 2018 10:59 pm
Forum: Beginner Basics
Topic: Router config for IPTV (non-VLAN)
Replies: 18
Views: 24236

Re: Router config for IPTV (non-VLAN)

Good evening! For my Internet provider, I use the following configuration: /routing igmp-proxy set quick-leave=yes /routing igmp-proxy interface add alternative-subnets=0.0.0.0/0 (<-if you don't know subnets for upstream) interface=WAN upstream=yes add interface=LAN PS: Sorry, my language skills not...
by Sayrax
Wed Nov 15, 2017 11:04 pm
Forum: General
Topic: SquidGuard - Mikrotik
Replies: 2
Views: 1447

Re: SquidGuard - Mikrotik

https exist, you can not inspect https traffic without hack all devices connected on the local network..
transparent certificate replacement
by Sayrax
Wed Nov 15, 2017 11:00 pm
Forum: Beginner Basics
Topic: HTTPS traffic redirect problem
Replies: 8
Views: 3370

Re: HTTPS traffic redirect problem

Do you use a web-proxy on mikrotik or a third-party server?