Community discussions

MikroTik App

Search found 229 matches

by accarda
Sun Dec 22, 2024 9:08 am
Forum: General
Topic: Problem with lower ports on CGNAT LTE conn
Replies: 4
Views: 342

Re: Problem with lower ports on CGNAT LTE conn

Thanks, I will propose also this option to the folks, even though I'm pretty much sure the provider won't do much but who knows. Anyway I have tested using Ros traffic generator to check how UDP traffic would be mapped when going outside siteA and for this profile they all use low port range from 16...
by accarda
Sat Dec 21, 2024 12:05 pm
Forum: General
Topic: Problem with lower ports on CGNAT LTE conn
Replies: 4
Views: 342

Re: Problem with lower ports on CGNAT LTE conn

Thanks for sharing this about MNO practice, I'm not an expert in this area. Currently for this particular site the company running the voice/UDP service is using one of those virtual MNO to reduce costs. Sure about using LTE connections to run some service behind CGNAT, in this particular case all L...
by accarda
Sat Dec 21, 2024 11:00 am
Forum: General
Topic: Problem with lower ports on CGNAT LTE conn
Replies: 4
Views: 342

Problem with lower ports on CGNAT LTE conn

Hi all, I'm checking an issue with an installation where UDP traffic is exchanged across different sites, between a master and several edge sites. In particular I'm having issues with an LTE connection where the UDP "connection" does not occur properly. As I have access to both the master ...
by accarda
Fri Dec 20, 2024 6:14 am
Forum: General
Topic: Help needed: Choosing an alternative for CCR2216
Replies: 22
Views: 1725

Re: Help needed: Choosing an alternative for CCR2216

This doc specifically explains many key concepts about L3HW: https://help.mikrotik.com/docs/spaces/ROS/pages/62390319/L3+Hardware+Offloading The dependency on L2HW ( https://help.mikrotik.com/docs/spaces/ROS/pages/62390319/L3+Hardware+Offloading#L3HardwareOffloading-Layer2Dependency ), some basic co...
by accarda
Thu Nov 21, 2024 7:54 am
Forum: General
Topic: My ISP gives me only ::/64 IPv6 prefix - how do I create multiple subnets?
Replies: 17
Views: 2111

Re: My ISP gives me only ::/64 IPv6 prefix - how do I create multiple subnets?

Instead of using some unassigned prefix ranges, you can get a free account with Hurrricane Electric (tunnelbroker.net) and get two /64 and two /48 prefixes for yourself. No one force you to use the tunnels provided by HE, you can just use those prefixes internally within your network Actually I'm c...
by accarda
Wed Nov 20, 2024 7:25 pm
Forum: General
Topic: My ISP gives me only ::/64 IPv6 prefix - how do I create multiple subnets?
Replies: 17
Views: 2111

Re: My ISP gives me only ::/64 IPv6 prefix - how do I create multiple subnets?

Unfortunately in case of dual stack network, using ULA instead of global v6 address makes the OS preferring IPv4 over IPv6. I didn’t know this until I needed to use fd00 addresses and found out all my clients preferred ipv4. Then I found this RFC https://datatracker.ietf.org/doc/html/rfc6724#page-24...
by accarda
Fri Mar 08, 2024 11:37 am
Forum: General
Topic: VRF routing issue on 7.14 [SOLVED]
Replies: 34
Views: 14259

Re: VRF routing issue on 7.14 [SOLVED]

I received a notification from Mikrotik about the case I submitted that they fixed it and will be released soon.
by accarda
Fri Mar 01, 2024 1:46 pm
Forum: General
Topic: VRF routing issue on 7.14 [SOLVED]
Replies: 34
Views: 14259

Re: VRF routing issue on 7.14 [SOLVED]

I have re-installed again v7.14 so that now I was able to generate a supout to provide Mikrotik. In my case once the router restarts I get these type of error messages related to the IPIP interfaces: failed to set vrf for interface ipip-if, please check if selected vrf instance is enabled Hopefully ...
by accarda
Fri Mar 01, 2024 7:42 am
Forum: General
Topic: VRF routing issue on 7.14 [SOLVED]
Replies: 34
Views: 14259

Re: VRF routing issue on 7.14 [SOLVED]

Actually I think v7.14 creates several issues with interfaces and VRF. I have issues in my config with IPIP interfaces not working properly after v7.14. Basically the IPIP interface does not get installed in the VRF table, but it stays in the main routing table. Also at startup I get an error that u...
by accarda
Fri Mar 01, 2024 7:34 am
Forum: Announcements
Topic: v7.14.3 [stable] is released!
Replies: 670
Views: 232911

Re: v7.14 [stable] is released!

In addition to the bug reported about IPIP interfaces not working correctly with VRF, also IP service does not work fine with VRF anymore.
I have IP service www on VRF and does not respond to requests anymore, while all is fine with 7.13.5
by accarda
Thu Feb 29, 2024 11:37 pm
Forum: Announcements
Topic: v7.14.3 [stable] is released!
Replies: 670
Views: 232911

Re: v7.14 [stable] is released!

I have noticed an issue with IP tunnel interfaces and VRF. When creating such interface it does not get instantiated in the proper VRF. At startup I get an error in the log: failed to set vrf for interface <IP tunnel if>, please check if selected vrf instance is enabled. VRF is enabled and I have al...
by accarda
Thu Feb 01, 2024 6:42 am
Forum: Wireless Networking
Topic: Roaming/FT unexpected behaviour on 7.13.3
Replies: 12
Views: 3364

Re: Roaming/FT unexpected behaviour on 7.13.3

I have also tried to keep FT disabled and FT over DS enabled, but roaming stops to work on some device (1 iPhone, windows and mac laptops). When I disable both, all my devices have roaming working properly. I have a different setup than what was described by OP, as I use multiple VLAN within single ...
by accarda
Wed Jan 31, 2024 12:35 pm
Forum: Wireless Networking
Topic: Roaming/FT unexpected behaviour on 7.13.3
Replies: 12
Views: 3364

Re: Roaming/FT unexpected behaviour on 7.13.3

I have just tried to disable FT and I had the same good unexpected result like you. Actually for me FT has worked fine for almost all mobile devices (iPhone, iPad etc) except one specific iPhone (the only WiFi6 phone that I have) by setting FT as indicated in MT docs. To fix that issue with iPhone I...
by accarda
Wed Jan 24, 2024 4:28 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 3239

Re: Wireguard - allowedIPs=0.0.0.0/0

Yes, the peer's allowed IPs determine what can pass through the tunnel from the other end to you, but not the routing. That's must be there. In your case you already have the needed routing for your 3 WG peers, as 10.1.1.0/24 is installed on each of them automatically. So when you set your allowed I...
by accarda
Wed Jan 24, 2024 4:11 pm
Forum: General
Topic: Wireguard - allowedIPs=0.0.0.0/0
Replies: 8
Views: 3239

Re: Wireguard - allowedIPs=0.0.0.0/0

When you setup a WG tunnel from your router prospective, nothing gets created automatically in its routing table, except the subnet where you have assigned the IP to the WG interface. That's the only route that you will see in your router as far as WG. The allowed IP in the peer setting defines what...
by accarda
Wed Jan 24, 2024 11:18 am
Forum: General
Topic: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]
Replies: 12
Views: 1641

Re: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]

If you don't want to use SRC-NAT for second WAN, then your only way to have traffic through WAN2 to reach internet is that you can define routing rules in the WAN2 device. As I said before, if you can manage that router and set the return routes from that device back to your MikroTik router (where y...
by accarda
Wed Jan 24, 2024 10:41 am
Forum: General
Topic: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]
Replies: 12
Views: 1641

Re: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]

As I said, if you disable SRC NAT on the second WAN, all LAN devices trying to use that route won't get to internet, since your WAN2 router does not know anything about your LAN devices. NAT with masquerading for WAN2 fixes that. Also when using MANGLE and at the same time you have fasttrack enabled...
by accarda
Wed Jan 24, 2024 9:39 am
Forum: General
Topic: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]
Replies: 12
Views: 1641

Re: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]

If you have 2 WANs and you can't define routes on the WAN devices, you will have to set SRC NAT for both your WANs and masquerading if they have dynamic IPs. If you have disabled one SRC NAT, then you won't have internet if your LAN is trying to get to internet through that WAN which does not have S...
by accarda
Wed Jan 24, 2024 9:27 am
Forum: General
Topic: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]
Replies: 12
Views: 1641

Re: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]

In general when dealing with 2 WANs and the need to direct certain traffic to certain WAN, you have to create also a second routing table where you install the default route for the second WAN in there. Then with mangle rules you can address with routing marks to reach the second routing table for t...
by accarda
Wed Jan 24, 2024 7:08 am
Forum: General
Topic: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]
Replies: 12
Views: 1641

Re: Mikrotik D-NAT from two public PPPOE IPs [SOLVED]

I see in your mangle rules you have indicated 2 wrong addresses at the beginning of each block: 192.167.10.7 (instead of 192.168.10.7) and 192.167.10.55 (instead of 192.168.10.55).
You can start debugging your problem by fixing those first.
by accarda
Tue Jan 23, 2024 2:59 pm
Forum: General
Topic: Trying to use VLANs & L3 HW offload
Replies: 12
Views: 3062

Re: Trying to use VLANs & L3 HW offload

Beside the current issue that you have now, hopefully you can recover the unit somehow. On the L3HW notes, despite what I suggested you with ports being part of bridge and vlan members, today I have seen something which goes against this. I have 2 ports used as WANs which are not part of bridge neit...
by accarda
Mon Jan 22, 2024 2:27 pm
Forum: General
Topic: Trying to use VLANs & L3 HW offload
Replies: 12
Views: 3062

Re: Trying to use VLANs & L3 HW offload

You also need to remember that whenever you do some change to L2 (settings in VLAN, bridge etc) you also have to sync up with L3HW. So before any change to L2, disable L3HW globally for the switch, then apply your changes and finally re-enable L3HW for the switch. This is also indicated in that docu...
by accarda
Mon Jan 22, 2024 6:51 am
Forum: General
Topic: Trying to use VLANs & L3 HW offload
Replies: 12
Views: 3062

Re: Trying to use VLANs & L3 HW offload

L3HW offloading relies on L2HW offloading and that ports are members of the same bridge where you enable bridge vlan filtering, which I don't see from your config. This piece is missing from your config: /interface bridge add name=bridge vlan-filtering=yes Without it enabled, settings in /interface ...
by accarda
Sun Jan 21, 2024 10:32 am
Forum: General
Topic: Overcoming Rate Limits while debugging Let’s Encrypt’s certificate renewal script
Replies: 1
Views: 727

Re: Overcoming Rate Limits while debugging Let’s Encrypt’s certificate renewal script

This would require using the staging server, which I think you can't set on this RouterOs API for letsencrypt. From Letsencrypt When troubleshooting or testing the deployment of your applications we encourage you to configure your ACME client to use our staging environment. Rate limits for our stagi...
by accarda
Fri Jan 19, 2024 6:23 am
Forum: Beginner Basics
Topic: Edge switch between FW & ISP [SOLVED]
Replies: 2
Views: 1187

Re: Help: Edge switch between FW & ISP [SOLVED]

From what I see in your config, you haven't defined the entry for vlan1000 in /interface bridge vlan You need to define vlan1000 in there as well, like you have defined for vlan99. As you have indicated the pvid in /interface bridge port you can avoid specifying the untagged port, as those with pvid...
by accarda
Tue Jan 16, 2024 2:32 pm
Forum: General
Topic: Netinstall or reset cofiguration?
Replies: 13
Views: 1557

Re: Netinstall or reset cofiguration?

Actually no at the time of seeing this "graph" issue. The timeline of what happened to me was: - Initiated the migration from v6 to v7 at an early stage (Mikrotik did improve after some initial time) - got RB4011 mostly working on v7 except some routing item disappeared and few others - we...
by accarda
Tue Jan 16, 2024 2:10 pm
Forum: General
Topic: Netinstall or reset cofiguration?
Replies: 13
Views: 1557

Re: Netinstall or reset cofiguration?

