Community discussions

MikroTik App

Search found 27 matches

by nobody123
Mon Jul 26, 2021 4:40 pm
Forum: Beginner Basics
Topic: Looking up cloud.mikrotik.com every second
Replies: 24
Views: 16255

Re: Looking up cloud.mikrotik.com every second

How can I disable detect internet?
by nobody123
Thu Jun 24, 2021 11:22 am
Forum: General
Topic: Problems with VLAN and Bridge
Replies: 6
Views: 1685

Re: Problems with VLAN and Bridge

I activated fasttrack, but I don't see any improvement. Still 350 mbit/s.

What can I do that if I connect a new PC to the CSS to get him an IP in VLAN50 without setting it manually in the PC or set the port in the CSS to VLAN ID 50?
by nobody123
Wed Jun 23, 2021 10:36 am
Forum: General
Topic: Problems with VLAN and Bridge
Replies: 6
Views: 1685

Re: Problems with VLAN and Bridge

I think I got it working. This is my config now: export hide-sensitive # jun/23/2021 09:17:23 by RouterOS 6.48.3 # software id = XE0V-A40Q # # model = RB760iGS # serial number = A815099AF64D /interface bridge add name=bridge1 vlan-filtering=yes /interface ethernet set [ find default-name=ether2 ] na...
by nobody123
Tue Jun 22, 2021 3:23 pm
Forum: General
Topic: Problems with VLAN and Bridge
Replies: 6
Views: 1685

Re: Problems with VLAN and Bridge

My suggestion, though, would be to convert ether3 and ether5 to proper trunk ports (remember to do the same on CSS as well) and would configure CSS to perform tagging (with VID 1) on access/hybrid ports. How can I do that? I want every port of the CSS to use every VLAN. The separation is done in my...
by nobody123
Tue Jun 22, 2021 2:52 pm
Forum: General
Topic: Problems with VLAN and Bridge
Replies: 6
Views: 1685

Problems with VLAN and Bridge

Hi, I have a hex S since a few years, connected to a CSS322. Back then, all tutorials were not using any bridge. Now I want to use a Bridge, however, if I activate VLAN Filtering, my network collapses. The network looks like that: Netzwerk(1).png This is my configuration: export hide-sensitive # jun...
by nobody123
Fri Jun 04, 2021 5:18 pm
Forum: General
Topic: VLAN Routing is slow on hex S
Replies: 10
Views: 2094

Re: VLAN Routing is slow on hex S

Get rid of vlan1 for data it should only be used as the default bridge vlan!!! (use vlan10) and use this reference.....
viewtopic.php?f=23&t=143620
Do you mean I should place my computer and server and everything else into VLAN10 instead of 1?
by nobody123
Fri Jun 04, 2021 5:09 pm
Forum: General
Topic: VLAN Routing is slow on hex S
Replies: 10
Views: 2094

Re: VLAN Routing is slow on hex S

okay, I understand. I deactivated the bond and now I'm facing some problems: If I transfer files between VLAN1 and VLAN10 the speed drops even further to 35 mb/s. And in additon, if I activate the VLAN Filtering in the bridge I'll loose internet connection. This is the new configuration: # jun/04/20...
by nobody123
Fri Jun 04, 2021 1:41 pm
Forum: General
Topic: VLAN Routing is slow on hex S
Replies: 10
Views: 2094

Re: VLAN Routing is slow on hex S

Hi, There's no hardware offload feature on hex so all vlan operation is done in the cpu not on a switch chip and that could potentially explain your situation, don't use the router to do what the switch is supposed to do as workaround configure your css switch and make an untagged/access port towar...
by nobody123
Fri Jun 04, 2021 1:25 pm
Forum: General
Topic: VLAN Routing is slow on hex S
Replies: 10
Views: 2094

VLAN Routing is slow on hex S

Hi, I have a hex S and a CSS326 and using VLANs. This works so far, but the traffic between two VLANs is very slow (50 mb/s) and the CPU usage of the hex S is at 40-60 %. Where is the error in the config? # jun/04/2021 12:18:29 by RouterOS 6.48.2 # software id = XE0V-A40Q # # model = RB760iGS # seri...
by nobody123
Thu Mar 14, 2019 4:40 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

Ah ok, now I added some rules.

But why don't I allow any winbox connection anymore? I reopened it a few times in the last hours?
by nobody123
Thu Mar 14, 2019 12:57 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

I have the problem that this rule:
add action=drop chain=input comment="Block everything else"
does what it says: blocking everything else. I'm not able to connect to the internet from my Server from eth4. How can I solve this?
by nobody123
Wed Mar 13, 2019 3:30 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

I had to allow ports 443 and 80 between my client and the reverse proxy. this is was my filter looks like now: /ip firewall filter add action=accept chain=forward connection-nat-state=dstnat add action=drop chain=input connection-state=invalid add action=accept chain=input comment="Allow Establ...
by nobody123
Wed Mar 13, 2019 12:36 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

I got it running now.

forwarded the ports between my pc and server.

