I went ahead and make a users address list on both sides of the circuit. I then dropped all traffic not destined for or from those addresses. Using torch I was able to confirm that only those specific addresses are going through now. I went ahead and disabled all the rules and modified the main queu...
The setup used is outlined below. A queue for each customer (PCQ)/24, A catchall queue(s) for each major subnet, The parent PCQ queue. Each customer has their own /24 private IP assignment with a route that only forwards that traffic. 10.10.1-254.x/24, 176.16.x.x/24, or 192.168.x.x/24. I would like ...
Hello and thanks for your reply. I am using simple queues for this process. As they can be added and stacked pretty easily. I need to use PCQ queues and at the same time limit maximum traffic to 5 Mbps. Seems pretty simple right? It's not, MIkrotik will not properly enforce the 5Mbps limit. I hired ...
I have been trying to get something working properly with Queues but seem to be unable to achieve the desired goal without limiting throughput to a lower level all the time. I have satellite uplink with traffic policers on the circuit that drop everything exceeds 5Mbps. The problem I'm having is get...
Mikrotik support is correct. If I had followed their instructions fully I would caught the configuration change that I overlooked. They were spot on, it was my mistake.
it must have been exploited before the upgrades.
upgrading does not remove the exploits, it just fixes the holes.
IF your device is exploited, the only thing you can do is netinstall
I am in a dialog with support and they are not reading what I typed in regard to the router and it's symptoms. They are simply not reading or interpreting English correctly in this case. It's frustrating then I tell him there are no configuration changes and he tells me to look on my network for the...
I have already submitted supout files for both routers and the response I got back from them says they didn't read my message in the first place. "Check the proxy, config, etc". The only way I know it's active is the output traffic from it's preferred IP address, and the fact that port 643...
As I said there is not configuration changes to the router at all. Nothing is visible in the config what so ever with this. The passwords were change and the config has been checked. This completely exploits the router and make not changes to the configuration at all, that is the point. There is no ...
I have two CCR routers that have been upgraded fully to 6.43.4 and have the routerboard firmware upgraded also. Both units are still exploited. The are no config changes to the router, this is all transparent and going on the background. The way to spot this particular one is to look for people targ...
I am hoping to find out what works best when running two PTP links and using them both for aggregate throughput and redundancy. I am interested in what is working best for people? LACP, PCC, ECMP, OSPF?. Please let me know you experiences and what work for you or not. The two links are both 1Gbps. n...