I think what netinstall does which reset won't, is that it clears up some internal DB where RouterOs stores stuffs. During an initial migration of RB4011 from Ros6 to Ros7 (years ago), there was some issue even though everything was apparently still working. From time to time during one v7 update, R...
by accarda
Thu Dec 28, 2023 7:06 am
Forum: Wireless Networking
Topic: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]
Replies: 8
Views: 13351

Re: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]

At this point all about VLAN assignment works fine using Access list and single SSID (which was my main goal with this setup); I mitigated the roaming issue on that single iPhone by applying the RSSI threshold to it within the Access list, so that AP kicks it out when no longer in range. However is ...
by accarda
Tue Dec 26, 2023 5:16 pm
Forum: Wireless Networking
Topic: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]
Replies: 8
Views: 13351

Re: 7.13 WiFi-CAPsMAN and Access list to assign VLANs [SOLVED]

As quick test I have reverted CAPsMAN config without using Access list to define VLANs and stick to VLAN per SSID as shown in MikroTik doc: CAPsMAN - CAP VLAN example https://help.mikrotik.com/docs/display/ROS/WiFi#WiFi-CAPsMAN-CAPVLANconfigurationexample: I have tried on single VLAN/SSID and on tha...
by accarda
Tue Dec 26, 2023 4:51 pm
Forum: Wireless Networking
Topic: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]
Replies: 8
Views: 13351

Re: 7.13 WiFi-CAPsMAN and Access list to assign VLANs [SOLVED]

Thank you @andriys for that mention. I have now included also connect-priority=0/1 in my security settings; however that iPhone devices is still sitting on the same AP as when initially connected. I will try to play little bit more with TX power to reduce it, but what I guess it will happen is that ...
by accarda
Tue Dec 26, 2023 4:09 pm
Forum: Wireless Networking
Topic: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]
Replies: 8
Views: 13351

Re: 7.13 WiFi-CAPsMAN and Access list to assign VLANs [SOLVED]

Thanks for the hint, but I saw that option when I initially set CAPsMAN and decided to leave it at default as I want to keep the VLAN id based on initial assignment. Even if I'm not using RADIUS but the Access list, VLANs get assigned when client is authorized and I can see VLAN id is properly retai...
by accarda
Tue Dec 26, 2023 1:41 pm
Forum: Wireless Networking
Topic: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]
Replies: 8
Views: 13351

Re: 7.13 WiFi-CAPsMAN and Access list to assign VLANs [SOLVED]

Apparently only WiFi6 clients do not roam to the next APs with this setup, while old WiFi5 devices switch from one AP to the other while moving around. I have tried with some iPhone/iPad (WiFi5 only) and they get the correct VLAN and can roam while moving; when I try with an iPhoneSE (which supports...
by accarda
Tue Dec 26, 2023 9:57 am
Forum: Wireless Networking
Topic: 7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]
Replies: 8
Views: 13351

7.13 WiFi-CAPsMAN, Access list to assign VLANs and FT issue [SOLVED]

Hi all, I was experimenting with some different settings to enable WiFi on AX APs, using CAPsMAN and assigning VLANs through Access List MAC address definition on a single SSID. In term of VLAN assignment I can see that each device, based on their MAC address, gets assigned a properly VLAN as config...
by accarda
Sat Dec 09, 2023 1:47 pm
Forum: Beginner Basics
Topic: correct Hurricane/Tunnelbroker /48 IPv6 configuration for /64 delegation [SOLVED]
Replies: 8
Views: 4964

Re: correct Hurricane/Tunnelbroker /48 IPv6 configuration for /64 delegation [SOLVED]

I have setup the same at my end and it's nothing different than setting any other address allocation that you receive on that sit interface. Once you have your setup ready based on the remote IP as provided by HE and you have set default route via HE remote end, then you just need to setup your addr...
by accarda
Tue Nov 14, 2023 9:20 am
Forum: Announcements
Topic: v7.13beta [testing] is released!
Replies: 460
Views: 104950

Re: v7.13beta [testing] is released!

About this new WiFi, I have a question: if you have both devices, compliant with new WiFi and not AND you are currently managing everything via CAPsMAN on a router (say RB4011 non WiFi model) would you be able to run both CAPsMAN, new for wifi compatible devices and legacy v2 for those that will sti...
by accarda
Mon Nov 13, 2023 8:17 am
Forum: Forwarding Protocols
Topic: OSPF: two areas for two routing tables
Replies: 2
Views: 2197

Re: OSPF: two areas for two routing tables

Thanks for sharing your opinion on this. Yes I agree with you that engaging OSPF is too much for just failover, but I wanted to improve my setup after some test. Initially I had used the recursive routing approach with couple of target IPs, but time to time I have got some false positive results lea...
by accarda
Fri Nov 10, 2023 7:34 pm
Forum: Beginner Basics
Topic: RSTP not working with Switch-VLANs
Replies: 8
Views: 2731

Re: RSTP not working with Switch-VLANs

In my SOHO network I have similar devices (hAP ac², hAP ac3), I'm running ROS v7.x and I don't have problems having VLANs and RSTP active at the same time.
I have a single CRS switch as root bridge and all other APs/switches are acting as non root bridges.
So such config works properly.
by accarda
Thu Nov 09, 2023 10:56 am
Forum: Forwarding Protocols
Topic: OSPF: two areas for two routing tables
Replies: 2
Views: 2197

OSPF: two areas for two routing tables

Hi all, I'd like to check an implementation I made on a SOHO network to manage WAN failover using OSPF. Based on attached diagram, R1 has 2 routing tables (main and table2) and I'm managing the default route through OSPF+BFD for fast switching between R2 and R3 (connected to internet) in case of fai...
by accarda
Sun Oct 29, 2023 2:40 pm
Forum: Beginner Basics
Topic: Static IPv6 DNS entries
Replies: 12
Views: 3398

Re: Static IPv6 DNS entries

@accarda Thanks. I was under impression that I tested the solution, but... it seems that full regex syntax does not apply here. Ended up with :if (!$ADDR~"fe80") do={ Because that operator works differently, depending which data you are passing to it. From Mikrotik doc ( https://help.mikr...
by accarda
Sun Oct 29, 2023 8:02 am
Forum: Beginner Basics
Topic: Static IPv6 DNS entries
Replies: 12
Views: 3398

Re: Static IPv6 DNS entries

You should change your IF statement:
:if ($ADDR~"fe80") do={

and it will find those items containing the link local address, so you can use it in if then else to apply the rest on the else part.
by accarda
Wed Sep 06, 2023 9:18 am
Forum: Beginner Basics
Topic: Chateau 5g vs LTE12 lte1 connectivity to cell towers
Replies: 3
Views: 1577

Re: Chateau 5g vs LTE12 lte1 connectivity to cell towers

If I’m not mistaken the external ANT connectors on Chateau 5G are connected to the modem for the 5G bands only (it should be for N78), while for LTE part the modem uses its internal antennas. While Chateau 12 uses those external antennas for the LTE part, so signal will be much stronger that in the ...
by accarda
Mon Apr 17, 2023 8:21 am
Forum: Beginner Basics
Topic: hEXs switch/bridge configuration on uncommon hardware configuration
Replies: 14
Views: 1264

Re: hEXs switch/bridge configuration on uncommon hardware configuration

Hi, better approach would be to have all ETH1-5 within the same single bridge and then define ETH1 and ETH2 for tagged traffic and the other for untagged as in your scheme, using bridge VLAN filtering. This would be possible as with Ros7 the switch chip MT7621 is now supporting bridge VLAN filtering...
by accarda
Sat Apr 15, 2023 8:34 am
Forum: General
Topic: What model to use?
Replies: 34
Views: 2653

Re: What model to use?

I got two CCR2216 connected to each other at 100Gbps and tried the btest the max I got was 15Gbps processor at 100% and only an IP configured on the router for testing. Hi, as indicated by MikroTik, when running such test is better to do it through the "router under test", like indicated ...
by accarda
Wed Apr 05, 2023 12:32 pm
Forum: General
Topic: L3HW on a switch [SOLVED]
Replies: 13
Views: 2471

Re: L3HW on a switch [SOLVED]

If you read carefully that example that I indicated from MT, you will see that L3HW is disabled for the WAN port.
Try to match that example with your case, which is not so different from their case.
by accarda
Wed Apr 05, 2023 10:45 am
Forum: General
Topic: L3HW on a switch [SOLVED]
Replies: 13
Views: 2471

Re: L3HW on a switch [SOLVED]

Have you checked this article from MikroTik about Inter VLAN routing with L3HW enabled ?

This is the example part, but it’s worth reading the whole article.
https://help.mikrotik.com/docs/display ... onExamples
by accarda
Sat Mar 04, 2023 11:27 am
Forum: General
Topic: routing table lookup
Replies: 5
Views: 928

Re: routing table lookup

Did you try this?
print where x.x.x.x in dst-address and active
by accarda
Sat Feb 04, 2023 11:12 am
Forum: Beginner Basics
Topic: (Mikrotik LHGG LTE6) LTE randomly disconnects multiple times a day [SOLVED]
Replies: 17
Views: 4182

Re: (Mikrotik LHGG LTE6) LTE randomly disconnects multiple times a day [SOLVED]

Sure then. But those 2 operators that I mentioned are known for disconnecting clients every 12/24H and I tested this on couple of installation with different routers/modem. So if Alessio is using one of them, it’s operator behavior to apply such disconnection, while if he is using something else, th...
by accarda
Sat Feb 04, 2023 9:17 am
Forum: Beginner Basics
Topic: (Mikrotik LHGG LTE6) LTE randomly disconnects multiple times a day [SOLVED]
Replies: 17
Views: 4182

Re: (Mikrotik LHGG LTE6) LTE randomly disconnects multiple times a day [SOLVED]

From my personal experience I can tell you that both Wind3 and Iliad are disconnecting at least every 24h, if not 12h sometime (at least in my area). So it's the operator, not the modem. In my case I was able to make that happen at night and it stays for 24H most of the time, until next disconnectio...
by accarda
Thu Feb 02, 2023 3:19 pm
Forum: Beginner Basics
Topic: Merging internet speed from two ISP
Replies: 20
Views: 16840

Re: Merging internet speed from two ISP

What has been done in Italy to provide such solution to business users is based on Multi path TCP and you can read some info about an open project on this https://www.openmptcprouter.com/ However the solution is not cheap as it involves a data center and several VPN connections to it based on how ma...
by accarda
Tue Jan 31, 2023 7:35 am
Forum: General
Topic: Creating static DNS A records with v7.7
Replies: 9
Views: 2305

Re: Creating static DNS A records with v7.7

From your example you are pointing to the wrong list.
Your list is k8s-v4-ingress, but you are pointing to another value k8s-ingress in the DNS entry.
by accarda
Fri Jan 27, 2023 6:32 am
Forum: General
Topic: Feature Suggestion - Dynamic DST-NAT
Replies: 9
Views: 1036

Re: Feature Suggestion - Dynamic DST-NAT

Have you considerate the possibility to run a script that sets the NAT rule, based on the address list entry ? In this case a script reads the address list that you have on item #2 and creates a NAT rule as indicated on item #1; then the script can remove such rule, either after 5 min or if the addr...
by accarda
Mon Jan 23, 2023 8:04 pm
Forum: Announcements
Topic: WinBox v3.37 released!
Replies: 110
Views: 154050

Re: WinBox v3.37 released!

I have just tried again, but I get the same issue. So I have connected to the router by setting winbox's session to "none" (I guess it's what you have asked to try), but when I open /ip/firewall/raw I don't see scrolling bars, until when I switch to another tab and come back. Same behaviou...
by accarda
Mon Jan 23, 2023 12:13 pm
Forum: Announcements
Topic: WinBox v3.37 released!
Replies: 110
Views: 154050

Re: WinBox v3.37 released!

Ok, I will try later this evening and let you know, as I can always reproduce this problem with firewall tabs.
by accarda
Mon Jan 23, 2023 6:56 am
Forum: Announcements
Topic: WinBox v3.37 released!
Replies: 110
Views: 154050

Re: WinBox v3.37 released!

