Community discussions

MikroTik App

Search found 18 matches

by phdoerfler
Wed Oct 13, 2021 4:04 pm
Forum: General
Topic: Firewall Rules for a CAPsMAN network with VLANs
Replies: 1
Views: 1863

Re: Firewall Rules for a CAPsMAN network with VLANs

I tried searching the forums and there is quite a few posts regarding VLANs and firewall rules. However, throw CAPsMAN in the mix and things look different. Let me address my main points of confusion: - To have your traffic on your CAPs go anywhere you have to create a bridge on the CAPsMAN, even wh...
by phdoerfler
Tue Oct 12, 2021 10:48 pm
Forum: General
Topic: Firewall Rules for a CAPsMAN network with VLANs
Replies: 1
Views: 1863

Firewall Rules for a CAPsMAN network with VLANs

I'm running a CAPsMAN managed network. The CAPs broadcast two SSIDs, one of which, "freifunk", is unencrypted and has its traffic tagged with VLAN ID 66. The other one is encrypted and its traffic is untagged. I have a switch that takes care of separating the 66 traffic from the other traf...
by phdoerfler
Tue Oct 12, 2021 9:43 pm
Forum: RouterOS beta
Topic: Feature request: The Dude v7 with x64 client
Replies: 1
Views: 2263

Re: Feature request: The Dude v7 with x64 client

I, too, use macOS¹ and would very much appreciate a 64 Bit version of The Dude. Winbox 64 Bit works rather well using wine and I am mildly optimistic that The Dude would too.

¹ voluntarily ;)
by phdoerfler
Sat Oct 02, 2021 12:58 pm
Forum: Scripting
Topic: How to use the output of print in scripts?
Replies: 6
Views: 12932

Re: How to use the output of print in scripts?

The examples are working now. However, the output is nowhere near as nice as what the regular print does. Unfortunately it seems that "as-value" is mandatory in order to get a string. Without it it just returns the empty string and prints to the terminal (or a file). The file approach woul...
by phdoerfler
Sat Oct 02, 2021 10:56 am
Forum: Scripting
Topic: How to use the output of print in scripts?
Replies: 6
Views: 12932

Re: How to use the output of print in scripts?

Thanks for your input! I actually really like the output of print. It makes nice tables, properly aligns things, it's great. What's so bad about using it? In my case I am actually interested in all or most of the data shown in print's output. Also, I don't get your code examples. They don't seem to ...
by phdoerfler
Fri Oct 01, 2021 10:57 pm
Forum: Scripting
Topic: How to use the output of print in scripts?
Replies: 6
Views: 12932

How to use the output of print in scripts?

I'm making my routers send me an e-mail and I'd like to include things like the output of /system routerboard print or /ip address print : /ip address print Flags: X - disabled, I - invalid, D - dynamic # ADDRESS NETWORK INTERFACE 0 D 192.168.1.72/24 192.168.1.0 bridgeLocal However, trying to concat...
by phdoerfler
Thu Sep 30, 2021 11:45 pm
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

Edit: Scroll down to below the screenshot for the solution. Yeah I have set it up exactly like you describe. It’s really odd. Server: /interface/wireguard export hide-sensitive # sep/30/2021 22:52:51 by RouterOS 7.1rc4 # software id = 2QED-STSN # # model = RBD25G-5HPacQD2HPnD /interface wireguard a...
by phdoerfler
Tue Sep 28, 2021 4:06 pm
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

Maybe I just didn't get your OP right when you wrote that the traffic is trapped in the Audience? My feeling was that Umbra can ping 192.168.66.1, which would prove the tunnel itself to be working allright (which the configurations suggest), but it cannot get anywhere else. Oh no, you definitely go...
by phdoerfler
Tue Sep 28, 2021 2:06 pm
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

Taking a mental step back, I'm not sure how much the active connection status of my wireguard client really says. If I omit specifying the endpoint I can still activate the tunnel and the client will say it's active. I guess I'm not yet familiar enough with how WireGuard works. Apparently it doesn't...
by phdoerfler
Tue Sep 28, 2021 6:31 am
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

Unfortunately that didn't fix it :( Your explanation makes a ton of sense in my head and is exactly along the lines of what I was suspecting. The fritzbox at 192.168.1.1 is the default gateway, indeed, alas the NAT rule doesn't seem to fix the problem. Bummer! For completeness sake, here's the NAT r...
by phdoerfler
Mon Sep 27, 2021 11:40 pm
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

Here's a compact export without sensitive details. I also removed all of the CAPsMAN stuff. Most of the config is firewall, it's mostly the default firewall and thinking about it I could probably just drop the firewall completely since this router has no direct WAN connection. Anyways, here goes: # ...
by phdoerfler
Mon Sep 27, 2021 3:40 pm
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

tl;dr: yes, yes, yes. Im assuming gateway A and gateway B are standard consumer routers? Yes, both are AVM Fritz!Box devices. A brand of routers particularly common in Germany. They aren't the worst but I'm ready to move on. They have a few tricks up their sleeve but nothing like MikroTik routers. D...
by phdoerfler
Mon Sep 27, 2021 2:02 pm
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Re: Wireguard Server behind different router / gateway

Right, here's the network layout:
IMG_0611.jpeg
by phdoerfler
Sun Sep 26, 2021 10:44 am
Forum: General
Topic: Wireguard Server behind different router / gateway
Replies: 16
Views: 3430

Wireguard Server behind different router / gateway

I'm trying to set up a Wireguard server on an Audience. I set up port forwarding on the (different) router connected to the internet and I can connect from my Wireguard client to the server. However, from there I can't get anywhere else. My traffic seems to be stuck on the Audience router. DNS is no...
by phdoerfler
Tue Sep 14, 2021 10:15 am
Forum: Beginner Basics
Topic: Bridge an existing Wifi to LAN
Replies: 6
Views: 18309

Re: Bridge an existing Wifi to LAN

Hu, I had no idea, thanks for clarifying! That was indeed what I was after. However, thinking about it more, what about the hap switching between 2.4 vs. 5Ghz depending on what's better, just like smartphones etc. do? It would be using only one radio for connecting to the foreign wifi at the same ti...
by phdoerfler
Mon Sep 13, 2021 1:40 pm
Forum: Beginner Basics
Topic: Bridge an existing Wifi to LAN
Replies: 6
Views: 18309

Re: Bridge an existing Wifi to LAN

Thanks a bunch! I got it to work and it works quite well! Also thanks for explaining the problem with bridging. That explains a lot, actually. I also toyed around with bridging the 2.4 and 5 GHz wlan together hoping this would make the hap use both radios to connect to the foreign wifi but only one ...
by phdoerfler
Mon Sep 13, 2021 11:31 am
Forum: Scripting
Topic: Referencing a file stored on a flash disk
Replies: 2
Views: 3027

Re: Referencing a file stored on a flash disk

Thanks for posting your solution here, I was scratching my head at why it didn't find my script and your post gave me the needed hint: You have to remove the ".rsc" extension in the command but have to have it on the file system: /system reset-configuration run-after-reset=provision That w...
by phdoerfler
Sat Sep 04, 2021 3:53 pm
Forum: Beginner Basics
Topic: Bridge an existing Wifi to LAN
Replies: 6
Views: 18309

Bridge an existing Wifi to LAN

tl;dr: There is wifi. There's an ethernet cable. I want my Mikrotik device to bridge¹ the two together. There's a DHCP server in the wifi network which I'd like to use. Same goes for the gateway behind which lies the internet. Longer version: Say you are renting a holiday home for a week or two and ...