Community discussions

MikroTik App

Search found 12 matches

by templlama
Wed Nov 29, 2023 9:04 pm
Forum: General
Topic: Proton VPN suddenly stopped working
Replies: 8
Views: 2211

Re: Proton VPN suddenly stopped working

Firewall is weak.......or horrible or both........ /ip firewall address-list { use static dhcp leases } add address=adminIP1 list= Authorized comment="admin local desktop" add address=adminIP2 list=Authorized comment="admin local laptop" add address=adminIP3 list=Authorized comme...
by templlama
Wed Nov 29, 2023 8:47 pm
Forum: General
Topic: Proton VPN suddenly stopped working
Replies: 8
Views: 2211

Re: Proton VPN suddenly stopped working

1. You have these two entries in /interface bridge ports add bridge= BRIDGE_FAL_EOIP interface=VLAN_0050_FAL_EOIP_bridge add bridge= BRIDGE_FAL_EOIP interface=FAL_EOIP_50_TUNNEL But the bridge is never defined....... /interface bridge add admin-mac=C4:AD:34:F5:C8:F7 a uto-mac=no comment=defconf name...
by templlama
Wed Nov 29, 2023 8:38 pm
Forum: Beginner Basics
Topic: Beginner setup opinion
Replies: 2
Views: 1349

Re: Beginner setup opinion

RDP, not a chance........... not a secure protocol in 2023
by templlama
Thu Nov 23, 2023 9:13 pm
Forum: Forwarding Protocols
Topic: LAN connection through WIREGUARD
Replies: 3
Views: 2466

Re: LAN connection through WIREGUARD

(1) Not sure why you have a pool called VPN ranges?? Wireguard only gets an address in the MT installation, nothing else, there is no DHCP etc... OKAY, please look at this and you TELL ME what is wrong....... You will want to kick yourself!! ;-) /ip address add address= 192.168.88.1/24 comment=defco...
by templlama
Thu Nov 23, 2023 9:00 pm
Forum: General
Topic: WireGuard server on Windows with a MikroTik router as a client
Replies: 12
Views: 4581

Re: WireGuard server on Windows with a MikroTik router as a client

Need latest full config to apply your questions to please.
by templlama
Thu Nov 23, 2023 8:56 pm
Forum: Beginner Basics
Topic: Issues about wireguard connectivity on RouterOS with multiple WAN ports
Replies: 13
Views: 2495

Re: Issues about wireguard connectivity on RouterOS with multiple WAN ports

(1) You should be able to connect to the same wireguard Interface with two difference clients on two different WANs into the router. Can you confirm that is what you are attempting to do? You need to ensure that the handshake is returned out the same WAN it comes in on. I suspect that is your proble...
by templlama
Thu Nov 23, 2023 8:51 pm
Forum: Beginner Basics
Topic: Dual WAN failover, port forward not working when changing route distance
Replies: 22
Views: 3468

Re: Dual WAN failover, port forward not working when changing route distance

(1) Insecure and potentially dangerous to expose winbox port to the internet. Suggest access router via Wireguard. add action=accept chain=input comment="Remote access MEXUS" dst-port=8291 \ protocol=tcp src-address=X.X>X>X (2) You should only have four mangle rules. FIXED /ip firewall man...
by templlama
Thu Nov 23, 2023 2:36 pm
Forum: Beginner Basics
Topic: Lose access to router when configuring vLAN's
Replies: 4
Views: 1874

Re: Lose access to router when configuring vLAN's

The only vlan I see is the one for the pppoe connection? I do agree that using vlans and bridge vlan filtering can be a challenging ordeal. What I recommend is (besides generous use of SAFEMODE) is to take an unused port lets say 5 and take it OFF the bridge. Give it an IP address and basically done...
by templlama
Thu Nov 23, 2023 2:22 pm
Forum: Beginner Basics
Topic: Wireguard policy based routing in routeros?
Replies: 4
Views: 2759

Re: Wireguard policy based routing in routeros?

If you are a remote user and connecting to wireguard your options are: a. connect to Router to config it. b. connect to LAN devices/users c. use internet of Router. If you want to use local Internet of the remote device, dont turn on wireguard. In other words has nothing to do with Mikrotik it has e...
by templlama
Thu Nov 23, 2023 2:20 pm
Forum: Beginner Basics
Topic: Attempting to evolve from caveman's failover
Replies: 58
Views: 10548

Re: Attempting to evolve from caveman's failover

manual is probably the least complex path. Another option is buying three hex routers. hex1 - LAN output 192.168.11 gateway 192.168.1 hex2 - LAN output 192.168.12 gateway 192.168.1 hex3 - LAN output 192.168.13 gateway 192.168.1 RB5009 or another HEX as the glue. Ether1 WAN is 192.168.11.2 Ether2 WAN...
by templlama
Thu Nov 23, 2023 1:55 pm
Forum: Beginner Basics
Topic: Dual WAN failover, port forward not working when changing route distance
Replies: 22
Views: 3468

Re: Dual WAN failover, port forward not working when changing route distance

Will be able to comment later today but for now please post your latest config with the changes you have made.
by templlama
Thu Nov 23, 2023 1:53 pm
Forum: General
Topic: difference in Wireguard behavior between laptop and phone
Replies: 8
Views: 1847

Re: difference in Wireguard behavior between laptop and phone

The allowed IPs are not correct for your client devices.
Both should be:
allowed-ips=192.168.255.0/24,192.168.2.0/24

There may be issues with other parts of the config, but clearly unable to comment.