In my case the issue of not seeing all data from firewall tables (in my case it's not limited to specific tab), when using Ros v7.x (I'm now on v7.7), is that on sections where there are lot of rows, Winbox does not show the lateral scrolling bar once I open a tab. But if I switch to another tab and...
by accarda
Fri Jan 13, 2023 9:21 am
Forum: Announcements
Topic: v7.7 [stable] is released!
Replies: 357
Views: 122647

Re: v7.7 [stable] is released!

I'd like to report some behaviour that I have noticed while updating couple of devices, a CHR and RB4011. On both I'm running VXLAN where I have attached PPPoE interface. Initially after upgrading CHR first, VXLAN didn't work properly with RB4011, so PPPoE server was not reached. After updating also...
by accarda
Fri Dec 30, 2022 1:55 pm
Forum: Beginner Basics
Topic: Playstation & Youtube errors [SOLVED]
Replies: 14
Views: 2454

Re: Playstation & Youtube errors [SOLVED]

In that case he would need to check what the other router was passing as DNS servers through DHCP server… may be it was passing router’s IP itself, but we can only guess at this point.
by accarda
Fri Dec 30, 2022 11:37 am
Forum: Beginner Basics
Topic: Playstation & Youtube errors [SOLVED]
Replies: 14
Views: 2454

Re: Playstation & Youtube errors [SOLVED]

Because in your setup you had MT to be your DNS, but you forgot to add DNS servers where your MT should have made query to.
So your clients pointed to a resolver which didn't have upstream DNS to query.
/ip dns
set allow-remote-requests=yes servers=8.8.8.8,8.8.4.4,9.9.9.9
by accarda
Wed Dec 28, 2022 5:53 pm
Forum: Scripting
Topic: HE ipv6 tunnel client IP address update script
Replies: 15
Views: 7345

Re: HE ipv6 tunnel client IP address update script

Ok, I will take your advice about :local currentWANIP $WANIP instead of setting 0.0.0.0, better logic.
by accarda
Wed Dec 28, 2022 6:31 am
Forum: Scripting
Topic: HE ipv6 tunnel client IP address update script
Replies: 15
Views: 7345

Re: HE ipv6 tunnel client IP address update script

After the recent outage of /ip/cloud I've decided to include one more check before sending the update to HE server, so here is the latest code that I use: :global WANIP :local cloudStatus [/ip/cloud/get status] :local currentWANIP :if ($cloudStatus = "updated") do={ :set $currentWANIP [/ip...
by accarda
Tue Dec 27, 2022 11:56 am
Forum: General
Topic: Issue with ip/cloud. [SOLVED]
Replies: 10
Views: 2313

Re: Issue with ip/cloud. [SOLVED]

I have just got reply from MikroTik support; the issue is now resolved.
I checked my routers and now the DDNS service is working again.
by accarda
Tue Dec 27, 2022 10:24 am
Forum: General
Topic: Issue with ip/cloud. [SOLVED]
Replies: 10
Views: 2313

Re: Issue with ip/cloud. [SOLVED]

I have also reported this to MikroTik support, so they can check their server status.
by accarda
Tue Dec 27, 2022 6:50 am
Forum: General
Topic: Issue with ip/cloud. [SOLVED]
Replies: 10
Views: 2313

Issue with ip/cloud. [SOLVED]

Hello everyone,
is there an issue with DDNS at the moment ?
I have my routers with DDNS and status "updating", but apparently the service is down or the router is not able to reach it.
Does anybody else have issues with the service ?
by accarda
Sat Dec 24, 2022 6:37 am
Forum: General
Topic: Communication between two different sub-networks
Replies: 7
Views: 2382

Re: Communication between two different sub-networks

In particular, I would like the ports 80 and 8888 of the device 192.168.2.10 to be reachable from a device connected to sub 1 For this particular aspect you need to set a DST NAT rule on your MikroTik to forward traffic from WAN to specific LAN host: /ip firewall nat add action=dst-nat chain=dstnat...
by accarda
Fri Dec 23, 2022 11:55 am
Forum: General
Topic: Communication between two different sub-networks
Replies: 7
Views: 2382

Re: Communication between two different sub-networks

From Mikrotik side if you used default config you should be ok, because RouterOS creates automatically routes for connected networks. So from Mikrotik can you reach internet through Fritz ? I guess you should be able to, already. From Fritz you need to make sure that you send the route for destinati...
by accarda
Thu Dec 22, 2022 6:31 pm
Forum: General
Topic: Communication between two different sub-networks
Replies: 7
Views: 2382

Re: Communication between two different sub-networks

The problem is that you need to define a route on Fritz to reach subnet 192.168.2.0 through connection to the hAP (to 192.168.1.200).
So you need to check on Fritz how to set a static route to hAP.
by accarda
Fri Dec 16, 2022 9:19 pm
Forum: Scripting
Topic: HE ipv6 tunnel client IP address update script
Replies: 15
Views: 7345

Re: HE ipv6 tunnel client IP address update script

:set WANIP $currentWANIP
You’re right since no operation, other than assignment.
Point noted, thanks.
by accarda
Thu Dec 15, 2022 6:59 pm
Forum: Scripting
Topic: HE ipv6 tunnel client IP address update script
Replies: 15
Views: 7345

Re: HE ipv6 tunnel client IP address update script

I use something like this to force a change to HE only when the public IP changes. :global WANIP :local currentWANIP [/ip/cloud/get public-address] :if ($currentWANIP != $WANIP) do={ /tool/fetch url="as indicated by HE info page" src-address=<private IP wan> keep-result=no :set $WANIP ($cu...
by accarda
Mon Dec 12, 2022 1:57 pm
Forum: Beginner Basics
Topic: Capsman Master-Slave Configuration
Replies: 5
Views: 3426

Re: Capsman Master-Slave Configuration

You will create the additional configuration in CAPsAN to define your virtual interfaces, then from the provision sub-menu you will add the master config and you can also include one or more slave configuration. In this way CAPsMAN will manage both interfaces, master, slaves and they will appear to ...
by accarda
Sat Dec 10, 2022 8:29 am
Forum: General
Topic: Does Paramount+ require IPv6 ? [SOLVED]
Replies: 11
Views: 2829

Re: Does Paramount+ require IPv6 ? [SOLVED]

It seems like you don't have the default route being set on your client. I'm using IPv6 and on my machine I have defined the default route manually (I have assigned manually IPv6 addresses) and I can ping that IPv6 address. This is also that domain being resolved. ; <<>> DiG 9.11.5-P4-5.1+deb10u8-Ra...
by accarda
Thu Nov 24, 2022 9:53 am
Forum: Beginner Basics
Topic: EoIP Tunnel Clamp TPC MSS
Replies: 16
Views: 9111

Re: EoIP Tunnel Clamp TPC MSS

You can read about wireguard here https://help.mikrotik.com/docs/display/ROS/WireGuard which requires Ros v7.x
by accarda
Thu Nov 17, 2022 6:52 pm
Forum: Beginner Basics
Topic: [SOLVED] Mikrotik + IPv6 tunnel weird behaviour
Replies: 4
Views: 1115

Re: [SOLVED] Mikrotik + IPv6 tunnel weird behaviour

OK good to hear that.
Enjoy the IPv6 stuffs, I have also started recently mine.
by accarda
Thu Nov 17, 2022 1:58 pm
Forum: Beginner Basics
Topic: [SOLVED] Mikrotik + IPv6 tunnel weird behaviour
Replies: 4
Views: 1115

Re: [SOLVED] Mikrotik + IPv6 tunnel weird behaviour

Hi, I would check the prefix that you have assigned to your LAN though. From your config there is 2001:470:58e4:a:: but then in your post you mentioned that 2001:7b8:3:32:213:136:1280:22 is pingable but that /64 does not match the address on your bridge. Actually I'm using HE too, but you have to as...
by accarda
Thu Sep 22, 2022 6:37 am
Forum: General
Topic: New Chateau 5G Firmware (xx13A02M4G) - Broken Connection
Replies: 16
Views: 3995

Re: New Chateau 5G Firmware (xx13A02M4G) - Broken Connection

This update went fine on my case. Before with the old firmware my Chateau was not able to connect to 5G even though N28 was available in my area. After the updates the router was able to connect to N28. By reading from modem’s supplier website this firmware was updating something about 5G which was ...
by accarda
Tue Aug 09, 2022 2:46 pm
Forum: Beginner Basics
Topic: Simple home MESH.
Replies: 15
Views: 20557

Re: Simple home MESH.

It seems like they have just announced on their YouTube 3 “new devices” equipped with WiFi6. They have now also hap ax2 and new chateau in AX version. https://youtu.be/nm9RjNbZJjc Since they have increased CPU, RAM and few other hardware, not really sure whether it’s the same wifi6 with external pac...
by accarda
Wed Aug 03, 2022 9:26 am
Forum: General
Topic: Monitor bandwidth usage per period?
Replies: 1
Views: 575

Re: Monitor bandwidth usage per period?

You can do it by creating a script in your router to account for all LTE traffic inbound/outbound for the given period. However, differently than for ethernet interfaces, LTE does reset all counters every time the session is restarted due to connection lost and re-established. Also you need to take ...
by accarda
Tue Aug 02, 2022 12:26 pm
Forum: General
Topic: Mikrotik routerboard 1036 hotspot, Users, User Profiles, Active, Host, ip Bindings How can I draw tables with Ms Excel e
Replies: 7
Views: 1284

Re: Mikrotik routerboard 1036 hotspot, Users, User Profiles, Active, Host, ip Bindings How can I draw tables with Ms Exc

Personally I have never used API approach as I mostly do all my stuffs with script directly on router. However one thing you could also check is, if it fits your needs, an easy way to generate a sort of CSV file generated with a ROS script after that you have gathered the user information that you a...
by accarda
Tue Aug 02, 2022 12:07 pm
Forum: General
Topic: Mikrotik routerboard 1036 hotspot, Users, User Profiles, Active, Host, ip Bindings How can I draw tables with Ms Excel e
Replies: 7
Views: 1284

Re: Mikrotik routerboard 1036 hotspot, Users, User Profiles, Active, Host, ip Bindings How can I draw tables with Ms Exc

You can have a look at how to use API to communicate with router and send your queries to receive the needed data: https://help.mikrotik.com/docs/display/ROS/API There is also some example using Python, which has lot of functions to manage Excel and PDF files: https://help.mikrotik.com/docs/display/...
by accarda
Tue Aug 02, 2022 11:18 am
Forum: General
Topic: New Chateau 5G Firmware (xx13A02M4G) - Broken Connection
Replies: 16
Views: 3995

Re: New Chateau 5G Firmware (xx13A02M4G) - Broken Connection

By checking at the Quectel forum I found some zip package provided by FAE support which includes a PDF with release notes. New features RG502QEAAAR13A01M4G_01.001.01.001 Added the function of reporting DFOTA upgrade progress on the Debug port. Added AT+QNWCFG="clr_rplmn" to delete the RPLM...
by accarda
Tue Aug 02, 2022 8:16 am
Forum: General
Topic: New Chateau 5G Firmware (xx13A02M4G) - Broken Connection
Replies: 16
Views: 3995

Re: New Chateau 5G Firmware (xx13A02M4G) - Broken Connection

Had the same problem after modem firmware upgrade using Webfig. I have been waiting before updating the firmware on my unit, as I saw some issue. Do you know what has been changed/improved, if any, with this firmware update ? I couldn’t find much info on Quectel forum and not really sure which impr...
by accarda
Mon Aug 01, 2022 2:51 pm
Forum: Wireless Networking
Topic: Chateau5G LTE sessions restart
Replies: 0
Views: 811

Chateau5G LTE sessions restart

Hi everyone, I'm monitoring a new Chateau5G installation and I have noticed that LTE session gets restarted time to time. Now I have captured the an extensive log (except raw data, too many items/sec) and here is what I see when the lte1 interface goes down for couple of seconds: Aug/01/2022 09:39:1...
by accarda
Mon Aug 01, 2022 11:48 am
Forum: Beginner Basics
Topic: Chateau 5G WAN (via lt1 interface) access on port(s) with separate DHCP [SOLVED]
Replies: 1
Views: 1152

Re: Chateau 5G WAN (via lt1 interface) access on port(s) with separate DHCP [SOLVED]

On your step #2, set the IP address to something different than network address, so like 192.168.100.1/24.
What you want to do is doable with no issue at all and once the proper address is assigned ROS will create proper routing info the for the new bridge2 interface.
by accarda
Fri Jul 29, 2022 9:46 pm
Forum: Wireless Networking
Topic: LTE interface disappeared after cell-lock
Replies: 0
Views: 1011

LTE interface disappeared after cell-lock

Hi all, I'm just reporting some strange behavior I have seen on a Chateau5G with latest ROS 7.4, but not latest modem firmware (still on RG502QEAAAR11A06M4G). As this was a first installation in a new location, I was playing with cell-lock to find some better combination of LTE bands; however since ...
by accarda
Fri Jul 22, 2022 7:16 am
Forum: General
Topic: WAN Failover/Dual WAN and DDNS?
Replies: 18
Views: 3128

Re: WAN Failover/Dual WAN and DDNS?