How can I harden my firewall?
by nobody123
Wed Mar 13, 2019 10:35 am
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

I removed the In-Port but still no connection. /interface list add name=WAN add name=LAN /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /ip pool add name=dhcp ranges=192.168.0.10-192.168.0.40 add name=dhcp_pool6 ranges=192.168.20.2-192.168.20.254 add name...
by nobody123
Tue Mar 12, 2019 10:03 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

This dst Nat is already running, otherwise I won't have access from outside.
Here:
add action=dst-nat chain=dstnat comment="HTTPS an reverse proxy" dst-address=XXX dst-port=80,443 in-interface=ether1 \
protocol=tcp to-addresses=192.168.100.110 to-ports=443

XXX is my external IP.
by nobody123
Tue Mar 12, 2019 5:43 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

I tried to disable the filter rule which blocks the traffic between both networks, but this didn't change anything. Still no access to my domain. edit: If I add my domain and the IP of my reverse Proxy to the /etc/hosts file of my Win 10 computer AND if I disable the filter rules THEN it will work. ...
by nobody123
Tue Mar 12, 2019 3:22 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

Thanks so far guys! I added a static DNS entry to my mikrotik and made and forward dstnat accept filter rule. But it still won't work. Here is my exports: export hide-sensitive # mar/12/2019 13:48:21 by RouterOS 6.44 # software id = XXX # # model = RB760iGS # serial number = XXX /interface ethernet ...
by nobody123
Mon Mar 11, 2019 11:42 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Re: Harpin NAT between two VLANs

4 rules? which do I need? The wiki only tells about one and the tutorial as well.

DNS: I'm using pi hole as a DNS for my Client, and 1.1.1.1 for my webserver. Should I modify my piHole?
Will this work even if I block all traffic between 192.168.100.0 and 192.168.0.0 with a firewall rule?
by nobody123
Mon Mar 11, 2019 11:08 pm
Forum: General
Topic: Harpin NAT between two VLANs
Replies: 34
Views: 7344

Harpin NAT between two VLANs

Hi, I have a webserver in IP Range 192.168.100.0/24 and I have a client in 192.168.0.0/24. I can't connect over my domain address to my webserver from inside my network, that's why I would like to make a Hairpin NAT. I tried to do it after this tutorial: https://www.youtube.com/watch?v=_kw_bQyX-3U&a...
by nobody123
Fri Jan 04, 2019 12:18 pm
Forum: Beginner Basics
Topic: VLAN and Proxmox
Replies: 8
Views: 2885

Re: VLAN and Proxmox

that looks like a great idea :-)

I plugged the NIC of my webservers into the router (eth4) with an own address (192.168.100.0/24) without VLAN and it works. Thus, the problem must be something with SwOS and/or Proxmox.
by nobody123
Thu Jan 03, 2019 9:13 pm
Forum: Beginner Basics
Topic: VLAN and Proxmox
Replies: 8
Views: 2885

Re: VLAN and Proxmox

Sorry for the confusion. I tried so much the past days and I'm confused myself :D

I appreciate your help very much.

I can't return the CSS, since I use it for 4 years or so now. It is a good switch, that's why I purchased the hEX S.
by nobody123
Thu Jan 03, 2019 7:28 pm
Forum: Beginner Basics
Topic: VLAN and Proxmox
Replies: 8
Views: 2885

Re: VLAN and Proxmox

I made one quick and dirty.
Hope you can see what I want :-)

The Webserver are: Reverse Proxy, Nextcloud and Wordpress (three different IPs).
Untitled Diagram.png
by nobody123
Thu Jan 03, 2019 6:45 pm
Forum: Beginner Basics
Topic: VLAN and Proxmox
Replies: 8
Views: 2885

Re: VLAN and Proxmox

How can I make a shiny diagram?
by nobody123
Thu Jan 03, 2019 5:09 pm
Forum: Beginner Basics
Topic: VLAN and Proxmox
Replies: 8
Views: 2885

VLAN and Proxmox

Hi, I got a brand new hEX S and a CSS326. I got a Proxmox-Server with 3 NICs. One NIC should be used for webservers and forbid any connections to my LAN, therefore it has to be in a VLAN. I want my "normal" LAN without VLAN just running. Thus, I can replace in emergency cases the mikrotik ...
by nobody123
Wed Oct 04, 2017 10:55 pm
Forum: SwOS
Topic: CSS326 slow SFP+ speed
Replies: 24
Views: 16440

Re: CSS326 slow SFP+ speed

Yes, I'm not the only one with SFP-> 1Gbit transfer problems. Downgrading solved the problem. 2.3 and 2.4 are running fine. So far it is a very good switch!
by nobody123
Mon Oct 02, 2017 7:43 pm
Forum: SwOS
Topic: CSS326 slow SFP+ speed
Replies: 24
Views: 16440

CSS326 slow SFP+ speed

Hi, I got my workstation (with Mellanox Connectx-2) connected per DAC to the CSS326. WIthin SWOS it tells me "10G", but if I try to copy something to the servers (1Gbit) I only get 30-180mbit traffic speed. If I connect the workstation with a 1Gbit cable instead, I get around 980 mbit/s. I...