Community discussions

MikroTik App

Search found 8 matches

by dbjungle
Sun Nov 26, 2023 2:24 pm
Forum: Announcements
Topic: v7.12.1 [stable] is released!
Replies: 252
Views: 106409

Re: v7.12 [stable] is released!

Any idea why PoE auto was removed for L009?
Most likely the hardware did not (reliably) support it...
That's unfortunate because it had been working reliably for me with a hap ax2 until I upgraded.
by dbjungle
Sun Nov 26, 2023 2:19 pm
Forum: General
Topic: PoE Auto on issues on L009
Replies: 3
Views: 2100

Re: PoE Auto on issues on L009

I just ran into this too. I wonder with the rationale / reasoning is for this? Not only did it take a bit of time to sort out this morning, but I preferred auto-on.
by dbjungle
Tue Jul 11, 2023 3:38 am
Forum: Beginner Basics
Topic: wireguard 'road warrior' cannot use my dns
Replies: 26
Views: 3862

Re: wireguard 'road warrior' cannot use my dns

Thank you for looking at my config. #11 is my problem. Definitely operator error! (1) The vlan100 addresses are the management addresses. The idea was to use vlan78 for capsman, but I initially had some trouble with it and just opened it up to all ports at some point and never went back to clean it ...
by dbjungle
Tue Jul 11, 2023 1:04 am
Forum: Beginner Basics
Topic: wireguard 'road warrior' cannot use my dns
Replies: 26
Views: 3862

Re: wireguard 'road warrior' cannot use my dns

Please forgive my crude network diagram. https://i.imgur.com/s9ZyHDd.png I think this should be sanitized well without leaving out anything important. Some firewall filter rules are disabled because I used them while I was testing a few things out. Currently I have the dns, winbox and ssh rules disa...
by dbjungle
Mon Jul 10, 2023 11:29 pm
Forum: Beginner Basics
Topic: wireguard 'road warrior' cannot use my dns
Replies: 26
Views: 3862

Re: wireguard 'road warrior' cannot use my dns

Interestingly enough this works /ip firewall filter add action=accept chain=input comment="vpn server" in-interface=wgsrv When above the wireguard port rule /ip firewall filter add action=accept chain=input comment="vpn server" dst-port=13233 protocol=udp But not with the subnet ...
by dbjungle
Mon Jul 10, 2023 11:12 pm
Forum: Beginner Basics
Topic: wireguard 'road warrior' cannot use my dns
Replies: 26
Views: 3862

Re: wireguard 'road warrior' cannot use my dns

Hi anav, Thanks again for your reply. To confirm... Adding more FW filter rules for the specific ssh and winbox ports does allow me to connect to the router without the wireguard interface in the LAN list. So this portion appears to be working as expected. The only thing I'm a bit confused about now...
by dbjungle
Mon Jul 10, 2023 7:35 am
Forum: Beginner Basics
Topic: wireguard 'road warrior' cannot use my dns
Replies: 26
Views: 3862

Re: wireguard 'road warrior' cannot use my dns

Allowing DNS from the wireguard interface worked well. I still wasn't able to access Winbox over the tunnel with the src-address rule, but I can look into that later. I'm not against adding the wireguard interface to the LAN list. I was more just curious why it wasn't working the other way and which...
by dbjungle
Sun Jul 09, 2023 2:26 pm
Forum: Beginner Basics
Topic: wireguard 'road warrior' cannot use my dns
Replies: 26
Views: 3862

Re: wireguard 'road warrior' cannot use my dns

/interface wireguard peers add allowed-address= 192.0.2.241/32 /ip firewall filter add action=accept chain=input comment="allow Wireguard traffic" src-address= 192.0.2.240/28 The incoming wireguard user (assuming thats you the ADMIN) to access DNS must have access on the input chain which...