Is the DDNS linked to a specific interface, exclusively, with no way for Mikrotik to update it (other than scripting, I suppose) automatically in the event one WAN goes down? Or will Mikrotik update the DDNS to point to the remaining interface? If you have enabled DDNS from IP -> Cloud, that IP ent...
by accarda
Fri Jul 22, 2022 6:58 am
Forum: General
Topic: What is Detect Internet for?
Replies: 12
Views: 10906

Re: What is Detect Internet for?

I had used it once, initially, but I disabled it after one software update where I got RB4011 screwed due to detect internet swapping interfaces in interface-list, which caused being locked out due to firewall. My reason of using it was that when using MikroTik app, detect internet gives you an easy...
by accarda
Mon Apr 25, 2022 2:38 pm
Forum: General
Topic: L2 issue with a specific device [SOLVED]
Replies: 1
Views: 696

Re: L2 issue with a specific device [SOLVED]

Issue was about a privacy setting on iPad OS that manages whether or not each app can access local network devices.
by accarda
Sat Apr 23, 2022 9:49 am
Forum: General
Topic: L2 issue with a specific device [SOLVED]
Replies: 1
Views: 696

L2 issue with a specific device [SOLVED]

Hi everyone, I have an strange issue with a specific ipad device, which is not able to do regular network traffic only within the subnet where it's connected to. For example, if I run a ping from this ipad to the router's IP for that subnet, no traffic is generated by the ipad (I have checked with p...
by accarda
Wed Apr 06, 2022 11:55 pm
Forum: Wireless Networking
Topic: Cell monitor item list [SOLVED]
Replies: 2
Views: 2808

Re: Cell monitor item list [SOLVED]

Thank you mkx for the very detailed answer.
For testing, after I have received the short list of cells, I have initiated a LTE scanner and after all operators have been found, cel monitor was able to show again the full list.
by accarda
Wed Apr 06, 2022 8:57 am
Forum: Wireless Networking
Topic: Cell monitor item list [SOLVED]
Replies: 2
Views: 2808

Cell monitor item list [SOLVED]

I have noticed a behavior on SXTR with R11e-LTE6 (running v7.2 now, but saw this also with previous Ros) that by checking LTE cell monitor, the list of available physical cells changes based on some traffic initiated by the router. If I reboot the router, after it gets connected to the cell, when I ...
by accarda
Sun Mar 27, 2022 10:41 am
Forum: Announcements
Topic: v7.1.4 and v7.1.5 is released!
Replies: 201
Views: 44094

Re: v7.1.4 and v7.1.5 is released!

Since Ros 7.x.x I see this bug with file deletion and what is displayed in Winbox. I have a backup script that creates files "some-name_date" and saves to disk. Then each week the previous file is deleted before creating the new set for upload to FTP server. If I'm already logged with Winb...
by accarda
Sat Jan 22, 2022 8:58 am
Forum: RouterOS beta
Topic: hAP ac² Switch VLAN not working correctly
Replies: 14
Views: 8739

Re: hAP ac² Switch VLAN not working correctly

I can tell you that the switch chip VLAN setup works also on ros v7.1.1 as I’m using it on both hAP AC2/AC3 with Ethernet ports and WLAN virtual ssid.
by accarda
Fri Jan 21, 2022 11:00 am
Forum: Beginner Basics
Topic: Hap AC3 bridge vlan - Hw offload off
Replies: 5
Views: 2129

Re: Hap AC3 bridge vlan - Hw offload off

One way could be to enable VLAN on that device by using switch chip config instead of bridge VLAN filtering.
In such case VLAN filtering will be OFF, and hw offloading will be ON.
I have done the same on my hAP AC2/AC3 for the same reason.
by accarda
Fri Jan 21, 2022 10:17 am
Forum: Beginner Basics
Topic: Hap AC3 bridge vlan - Hw offload off
Replies: 5
Views: 2129

Re: Hap AC3 bridge vlan - Hw offload off

From the config you have activated VLAN filtering on that bridge and so HW offloading can not be ON.
Check this table where you can see which option allows HW based on your switch chip model.
https://help.mikrotik.com/docs/display ... Offloading
by accarda
Thu Jan 13, 2022 3:36 pm
Forum: Virtualization
Topic: Info to avoid screwing up the license renewal
Replies: 3
Views: 7751

Re: Info to avoid screwing up the license renewal

Just to complete this discussion, CHR was able to contact the account server and renew the license before reaching the deadline with no issues and automatically. Also I had to re-install the CHR months later, which created a new system ID. From there I started again a new P1 license trial and from a...
by accarda
Thu Jan 13, 2022 2:54 pm
Forum: Scripting
Topic: log ping results
Replies: 1
Views: 4337

Re: log ping results

You could use tool/netwatch to set a test (which is based on ping) to 1.1.1.1, where you can specify an action in the down tab of scripting section to save the timestamp on log.

See more about netwatch https://help.mikrotik.com/docs/display/ROS/Netwatch
by accarda
Tue Jan 11, 2022 6:26 pm
Forum: RouterOS beta
Topic: Is RoMON Broken in 7.1.1
Replies: 6
Views: 4071

Re: Is RoMON Broken in 7.1.1

Actually I went through my setup and then I was able to make RoMON see now all my devices as used to be before with ros 6.xx. My issue was with devices where I do have VLAN being set, but in my case using the switch chip setup (in my case I'm running this on hAP ac2, hAP ac3 for example). In order t...
by accarda
Tue Jan 11, 2022 6:11 pm
Forum: Scripting
Topic: catch 22 importing a RSC file
Replies: 2
Views: 2527

Re: catch 22 importing a RSC file

You can start by reading about scripting from here: https://help.mikrotik.com/docs/display/ROS/Scripting There you can also find a way to intercept errors when your code is part of a do section by using on-error statement. https://help.mikrotik.com/docs/display/ROS/Scripting#Scripting-Catchrun-timee...
by accarda
Thu Jan 06, 2022 3:16 pm
Forum: RouterOS beta
Topic: Is RoMON Broken in 7.1.1
Replies: 6
Views: 4071

Re: Is RoMON Broken in 7.1.1

In my case with a total of 13 devices, after that they have been all migrated to v7.1.1, only 4 are still reachable through RoMON, the other 9 are no longer seen. Switching back to v6.x and all 13 returned visible and accessible through RoMON. So something is not right and it depends, but I don't kn...
by accarda
Wed Jan 05, 2022 1:48 pm
Forum: Wireless Networking
Topic: CAPsMAN: 5GHZ hidden SSID
Replies: 4
Views: 3301

Re: CAPsMAN: 5GHZ hidden SSID

Have you checked that the waiting time on 5GHz is not due to the fact that your channel gets into the radar band ?
In such case AP takes longer, while verifying for radar presence, before enabling the AP.
by accarda
Wed Jan 05, 2022 10:05 am
Forum: RouterOS beta
Topic: Is RoMON Broken in 7.1.1
Replies: 6
Views: 4071

Re: Is RoMON Broken in 7.1.1

I have a similar issue after moving to v7.1.1, but not on all my devices. What I have noticed is that I still see on RoMON devices with v7.1.1 where I haven't defined VLAN in the switch chip setup, but instead I used VLAN aware bridge (or I don't have VLAN being defined). Something is not working as...
by accarda
Tue Jan 04, 2022 5:51 pm
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

Thanks for confirming it worked for you as well. Most likely the first time that you tried there was something not synched properly. However the first part of this thread has both the main script and its function to work together and the code has not changed since then. Script is supposed to be load...
by accarda
Tue Jan 04, 2022 8:39 am
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

Hi Taylor, please disregard the proposed change to the function searchIPList and stick with the original code (which I include again to avoid confusion). :global searchIPList do={ :local listName $1 :local ipAddr $2 :if ([:len [/ip firewall address-list find list=$listName]] > 0) do={ :foreach found...
by accarda
Mon Jan 03, 2022 11:43 pm
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

Actually searchIPList is a function (inside a global variable), therefore you can't call it like that. From terminal you can call it with this :put [$searchIPList list IP] where list is your address-list name and the IP that you want to check. So you run it by passing the 2 parameters needed for it ...
by accarda
Mon Jan 03, 2022 7:53 pm
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

Not really sure as I have it in place on a router that it's still on v6.x. However if there is anything not fully compatible with v7, it will be on the main script (not the function to search for duplicate IPs). I have tested the searchIPList on ros v7.1.1 and it worked fine in finding a duplicate I...
by accarda
Mon Jan 03, 2022 4:38 pm
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

Actually you can remove the global function searchIPList from your script -> environment menu in Winbox and load this new version instead.
But as I said it didn't change much other than setting an output value when there is not matching with the address in the list.
All the rest is the same.
by accarda
Mon Jan 03, 2022 8:09 am
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

I have checked the function searchIPList with an address list and it worked in finding only duplicates. Be aware that the function works only on IP addresses without CIDR notation. So if you had any address with CIDR notation, the function would not give you the duplicate flag on exit. I have tried ...
by accarda
Thu Dec 30, 2021 12:46 pm
Forum: General
Topic: v7.1.1 Failover Routing Invalid
Replies: 2
Views: 1644

Re: v7.1.1 Failover Routing Invalid

In Ros v7.1.1 you need to make sure that for those affected invalid routes target-scope is set with value greater than scope (even just +1 it's enough).
By doing so your setup will return valid routes.
by accarda
Wed Dec 29, 2021 2:40 pm
Forum: General
Topic: need help for resilient route from DUAL-WAN to CHR/VPS acting as default GW
Replies: 11
Views: 2974

Re: need help for resilient route from DUAL-WAN to CHR/VPS acting as default GW

About NAT I was referring to my case where I establish a VPN connection from SXT to CHR (on datacenter) to get around the CGNAT that I have on my LTE connection. In this case when I need to reach some internal port, I need to open it on CHR first and then on LTE before reaching the RB4011; if I had ...
by accarda
Wed Dec 29, 2021 2:05 pm
Forum: General
Topic: need help for resilient route from DUAL-WAN to CHR/VPS acting as default GW
Replies: 11
Views: 2974

Re: need help for resilient route from DUAL-WAN to CHR/VPS acting as default GW

Actually recursive route works in v7.1.1 (I'm using it on my router), but you need to make sure that target-scope is set with a value higher than scope. This is not taken care by the migration script, so initially the route is marked as invalid; then you can fix it by setting the target-scope (just ...
by accarda
Wed Dec 29, 2021 9:08 am
Forum: Forwarding Protocols
Topic: After Upgrading from 6.49.2 to 7.1 My BGP Network tab own Public IP Prefix not working
Replies: 5
Views: 4540

Re: After Upgrading from 6.49.2 to 7.1 My BGP Network tab own Public IP Prefix not working

Hi, in my case it works when I add all my networks into the address-list; this is the same approach provided by an automated script that migrates a working BGP setup on ros v6 into v7. It creates an address-list called bgp-networks and adds all networks in there. Then you recall that list in BGP con...
by accarda
Wed Dec 29, 2021 8:47 am
Forum: General
Topic: need help for resilient route from DUAL-WAN to CHR/VPS acting as default GW
Replies: 11
Views: 2974

Re: need help for resilient route from DUAL-WAN to CHR/VPS acting as default GW

Looking at my 2nd, updated pic...I am not quite sure if the dual route scenario works, as the second endpoint, pointing to wg1 on the CHR, which is also the default gw of the VOIP server is not on the same routing table. The RB4011 will see the wg1 of CHR directly via 10.255.255.2 but not the secon...
by accarda
Tue Dec 28, 2021 2:50 pm
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

I have migrated some more device to Ros v7.1.1 and I have noticed this issue with RoMON compatibility; I still have some device on Ros v6.48.6 though. All devices have a management VLAN being defined. All devices that are still on Ros v6 are seen on RoMON neighbors list. Devices on Ros v7.1.1 are NO...
by accarda
Mon Dec 27, 2021 7:01 pm
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

This has been covered many many times. target-scope now has to be greater than scope instead of being greater than or equal to scope. Increase your target-scope by 1 and it should work.
Thanks for the heads up, I was missing this info.
by accarda
Mon Dec 27, 2021 2:16 pm
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

I have tried to implement a recursive route (like in ros v6), but I don't see it working, unless the syntax has completely changed.
The route gets IUSH as invalid and unreachable.
Is this not implemented yet in ros v7.1.1 ?
by accarda
Sat Dec 25, 2021 7:44 am
Forum: General
Topic: LTE with public IP, but no opened ports.
Replies: 9
Views: 2792

Re: LTE with public IP, but no opened ports.

Wireguard would make a lot of sense if you're using V7 on both side. Yes, indeed, therefore I have migrated also my CHR into Ros v7.1.1. I tried to establish such site-to-site connection, even though I had some trouble initially as I have changed the UDP port after that both server/peer were create...
by accarda
Fri Dec 24, 2021 9:25 am
Forum: General
Topic: LTE with public IP, but no opened ports.
Replies: 9
Views: 2792

Re: LTE with public IP, but no opened ports.

Thanks mkx, I have noticed that all inbound traffic is blocked when checking conn tracking and lte1 traffic. This is my backup connection, the primary one uses a business grade SIM and in that case I get full public IP without CGNAT. I will see to enable a wireguard VPN to a CHR that I have in order...
by accarda
Fri Dec 24, 2021 6:45 am
Forum: General
Topic: LTE with public IP, but no opened ports.
Replies: 9
Views: 2792

Re: LTE with public IP, but no opened ports.

Thanks for the hint, it was worth a try. Actually that function is on v7.x, so I updated the router to it and tried also with different APN values, which ended up with same results not providing an IP on LTE interface. Went back to the working one, but still under CGNAT after testing few ports. Anyw...
by accarda
Thu Dec 23, 2021 7:26 pm
Forum: General
Topic: LTE with public IP, but no opened ports.
Replies: 9
Views: 2792

Re: LTE with public IP, but no opened ports.

Thanks for sharing your thoughts. About firewall settings and the like I have checked them and are ok, as I was using them already with a VPN established to my CHR to bypass the CGNAT issue with previous APN setting. Actually I do have another SIM used on another LTE router (which is a leased one, n...
by accarda
Thu Dec 23, 2021 8:49 am
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

romon doesn't work btw v6 and v7
I have only 1 router migrated to v7.1.1, but either if I set RoMON agent to be one of v6 or the v7 router, I can log into all the others with no issues, including the v7 one.
by accarda
Thu Dec 23, 2021 7:41 am
Forum: General
Topic: LTE with public IP, but no opened ports.
Replies: 9
Views: 2792

LTE with public IP, but no opened ports.

Hi all, finally I was able to find out an APN to set to my SXT LTE6 router different than the standard "internet" value and I can see it's working (because all other APNs indicate for my provider didn't give me IP from modem). Previously with "internet" APN I was getting a privat...
by accarda
Wed Dec 22, 2021 4:34 pm
Forum: Forwarding Protocols
Topic: After Upgrading from 6.49.2 to 7.1 My BGP Network tab own Public IP Prefix not working
Replies: 5
Views: 4540

Re: After Upgrading from 6.49.2 to 7.1 My BGP Network tab own Public IP Prefix not working

Just went through some experiment from Ros v6.49.2 to v7.1.1 and had to discover that now network tab has been replaced by output.network field (from connection -> filter tab). All the advertise networks must be placed into an address-list and then in such field you can assign that list. Then I had ...
by accarda
Wed Dec 22, 2021 3:34 pm
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

@pe1chl just for the sake of completing this, I have repeated again the same setup and steps, starting "almost" fresh from v6.49.2. In fact before making the first move to v7.1.1 I had created a backup for v6.49.2, which never included any trace of v7.1.1, which resulted in a clean starti...
by accarda
Wed Dec 22, 2021 11:49 am
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

@pe1chl in my case I had this hEX-S running LT and never tried v7.x, so no possibility that some trace of v7 was in it. Then I moved first to latest 6.49.2 just to make sure I had all with latest step before v7. My move to v7.1.1 (first time) was all ok and BGP worked fine, even though after creati...
by accarda
Wed Dec 22, 2021 10:41 am
Forum: Announcements
Topic: v7.1.1 is released!
Replies: 442
Views: 234451

Re: v7.1.1 is released!

I have just tried to experiment with v7.1.1 using a hEX S router, which has a very basic config. Started from Ros v6.49.2 and had only a mgmt VLAN interface, one bridge, loopback and a point to point ethernet connection to a rb4011 running 6.48.6. With this basic i installed v7.1.1 and then I create...
by accarda
Wed Apr 21, 2021 5:00 pm
Forum: Beginner Basics
Topic: Interface Data Quota
Replies: 40
Views: 36998

Re: Interface Data Quota

Hello all, I'm just posting the current version of the script for ethernet's based traffic limiter which I'm currently using, where I added also some notification via Telegram Bot. For this reason there is a global variable "notifyCount" to limit the number of Telegram notification that yo...
by accarda
Wed Apr 21, 2021 4:44 pm
Forum: General
Topic: LTE quota management & signal
Replies: 10
Views: 2128

Re: LTE quota management & signal

Time ago there was a similar request for managing data quota. Here you can find several info and a different version of script (one that I posted about mine) that you can have a look: https://forum.mikrotik.com/viewtopic.php?f=13&t=87565&p=854148#p854148 The problem with scripting is that th...
by accarda
Wed Apr 21, 2021 4:38 pm
Forum: Beginner Basics
Topic: Interface Data Quota
Replies: 40
Views: 36998

Re: Interface Data Quota

Would you be able/willing to explain what the 3 other L7 variables do? I tried to understand from your script, but can't get their meaning...: - wan-offset ? - wan-rebootlock ? - wan-refdata ? Again, thank you very much for your script :-) Sorry for the long delay, but actually I have never receive...
by accarda
Wed Apr 21, 2021 1:35 pm
Forum: General
Topic: LTE quota management & signal
Replies: 10
Views: 2128

Re: LTE quota management & signal

For the quota manager you can work with scripting to create some that suites your needs.
I think there is also some basic example in the wiki page if you search for.
by accarda
Tue Apr 13, 2021 9:23 am
Forum: General
Topic: Implementing VLAN progressively suggestions
Replies: 2
Views: 647

Implementing VLAN progressively suggestions

Good day everyone, I'm trying to plan an activity to bring a site with a flat LAN into a site with subnets by using VLANs for some type of traffic. My problem is that the site has several switches (of different brands as well) and I will be remote, which is not ideal to manage such thing. All MK swi...
by accarda
Wed Mar 24, 2021 3:39 pm
Forum: Scripting
Topic: Get log line from memory log
Replies: 15
Views: 8074

Re: Get log line from memory log

I still think a welcome new feature would be a "script" target for error logging. Like this: /system logging add action=script topics=ipsec,error script="ipsecerrorscript" Then whenever a message with topic ipsec,error is generated the script is run and it gets the log item info...
by accarda
Wed Mar 24, 2021 6:18 am
Forum: Virtualization
Topic: license limitation concern
Replies: 1
Views: 6356

Re: license limitation concern

Hello,
I have used a CHR with P1 license to run bandwidth test to another router with fiber connection 1000/300 at their side; I was able to max-out that router with UDP traffic in both directions.

Armando
by accarda
Wed Mar 24, 2021 6:10 am
Forum: Scripting
Topic: Sending telegram bot message
Replies: 6
Views: 16523

Re: Sending telegram bot message

How do I also use keep-result=no in the script, as is done in the first example? I tried it after the word fetch and at the end after the last entry sub2" - neither worked and both prevented the script from working. I use this statement to send Telegrams with that option included: :local botId...
by accarda
Tue Mar 23, 2021 7:54 pm
Forum: General
Topic: hAPac2 high latency on WiFi clients [SOLVED]
Replies: 2
Views: 2390

Re: hAPac2 high latency on WiFi clients [SOLVED]

Thank you for this insight. Actually I just did a quick test like you suggested and got impressed how fast these portable gets to sleep. I ran ping from tablet to main router and ping was about 2ms; at the same time I issued a ping from router to tablet and I've got 2ms too. As soon as the ping from...
by accarda
Tue Mar 23, 2021 6:49 pm
Forum: General
Topic: hAPac2 high latency on WiFi clients [SOLVED]
Replies: 2
Views: 2390

hAPac2 high latency on WiFi clients [SOLVED]

I was testing ping on the LAN from main router to WiFi clients and I have got some high response: from 2ms to 110ms, with several variations. I have tested phone, tablet, laptop all near by the AP (same room). I have 2 setup under test (2 different sites): one using VLANs and the other on a flat LAN...
by accarda
Tue Mar 23, 2021 4:14 pm
Forum: General
Topic: Cannot Use Multiple IPs
Replies: 13
Views: 3613

Re: Cannot Use Multiple IPs

Yes, your assumption is correct, I have assigned them as /32 and I have all listed from x.x.x.24 to x.x.x.31. Actually I tried again this morning few hours ago, and the address .31 didn't work at all. At this very moment I tried from the router to make a ping to 8.8.8.8 an using source addr the .31 ...
by accarda
Tue Mar 23, 2021 3:30 pm
Forum: General
Topic: Cannot Use Multiple IPs
Replies: 13
Views: 3613

Re: Cannot Use Multiple IPs

I was reading this post and I’m wondering whether one issue that I have with an IP address availability could be explained by the exchange here. My case is different, in the sense that I’ve got a /29 from ISP, which I haven’t assigned to a LAN interface, but instead I’m setting things so that I can ...
by accarda
Tue Mar 23, 2021 1:44 pm
Forum: Scripting
Topic: Is there a persistent script or only schedules?
Replies: 2
Views: 1654

Re: Is there a persistent script or only schedules?

You could run the script within a loop, so that if you have portion of it where you want to keep an initial state, you can do as those variables can be set outside the looping portion. So for example you can embed your script with a code like this to make a loop: :global stopScript false :do { .... ...
by accarda
Tue Mar 23, 2021 6:15 am
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Re: Add failed IPSec phase1 negotiation to AddrList

Hi @Jotne, sure someone can apply different strategies to the firewall to achieve different results. In my case I have forwarded to the router only those ports used by IPSec/IKEv2 and nothing else to internal hosts. Anyway speaking of timers I have slightly modified the main script to allow a certai...
by accarda
Mon Mar 22, 2021 7:39 pm
Forum: Scripting
Topic: Add failed IPSec phase1 negotiation to AddrList
Replies: 17
Views: 7121

Add failed IPSec phase1 negotiation to AddrList

Hi all, I was creating a script that looks in the memory log and if it finds an "ipsec,error" about failed phase1 negotiation adds the address to a blacklist. In case someone else is interested, here is the script that I'm running on couple of routers. The script is made by a function to s...
by accarda
Sun Mar 21, 2021 1:54 pm
Forum: General
Topic: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]
Replies: 8
Views: 11215

Re: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]

Ok I will leave that setting in profile as is. Well about the max MTU, then we are not going to see much differences with another ISP, as the transport network is managed by the same telco company and all the remaining 23 fibers are coming from the same place. It will be mostly for redundancy at thi...
by accarda
Sun Mar 21, 2021 12:16 pm
Forum: Scripting
Topic: PH2 State script [SOLVED]
Replies: 8
Views: 4723

Re: PH2 State script [SOLVED]

Good to hear this. Actually I have fixed the typo in the original snippet, so you can copy/paste also from here to get the whole working code. In my original code the foreach, which gets the policy except those with action "discard", is because I have a policy to avoid L2TP staying up when...
by accarda
Sun Mar 21, 2021 12:09 pm
Forum: General
Topic: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]
Replies: 8
Views: 11215

Re: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]

Thank you for this hint about TCP MSS. I have added this mangle rule now. Concerning TCP MSS, in the PPPoE profile I was keeping the default value for "Change TCP MSS"; will this kind of applying "a double MSS change" or it won't interfere ? Otherwise I guess I should set it to n...
by accarda
Sun Mar 21, 2021 9:04 am
Forum: Scripting
Topic: PH2 State script [SOLVED]
Replies: 8
Views: 4723

Re: PH2 State script [SOLVED]

Hi SiB, yes also with the script that I'm using on my router (which is mainly sending telegram msg to inform about some issue with PH2) gets triggered even though IPSec tunnel is active and working. Of course in term of scripting it all depends how often you run it, chances that you catch one of tho...
by accarda
Sun Mar 21, 2021 8:53 am
Forum: General
Topic: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]
Replies: 8
Views: 11215

Re: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]

Thank you for this too. Yes I was reading in the past another post about these 20bytes for MPLS enablement. Currently the guy at provider told me that they are using MPLS so that the fiber's provider brings the connection to the internet exchange where they are hosting their ISP, so this was part of...
by accarda
Sat Mar 20, 2021 8:46 pm
Forum: Scripting
Topic: PH2 State script [SOLVED]
Replies: 8
Views: 4723

Re: PH2 State script [SOLVED]

OK, so then use this modified version: :foreach i in=[/ip ipsec policy find comment="put_your_comment"] do={ :if ($i != "*FFFFFF") do={ :local state [/ip ipsec policy get $i value-name=ph2-state] :if ($state != "established") do={ /ip ipsec policy disable number=$i :del...
by accarda
Sat Mar 20, 2021 7:46 pm
Forum: Virtualization
Topic: Info to avoid screwing up the license renewal
Replies: 3
Views: 7751

Re: Info to avoid screwing up the license renewal

Actually I was reading the doc from wiki and MK says on license update: In '/system license' menu router will indicate the time next-renewal-at when it will attempt to contact server located on licence.mikrotik.com. Communication attempts will be performed once an hour after the date on next-renewal...
by accarda
Sat Mar 20, 2021 7:27 pm
Forum: Virtualization
Topic: Info to avoid screwing up the license renewal
Replies: 3
Views: 7751

Info to avoid screwing up the license renewal

Hi all, I'm running a CHR and after few days of using the free license I purchased the P1 license. Therefore the CHR is still running the trial and it says "next renewal at Apr/1" and "deadline at May/1". Since my P1 license is already active on the MK site, should I run the rene...
by accarda
Sat Mar 20, 2021 6:47 pm
Forum: General
Topic: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]
Replies: 8
Views: 11215

Re: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]

Thank you for clarifying this for me. Actually I spoke already with the ISP, but they are using the fiber provided by a national company and they have got such limitation as well, so 1492 was the maximum that they could give us. Initially with VLAN if at MTU=1500 I have got the PPPoE at 1480, theref...
by accarda
Sat Mar 20, 2021 6:25 pm
Forum: Scripting
Topic: PH2 State script [SOLVED]
Replies: 8
Views: 4723

Re: PH2 State script [SOLVED]

Hi, you can try this code. I use the main part of this code just to inform me when PH2 is down, but in this case I modify it to disable, wait 10 sec and re-enable the policy. Give it a try. :foreach i in=[/ip ipsec policy find where action!=discard] do={ :if ($i != "*FFFFFF") do={ :local s...
by accarda
Sat Mar 20, 2021 5:58 pm
Forum: General
Topic: Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]
Replies: 8
Views: 11215

Setting MTU correctly on vlan-if for pppoe connection. [SOLVED]

Hi all, I have recently setup a PPPoE connection over a FTTH fiber link. The ISP informed that the interface was set MTU to 1492 at its side and provided also the VLAN number to establish the connectivity. I have setup the VLAN interface with a MTU of 1512 so that the PPPoE connection got 1492 on my...
by accarda
Sat Mar 20, 2021 12:41 pm
Forum: General
Topic: mikrotik not responding to only one host on internal network
Replies: 5
Views: 929

Re: mikrotik not responding to only one host on internal network

I have got a similar issue only with one of my iPad, which does not reach the router on its LAN's IP. Like in your case, the iPad can go on internet and do all the rest. In my case I partially fixed the issue by connecting that iPad to the router's loopback address instead of the one from same LAN, ...
by accarda
Fri Mar 19, 2021 12:31 pm
Forum: General
Topic: Site-to-Site VPN (3 MikroTik routers) [SOLVED]
Replies: 5
Views: 1824

Re: Site-to-Site VPN (3 MikroTik routers) [SOLVED]

You can also check this example viewtopic.php?f=23&t=169538 that explains how to use IKE2 with 3 sites.
by accarda
Thu Feb 18, 2021 9:25 pm
Forum: General
Topic: Few VLANs stopped after reboot (detect internet issue) [SOLVED]
Replies: 3
Views: 2046

Few VLANs stopped after reboot (detect internet issue) [SOLVED]

Hello all, I'd like to report one issue that I had about some VLAN that stopped working, just after rebooting the router. I'm using a RB4011 with ROS 6.46.8 connected to a CRS328, where I have defined several VLANs. After rebooting the RB4011 I've got an issue with couple of VLANs related to 2 LANs;...
by accarda
Thu Feb 18, 2021 5:20 am
Forum: General
Topic: Why does 6.38 to 6.48.1 upgrade destroy my router and how can I avoid it?
Replies: 4
Views: 1168

Re: Why does 6.38 to 6.48.1 upgrade destroy my router and how can I avoid it?

The problem is that from version v6.41.0 onward there was the introduction of new bridge concept that removed the master/slave on ethernet ports. This was documented in the release notes https://mikrotik.com/download/changelogs for v6.41.0. At that point a script was made available to migrate old co...
by accarda
Tue Feb 16, 2021 7:09 am
Forum: Wireless Networking
Topic: SXT LTE6 passthrough info to control 2nd NAT ?
Replies: 3
Views: 1921

Re: SXT LTE6 passthrough info to control 2nd NAT ?

Thank you for sharing your opinion on this. Currently I have a second LTE router (managed by the provider), which uses the same 4G carrier as the SXT, but in this case the SIMcard has some sort of business profile. With this connection I get a public IP on its interface, so I'm using this to manage ...
by accarda
Thu Feb 11, 2021 2:07 pm
Forum: General
Topic: Assign a DNS entry for a DHCP device
Replies: 3
Views: 719

Re: Assign a DNS entry for a DHCP device

You can use scripting in Ros to be triggered whenever DHCP assign an IP.
Read this message which has some valid use case.

https://forum.mikrotik.com/viewtopic.php?f=9&t=119469

Armando
by accarda
Wed Feb 10, 2021 6:38 pm
Forum: General
Topic: WinBox shrink size on a device [SOLVED]
Replies: 4
Views: 1330

Re: WinBox shrink size on a device [SOLVED]

Or if it doesn't work "Tools -> Clear Cache" .
Thanks for this, I have now also cleaned the cache just to keep things cleaner.
Thank you all for the provided suggestions.

Armando
by accarda
Wed Feb 10, 2021 6:37 pm
Forum: General
Topic: WinBox shrink size on a device [SOLVED]
Replies: 4
Views: 1330

Re: WinBox shrink size on a device [SOLVED]

Perhaps you have accidentally used the shortcut 'Ctrl + -"?
Thank you for this, it might be possible that that’s what happened to me. I never used those option, but I might have hit that key combination.
Now I restored the zoom and all appear as usual.
Armando.
by accarda
Wed Feb 10, 2021 1:42 pm
Forum: General
Topic: WinBox shrink size on a device [SOLVED]
Replies: 4
Views: 1330

WinBox shrink size on a device [SOLVED]

Hello all, I’m getting a strange behavior from WinBox (latest 64bits) when I connect to a new device that I have recently set. WinBox shrink all icons and text so that it becomes very difficult to read. However if I connect to that device via Rommon, WinBox appears just fine; as soon as I connect it...
by accarda
Sat Feb 06, 2021 9:47 am
Forum: Scripting
Topic: How to detect when CAPsMAN is back ?
Replies: 0
Views: 1533

How to detect when CAPsMAN is back ?

Hello all, I have done a simple script that whenever CAPs loose CAPsMAN, it disables CAP and re-enable the wlan interface to keep going for local LAN access. However I was trying to find an easy way to detect when CAPsMAN is available again, so to bring the AP again into CAPs mode. Is there anything...
by accarda
Tue Jan 26, 2021 9:51 pm
Forum: General
Topic: Poor performance of hEX S + PPPoE
Replies: 4
Views: 1628

Re: Poor performance of hEX S + PPPoE

If you haven’t seen this article before, it shows how those MT reports from are taken from measurements.

https://wiki.mikrotik.com/wiki/Manual: ... Generator
by accarda
Sat Jan 09, 2021 10:12 am
Forum: General
Topic: No internet from AP on VLAN when using CAPsMAN [SOLVED]
Replies: 3
Views: 2305

Re: No internet from AP on VLAN when using CAPsMAN [SOLVED]

<t>Actually it looks like I fixed the issue.<br/> I have changed in CAPsMAN router the data path to VLAN Mode=use tag instead of no tag.<br/> Then in APs I have seen that the wlan interfaces got VLAN id10 and all admit.<br/> At this point I removed those wlan from VLAN10 from untagged to tagged and ...
by accarda
Sat Jan 09, 2021 9:47 am
Forum: General
Topic: No internet from AP on VLAN when using CAPsMAN [SOLVED]
Replies: 3
Views: 2305

Re: No internet from AP on VLAN when using CAPsMAN [SOLVED]

Thanks for the quick replay and it's encouraging that you had a similar issue, but then resolved. Below is the current configuration, using CAPsMAN which does not allow clients to get internet (because in my opinion CAPsMAN is not setting wlan1 and wlan2 with proper VLAN info). # jan/09/2021 08:36:1...
by accarda
Sat Jan 09, 2021 8:08 am
Forum: General
Topic: No internet from AP on VLAN when using CAPsMAN [SOLVED]
Replies: 3
Views: 2305

No internet from AP on VLAN when using CAPsMAN [SOLVED]

Hello all, I'm experiencing an issue when I set my AP to work on a VLAN AND using CAPsMAN. Without CAPsMAN no issue at all, as I can configure all parameters for the VLAN on AP. It does not seem so when using CAPsMAN, even though I have tried to play with vlan sets on datapath from the CAPsMAN route...
by accarda
Thu Dec 31, 2020 9:37 am
Forum: Wireless Networking
Topic: SXT LTE6 passthrough info to control 2nd NAT ?
Replies: 3
Views: 1921

SXT LTE6 passthrough info to control 2nd NAT ?

Hello everyone, I'd like to understand whether this is possible or not, without making too much tests, risking to lock myself out as SXT is on a pole and not easy to reach now. However, currently, I have RoMON enabled and working on SXT and main router (would this always allows me to log into SXT if...
by accarda
Sun Dec 27, 2020 2:01 pm
Forum: General
Topic: Issue with one mobile device in LAN.
Replies: 4
Views: 1093

Re: Issue with one mobile device in LAN.

As another indication of something strange with the affected iPad, is when using the MikroTik app. From the affected iPad I can't see any MK device discovered in the app, while from the old iPad or iPhone I can see all MK devices listed there, like when checking from Winbox. So there is really all i...
by accarda
Sat Dec 26, 2020 7:31 pm
Forum: General
Topic: Issue with one mobile device in LAN.
Replies: 4
Views: 1093

Re: Issue with one mobile device in LAN.

I have done some check between router and switch just to trace the affected device. Device is an iPad and I have disabled the new "private IP" implementation (it was enabled up to few days ago). Now the MAC address is not changed anymore. The main router is also DHCP and I have checked tha...
by accarda
Sat Dec 26, 2020 6:15 pm
Forum: General
Topic: Issue with one mobile device in LAN.
Replies: 4
Views: 1093

Re: Issue with one mobile device in LAN.

Currently on all APs and switch I don't have any firewall enabled. The only FW is enabled on the main router which provides access to Internet. From LAN prospective everything is connected through the switch which has 2 ports going to the main router: SFP+ from router to switch defines the LAN (no u...
by accarda
Sat Dec 26, 2020 4:08 pm
Forum: General
Topic: Issue with one mobile device in LAN.
Replies: 4
Views: 1093

Issue with one mobile device in LAN.

Hi all, I'm facing a strange issue in my LAN, where only from one tablet I can't seem to ping or connect (SSH) to other hosts in the LAN. If I ping from the affected tablet to the lan it goes in timeout; however if I ping from another device to the tablet it answers properly. If from tablet I try to...
by accarda
Thu Dec 24, 2020 7:33 am
Forum: Wireless Networking
Topic: SXT LTE6 APN value different than internet.
Replies: 2
Views: 1050

Re: SXT LTE6 APN value different than internet.

Thank you Sib for your comments. Currently I have checked on SMS but I don't see any message indicating some sort of limitation, other than normal SMS for incoming missing calls. I have done another test after reading other posts, by setting a blank APN (which I read should get the APN automatically...
by accarda
Sat Dec 19, 2020 6:01 pm
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

Re: CAPsMAN and local AP settings

I don't have much experience with WiFi using MikroTik gears, so I was not able to see all problems. My installation is quite simple and "safe", meaning that I was able to define 3 5GHz channels in an indoor location where I don't have much users on 5GHz, so all my APs are sitting alone. I ...
by accarda
Sat Dec 19, 2020 5:12 pm
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

Re: CAPsMAN and local AP settings

Much better results by only controlling external radios. Yes I can see your point and it was the main reason why I have written this post, to understand whether there was any limitation from CAPsMAN vs direct config of each individual AP. For me, in order to find out the settings needed to achieve ...
by accarda
Thu Dec 17, 2020 9:42 pm
Forum: Wireless Networking
Topic: SXT LTE6 APN value different than internet.
Replies: 2
Views: 1050

SXT LTE6 APN value different than internet.

Hello everyone, it's few days that I'm using a new SXT LTE6 kit and I'm having only a strange issue when I try to set the proper APN for my SIM card provider. My unit runs firmware rev R11e-LTE6_V026. According to the provider website, the APN should be mobile.vodafone.it. However whenever I enter t...
by accarda
Wed Dec 16, 2020 3:16 pm
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

Re: CAPsMAN and local AP settings

I'm currently using the following 5GHz channels: Ch.36, Ch.52 and Ch.149.
The problematic one was Ch.149 that initially was not accepted, but then playing with outdoor/indoor and few other settings, I'm now able to have all those 3 channels active and managed through CAPsMAN.
by accarda
Tue Dec 15, 2020 7:50 pm
Forum: Wireless Networking
Topic: Bonding setup help
Replies: 10
Views: 2027

Re: Bonding setup help

Also this link could be useful to see what bonding is about and some use case scenario to get some idea based on your equipment. https://wiki.mikrotik.com/wiki/Manual:Interface/Bonding As said in the article it's a matter of load balancing and failover setup that you will get. You can try to check o...
by accarda
Tue Dec 15, 2020 7:42 pm
Forum: Wireless Networking
Topic: Bonding setup help
Replies: 10
Views: 2027

Re: Bonding setup help

In term of port aggregation the use case it's different from what you are looking for. Let's say your CPE does have 2 ETHs=100mbits but your radio link is capable of 300mbits, then you can limit this bottleneck by bonding both ETH1+ETH2 at CPE and connecting 2 cables to your router you can get almos...
by accarda
Mon Dec 14, 2020 2:13 pm
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

Re: CAPsMAN and local AP settings

Why don't you set frequency from CAPsMAN? Yes, I do. I have set all my data including frequencies from CAPsMAN. The only problem was that it didn't allow for certain channels so far. But I have played little bit more with the AP in direct config and I have found a combination which allowed me to se...
by accarda
Mon Dec 14, 2020 8:07 am
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

Re: CAPsMAN and local AP settings

If the radio is "controlled by caps-man"... That's the only control of the radio and create enabled seems to give you the most control of APs. Actually I'm not sure that CAPsMAN gives you the most control. At least not in term of available options. For example on the channel selection, in...
by accarda
Sat Dec 12, 2020 8:38 am
Forum: Wireless Networking
Topic: Bonding setup help
Replies: 10
Views: 2027

Re: Bonding setup help

Hello, from your diagram it's not a bonding setup, but a load balancing one. With bonding you will increase the capacity of a single Ethernet line by combining more than one interface from one device with the same interfaces on the main router. In your case you need to load balance the traffic from ...
by accarda
Fri Dec 11, 2020 11:08 am
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

Re: CAPsMAN and local AP settings

Thanks for this piece of info.
So basically if I want the full granularity control over the AP settings I should give up on CAPsMAN and go the traditional way of setting each AP individually, I suppose.

I had that impression, but I was not 100% sure about it.
by accarda
Fri Dec 11, 2020 9:38 am
Forum: Wireless Networking
Topic: CAPsMAN and local AP settings
Replies: 13
Views: 3198

CAPsMAN and local AP settings

Hello everyone, I'm playing with WiFi settings and implementation of a small coverage area using 3*hAP AC2. I have done all configs and enabled CAPsMAN from RB4011 to control those 3 ApPs. However it's not yet clear to me whether all wireless parameters are managed only through CAPsMAN OR there are ...
by accarda
Wed Jun 17, 2020 6:57 pm
Forum: General
Topic: Schedule a schedule?
Replies: 6
Views: 2537

Re: Schedule a schedule?

No problem. And if you want to stick with the easy scheduler, you can use 3 in total; 2 to trigger the start/stop and the one that you already have. scheduler 1 to run at 12am only once, no repetition to start triggering the email to be sent: :global sendEmail true Scheduler 2 to run at 1am only onc...
by accarda
Wed Jun 17, 2020 4:46 pm
Forum: General
Topic: Schedule a schedule?
Replies: 6
Views: 2537

Re: Schedule a schedule?

Hi Glenn, OK, I understand now your point. So you can manage it in couple of ways giving you different level of flexibility. One way could be making the main code that runs every 5 min (analyzing the log) to be executed as a loop, without using a scheduler for that. In this way the main execution wi...
by accarda
Wed Jun 17, 2020 1:47 pm
Forum: General
Topic: Schedule a schedule?
Replies: 6
Views: 2537

Re: Schedule a schedule?

What you can do is running your set of checks/statements in a script, where you put some check after that you have sent the first email, so that you are not sending such email every single time, but after another condition that you will set to reset such block. Then you can control better how to tri...
by accarda
Mon Jun 15, 2020 12:52 pm
Forum: Scripting
Topic: Script for If enivorment = then do
Replies: 14
Views: 3507

Re: Script for If enivorment = then do

Have you tried removing the quotation around the name of the global variable ??

:global "provisioned-status" "no" into :global provisioned-status "no"
by accarda
Mon Jun 15, 2020 7:13 am
Forum: General
Topic: Does RPF need reboot to take effect ?
Replies: 3
Views: 1430

Re: Does RPF need reboot to take effect ?

Thanks for reply. I was checking in the forum as well the wiki, but couldn't find any indication that reboot was needed. However as I have a script to switch from single/dual WAN, when I checked RPF=strict and I was set to dual-wan, initially things worked fine, but after rebooting the router I have...
by accarda
Sun Jun 14, 2020 5:43 pm
Forum: General
Topic: Does RPF need reboot to take effect ?
Replies: 3
Views: 1430

Does RPF need reboot to take effect ?

Hi all, I was playing with the RP Filter setting, between strict and loose while switching from single to multi-wan and I seemed to notice that the switch took effect only after router reboot. Could any of you confirm such behavior or is it suppose to work right after the setting has changed ? Thank...
by accarda
Wed Jun 10, 2020 1:12 pm
Forum: Scripting
Topic: Skip a block if a command is failing in the script
Replies: 3
Views: 1516

Re: Skip a block if a command is failing in the script

Well, playing little bit with your script even if you isolate it in a block or conditional if, the code is parsed anyway when running it on CLI, therefore all the missing commands for CAP wil produce several syntax errors. One way to solve your issue could be to split your main code into a script th...
by accarda
Tue Jun 09, 2020 11:11 pm
Forum: Scripting
Topic: Skip a block if a command is failing in the script
Replies: 3
Views: 1516

Re: Skip a block if a command is failing in the script

Why don't you use the block inside on error to put the code for when CAPs is not available ? From your script you have set CAPsMAN always true, so the IF will always reach. Now if you put your code inside the on error, you will execute that part like when the IF would be false. Like in this simple t...
by accarda
Mon Jun 08, 2020 7:31 pm
Forum: Scripting
Topic: Send a message over telegram when IPSec is down or up
Replies: 2
Views: 4068

Re: Send a message over telegram when IPSec is down or up

Hello, I use this script on my RB, which checks the IPSec phase2 status. After first execution the script goes in loop mode and checks every 10 seconds. Change XXXXX with your botId and YYYYY with chatId. Armando. :global stopScript2 false :do { :local err "0" :local site [/system identity...
by accarda
Sun Jun 07, 2020 10:35 am
Forum: General
Topic: L2TP/IPSec vpn disconnects after a minute or so. [SOLVED]
Replies: 0
Views: 11178

L2TP/IPSec vpn disconnects after a minute or so. [SOLVED]

Hi everyone, I have (used to have) a working L2TP/IPSec setup that was working fine up to now, when I have noticed this problem. This config is using couple of profiles to allow site-to-site (using another MK as VPN client) and road warrior access. I'm not using it all the time so it's difficult for...
by accarda
Mon Jun 01, 2020 6:24 pm
Forum: General
Topic: Mangle PCC rules check for improvement. [SOLVED]
Replies: 3
Views: 5510

Re: Mangle PCC rules check for improvement. [SOLVED]

Thank you Sob for the info that you have provided. I have re-arranged the rules so that now all prerouting are organized so that marking connection are grouped together and mark routing is last part of the chain; in this way I have adjusted the passthrough based on your explanation. This is how it l...
by accarda
Mon Jun 01, 2020 12:39 pm
Forum: General
Topic: Mangle PCC rules check for improvement. [SOLVED]
Replies: 3
Views: 5510

Mangle PCC rules check for improvement. [SOLVED]

Hi all, I'm currently using a config with dual WAN for failover and load balancing traffic. The setup is working fine, but since it was based on reading articles and few other posts, I'd like to see whether there are possible improvements mainly in term of logical rule order and bad usage of passthr...
by accarda
Mon Jun 01, 2020 10:15 am
Forum: General
Topic: Strange behavior with detect internet.
Replies: 0
Views: 1551

Strange behavior with detect internet.

Hi all, while I was checking all connections I have noticed something strange happening on the main router, running RouterOS v6.46.6. I have 2 WANs: WAN1 is the main connection (active default route with distance 1), while WAN2 is waiting with distance 2. WAN1 is 192.168.1.2/30 and WAN2 192.168.0.2/...
by accarda
Sun May 17, 2020 9:27 pm
Forum: General
Topic: L2TP/IPSec site-to-portablesite BCP and RW clients? [SOLVED]
Replies: 2
Views: 2991

Re: L2TP/IPSec site-to-portablesite BCP and RW clients? [SOLVED]

You can define multiple /ppp profile rows, and each /ppp secret row may refer to a different /ppp profile row. The profile to which the configuration of the L2TP server refers is always overridden by the one from /ppp secret . Thank you very much sindy for this heads up. Actually since I still had ...
by accarda
Sun May 17, 2020 9:08 pm
Forum: General
Topic: L2TP/IPSec site-to-portablesite BCP and RW clients? [SOLVED]
Replies: 2
Views: 2991

L2TP/IPSec site-to-portablesite BCP and RW clients? [SOLVED]

Hello everyone, I have enabled a site-to-portable site (meaning a laptop + MikroTik mAp 2nd) L2TP/IPSec with BCP enabled, so that I can have my laptop as part of the main LAN. Considering that on the server side I can enable only one instance of L2TP server at the time, is there any possibility that...
by accarda
Sun May 17, 2020 10:58 am
Forum: Scripting
Topic: sms to telegram
Replies: 8
Views: 4004

Re: sms to telegram

Yes of course... After get $i message, the script freeze, only for it! It read the content of sms but it don't know what to remove Ok, I don't use this sms feature so I don't have experience with specific sms option. Usually I send messages directly to Telegram without storing them anywhere else, a...
by accarda
Sun May 17, 2020 7:36 am
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

Armando, my debug analysis indicates that "/ip arp" does not have a unique (ie. common in both) key/value pair for lookup in "/interface ethernet", so then it seems it can't be done with "/interface ethernet". There must be some other location like bridge or switch ......
by accarda
Sun May 17, 2020 7:20 am
Forum: Scripting
Topic: sms to telegram
Replies: 8
Views: 4004

Re: sms to telegram

I am heartbroken. I'm starting to think it's a bug.... i don't know why after get body message of SMS,it's ineradicable in this script, but in this it's ok. OK, in the second code you have the remove statement inside the foreach, which is what I mentioned in the previous message. Have you tried to ...
by accarda
Sat May 16, 2020 3:23 pm
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

Actually I have just tried here from the terminal as well, adding the equal sign and I get only one record, as expected. [user@rb0] > :put [/ip arp print as-value where address="192.168.0.1"] .id=*10;address=192.168.0.1;comment=;interface=ether2-;mac-address=A8:7D:10:21:FB:2A [user@rb0] > ...
by accarda
Sat May 16, 2020 2:43 pm
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

just FYI, I have tried to add the = sign in the first couple of foreach and I have got the same syntax error even with ROS 6.46.6.
So I don't think it's about the beta that you are using.

Armando
by accarda
Sat May 16, 2020 2:05 pm
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

It seems it's supposed to work also without "=": [admin2@CRS326] /system/script> :foreach i1 in [/interface ethernet find where running=yes] do={ :put $i1; } *1 *f [admin2@CRS326] /system/script> :foreach i1 in = [/interface ethernet find where running=yes] do={ :put $i1; } *1 *f But, the...
by accarda
Sat May 16, 2020 1:53 pm
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

@Armando, thx, but something isn't working here as the output is empty, s.b. I added it to "/system script" under the name "myTest2". The editor in RouterOS said that there is a missing "=" in the first foreach line, I fixed it, and let it run, but the result is an emp...
by accarda
Sat May 16, 2020 1:47 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

Hi Armando, this script looks interesting as it could be used also for other such cases. Can you briefly comment the code of what it does and how it does, maybe on top of the code itself. I must admit I've not understood the role of that said layer-7 stuff w.r.t. to this issue. And is this true per...
by accarda
Sat May 16, 2020 12:10 pm
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

Hi @accarda, thanks for the script. But I need this on CRS switch devices.These devices have 24+ or even 48+ interfaces (aka ports), so it is impractical to define all the interfaces manually. Isn't there a method to get all the interfaces as a list or as an array and put it programmatically into y...
by accarda
Sat May 16, 2020 9:33 am
Forum: Scripting
Topic: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]
Replies: 25
Views: 22232

Re: How to get IP, MAC, EtherPort for all currently active EtherPorts? [SOLVED]

How to get IP, MAC, EtherPort for all currently active EtherPorts? Ie. for ports of router/switch that have active/alive devices attached? I of course mean the IP and MAC of the attached device, and the EtherPort of the router/switch. You can try this script which will list all needed data into a f...
by accarda
Sat May 16, 2020 6:37 am
Forum: Scripting
Topic: sms to telegram
Replies: 8
Views: 4004

Re: sms to telegram

From your code, this instruction /tool sms inbox remove $i; should be inside the foreach cycle, as $i it's valid inside.
You have it outside the curly bracket, so the removal does not happen; move it one line up inside the curly bracket.


Armando.
by accarda
Fri May 15, 2020 6:42 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

ARMANDO, How can I leave this topic as resolved? When you check the message that solved your question, let's say replay 26, if you see in the top-right corner where you can quote/reply there is a function to mark the topic as solved. Once you pass with your mouse you will see the help-pop up tellin...
by accarda
Fri May 15, 2020 4:53 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

Friend ARMANDO, if the two scripts worked for me, the one for layer 7 and the one for text in the file, very grateful for your collaboration and sorry for so much inconvenience. thank you very much, god bless you. And in case you wanted to combine both persistent variable and files , you can use th...
by accarda
Fri May 15, 2020 4:41 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

So were you able to make also the script writing to files to work correctly with updated data ???
If that's the case, then you can set this topic as resolved.

Enjoy your script now.
Armando.
by accarda
Fri May 15, 2020 8:55 am
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

I don't understand what you are asking. There is nothing to put on layer7.
Use the solution that I gave you with reply #13 on this message, where I used the persistent variable in layer7.
by accarda
Thu May 14, 2020 5:21 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

I just tested it and it does not overwrite the data, it creates the file yes, but it does not overwrite the data every minute. So I guess we can conclude that our routers are behaving differently. Now it's up to you what solution you will adopt. I gave you all the help possible, now it's on you. Ta...
by accarda
Thu May 14, 2020 5:02 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

Dear ARMANDO, the text is created in the file, but it is not overwritten every minute, which will happen there. Thank you. Dear Frank, are you sure ? Please check better, because the text inside the file is overwritten every minute. Let it run for few minutes and check at the end when you will rebo...
by accarda
Thu May 14, 2020 7:34 am
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

that was the script dear brother. Thank you. just out of curiosity, is there a way that instead of layer protocol 7 it's copied to a file If you want to write the info to a file instead of layer7 protocol, you can use this version. However you should read this info about writing to disk, which depe...
by accarda
Wed May 13, 2020 2:26 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

Well because the logic was simply to record the data into a permanent variable, nothing more. You can try this new approach by storing the current uptime + date and time to a permanent variable. The script will run as a loop and will update the variable on Layer7 protocol every 1 second. Well, it h...
by accarda
Wed May 13, 2020 8:42 am
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

ARMANDO, thanks for the scripts, but the first one doesn't work since when restarted the RB takes the same time as the second script Well because the logic was simply to record the data into a permanent variable, nothing more. You can try this new approach by storing the current uptime + date and t...
by accarda
Wed May 13, 2020 1:05 am
Forum: General
Topic: RB1100AHx4 queries for www.mikrotik.com
Replies: 6
Views: 2406

Re: RB1100AHx4 queries for www.mikrotik.com

From this article, if you have internet detect on interface, the router will query Periodically the Mikrotik site: https://wiki.mikrotik.com/wiki/Manual:Detect_internet
by accarda
Tue May 12, 2020 7:37 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

friend ARMANDO, the script records the RB's activity time, but what I need is that in one regexp he tells me the activity time and in another regexp the new activity time so that we know at what time the electricity was interrupted and at what time They connected the electricity again, I don't know...
by accarda
Mon May 11, 2020 10:34 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

ARMANDO, it is very difficult for me to make this script could you help me. Thank you. This script will write into firewall -> layer7 protocol a value of val_uptime with the uptime from your router. You can start from here and change it to your needs. :global persistVar do={ :local varName $1; :loc...
by accarda
Mon May 11, 2020 4:22 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

To retrieve the uptime: /system resource> :put [get uptime]; And in into a variable: { :local getUptime [/system resource get uptime] :put $getUptime } thank you my friend, but with this script is the moment when the equipment is turned off due to the power cut and also when the electricity is rest...
by accarda
Mon May 11, 2020 1:33 pm
Forum: Scripting
Topic: Script to control uptime [SOLVED]
Replies: 35
Views: 14919

Re: Script to control uptime [SOLVED]

To retrieve the uptime: /system resource> :put [get uptime]; And in into a variable: { :local getUptime [/system resource get uptime] :put $getUptime } thank you my friend, but with this script is the moment when the equipment is turned off due to the power cut and also when the electricity is rest...
by accarda
Fri May 01, 2020 2:46 pm
Forum: Scripting
Topic: add addres-list in 6.43.16 and older
Replies: 5
Views: 1987

Re: add addres-list in 6.43.16 and older

Have you checked that the address is not already there ?
I have worked on a script to add IPs to the list and if the list was already containing the IP that I was going to add, it didn't do it and stopped running the script.
In my case I fixed it by removing the address first, then I added them.
by accarda
Wed Apr 29, 2020 8:40 pm
Forum: Scripting
Topic: Issue with script adding IP to add-list from MAC-addr [SOLVED]
Replies: 2
Views: 7374

Re: Issue with script adding IP to add-list from MAC-addr [SOLVED]

Yes, you're absolutely right about doing it easier with fixed IP. Basically I did it like that, at the beginning. I made these 2 devices to be outside DHCP and assigned them their IP and manually added them to the list. However for other reasons I wanted to keep them again on DHCP, so I tried initia...
by accarda
Wed Apr 29, 2020 3:02 pm
Forum: Scripting
Topic: Issue with script adding IP to add-list from MAC-addr [SOLVED]
Replies: 2
Views: 7374

Issue with script adding IP to add-list from MAC-addr [SOLVED]

Hi all, I made a script that has a list of MAC-addresses and then it will find the associated IP and put that into an address-list. When I was trying the intermediate pieces, the script was working and the list was created. However after I have added a simple filter to avoid adding over and over the...
by accarda
Thu Apr 23, 2020 4:50 pm
Forum: General
Topic: How to debug Netflix error with multi-WAN setup.
Replies: 4
Views: 3302

Re: How to debug Netflix error with multi-WAN setup.

No, actually this is not the case. In summary: I start play from WAN2 and I stay on WAN2 -> issue as above I start play from WAN3 and I stay on WAN3 -> issue as above I start play from WAN1 and the program starts. Then if I shut WAN1 to switch routing to WAN2 or WAN3 the playback is still OK, no iss...
by accarda
Thu Apr 23, 2020 4:31 pm
Forum: General
Topic: How to debug Netflix error with multi-WAN setup.
Replies: 4
Views: 3302

Re: How to debug Netflix error with multi-WAN setup.

Just for completeness, here is the error that I get on AppleTV when I try to play the content from either WAN2 or WAN3: "A problem occurred while playing this item. Try again later or select a different item. Go to www.netflix.com/support for more info (139:NFErr_MC_AuthFailure)." And ther...
by accarda
Thu Apr 23, 2020 2:38 pm
Forum: General
Topic: How to debug Netflix error with multi-WAN setup.
Replies: 4
Views: 3302

How to debug Netflix error with multi-WAN setup.

Hello all, I'd like to see some opinion on how to debug one problem that I have with my setup for multi-WAN/load balancing setup, which involves uniquely an AppleTV device and only with Netflix service. Before I start, my multi-WAN setup works fine, the load balancing feature and failover works fine...
by accarda
Mon Dec 09, 2019 5:59 pm
Forum: Beginner Basics
Topic: Interface Data Quota
Replies: 40
Views: 36998

Re: Interface Data Quota

After trying one of the final version of this script, I made some modification to avoid couple of things from the original idea: resetting the router to reset the interface's counters and writing to file to keep variable values. When using ethernet interface in order to reset the traffic counter you...
by accarda
Mon Oct 21, 2019 8:18 pm
Forum: Scripting
Topic: Voltage monitoring and ALARM to Telegram
Replies: 1
Views: 3710

Re: Voltage monitoring and ALARM to Telegram

Hi, here below you can see only the portion of code that will allow you to send a message to a Telegram BOT where you can be connected to a chat to receive notification. So you can create your logic to get the value and data that you want, then you can send the pre-built message to Telegram using th...