Community discussions

MikroTik App

Search found 20 matches

by steamy
Sun Nov 17, 2024 8:46 am
Forum: General
Topic: Wireguard/RouterOS issue
Replies: 7
Views: 769

Re: Wireguard/RouterOS issue

Thank you both. I did this to myself. the devices at the VLAN IPs, are reached by 10.88.0.2, any return traffic they would be spitting out would be to that address NORMALLY, and the router knows about that subnet and would route the traffic back properly. This part helped, thanks for the explanation...
by steamy
Sun Nov 17, 2024 5:09 am
Forum: General
Topic: Wireguard/RouterOS issue
Replies: 7
Views: 769

Re: Wireguard/RouterOS issue

Like this? Forgive me if i'm totally wrong lol
/ip firewall nat

add action=masquerade chain=srcnat comment="WG masquerade" in-interface=wg0
Thanks for the guess.
by steamy
Sun Nov 17, 2024 3:44 am
Forum: General
Topic: Wireguard/RouterOS issue
Replies: 7
Views: 769

Re: Wireguard/RouterOS issue

From my remote Wireguard peer: 10.3.88.254 - Windows Server - can ping - can RDP 10.3.88.246 - Win11 hyper-V host - can RDP (Win11 firewall blocks ping) 10.3.88.130 - Win 11 Hyper-V guest - can RDP (Win11 firewall blocks ping) 10.3.88.253 - Linux Hyper-v guest - can't ping, can't SSH. I can ping or ...
by steamy
Sun Nov 17, 2024 1:59 am
Forum: General
Topic: Wireguard/RouterOS issue
Replies: 7
Views: 769

Re: Wireguard/RouterOS issue

Ive found one other device on that subnet that isn't responding to pings over Wireguard but can be pinged from other local clients. It's also Linux OS. So, I can RDP into windows machines on the subnet and ping the Linux machines, but I can't ping them (or SSH) directly through Wireguard. I had the ...
by steamy
Sun Nov 17, 2024 1:51 am
Forum: General
Topic: Wireguard/RouterOS issue
Replies: 7
Views: 769

Wireguard/RouterOS issue

I have converted from a FreshTomato router to Mikrotik and I'm working out some small issues. I have my Wireguard client set up to access any VLAN and the router management remotely. It's working except for a Hyper-V Linux VM. I can't connect to it through the tunnel and I can't ping it. I can RDP t...
by steamy
Sat Nov 02, 2024 12:19 am
Forum: Beginner Basics
Topic: Is my firewall safe?
Replies: 8
Views: 1345

Re: Is my firewall safe?

Understood.
by steamy
Fri Nov 01, 2024 4:58 pm
Forum: Beginner Basics
Topic: Is my firewall safe?
Replies: 8
Views: 1345

Re: Is my firewall safe?

Thank you so much and especially adding the comments for context of what does what.
by steamy
Fri Nov 01, 2024 6:03 am
Forum: Beginner Basics
Topic: Is my firewall safe?
Replies: 8
Views: 1345

Re: Is my firewall safe?

Like this? /ip firewall filter add action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untracked add action=drop chain=input comment="defconf: drop invalid" connection-state=invalid add action=accept chain=input c...
by steamy
Fri Nov 01, 2024 5:24 am
Forum: Beginner Basics
Topic: Is my firewall safe?
Replies: 8
Views: 1345

Re: Is my firewall safe?

Okay I went through the guide again and left the /interface bridge port settings alone (all trunks, right?). I changed IP ranges which I think is arbitrary. I've added Wireguard and the mdns reflector. If I've done poorly, I can take it. Know that I have tried. :) I think whats most daunting to me i...
by steamy
Thu Oct 31, 2024 10:54 pm
Forum: Beginner Basics
Topic: Is my firewall safe?
Replies: 8
Views: 1345

Re: Is my firewall safe?

I did follow the guide. I just modified that section to make them access ports for testing and forgot to put it back. Thanks, I will correct that. Was anything else that obvious? The firewall? Thanks for catching that. I'm going to switch it back and test some more to make sure it works as expected....
by steamy
Thu Oct 31, 2024 10:16 pm
Forum: Beginner Basics
Topic: Airprint for guest network
Replies: 8
Views: 1724

Re: Airprint for guest network

I have this working I think. Thanks for the help! I used a Chromecast for testing by trying to cast from VLAN to VLAN. For anyone who finds this thread, or anyone who would review what I've done: I followed the VLAN sticky guide on this forum (https://forum.mikrotik.com/viewtopic.php?t=143620). Allo...
by steamy
Thu Oct 31, 2024 10:07 pm
Forum: Beginner Basics
Topic: Is my firewall safe?
Replies: 8
Views: 1345

Is my firewall safe?

I followed this guide for VLANs: https://forum.mikrotik.com/viewtopic.php?t=143620 The firewall example in it is different from the firewall filters in the default config. I guess my question is, do I need any or all the stuff I've left out from the default? All seems to be working so far. Thanks fo...
by steamy
Thu Oct 17, 2024 12:36 am
Forum: Beginner Basics
Topic: Airprint for guest network
Replies: 8
Views: 1724

Re: Airprint for guest network

Thanks so much. I'll make sure printing from a PC with a manually entered IP works across the VLANs in question first to confirm the routing is working, then I will dig into mDNS.
by steamy
Wed Oct 16, 2024 10:42 pm
Forum: Beginner Basics
Topic: I think i need a nudge forward
Replies: 1
Views: 744

Re: I think i need a nudge forward

I realize I've missed a section from the guide. I'm starting over... again.
by steamy
Wed Oct 16, 2024 6:07 pm
Forum: Beginner Basics
Topic: I think i need a nudge forward
Replies: 1
Views: 744

I think i need a nudge forward

I tried to follow the guide but wanted to add another VLAN. I wanted each VLAN untagged as an access port on ether2-ether6 for testing. I wanted to leave ether7, ether8, and the sfp port as trunks for testing to my switches. Another change from the guide is that I wanted "work_VLAN" to be ...
by steamy
Wed Oct 16, 2024 5:56 pm
Forum: Beginner Basics
Topic: Airprint for guest network
Replies: 8
Views: 1724

Re: Airprint for guest network

Thank you for all the input. I was wondering how I was going to test it without using an actual printer and I wasn't aware of a 'multicast helper' so far.
by steamy
Tue Oct 15, 2024 7:58 am
Forum: Beginner Basics
Topic: Airprint for guest network
Replies: 8
Views: 1724

Re: Airprint for guest network

Okay since posting I found this: https://forum.mikrotik.com/viewtopic.php?t=143620#p707000 I should make a vlan just for printers and devices that need to be used across vlans. And then this: https://forum.mikrotik.com/viewtopic.php?p=1087141&hilit=airprint#p1098128 Now there IS an mDNS repeater...
by steamy
Tue Oct 15, 2024 7:17 am
Forum: Beginner Basics
Topic: Airprint for guest network
Replies: 8
Views: 1724

Airprint for guest network

I'm setting up an RB5009 to replace a router with 'Freshtomato.' I have VLANS to isolate networks as follows. vlan1 = 10.1.0.0: default VLAN, home devices like TVs and phones. vlan2 = 10.2.0.0: business VLAN. Only business PCs, with printers. vlan3 = 10.3.0.0: Guest network - isolated from each othe...
by steamy
Sun May 26, 2024 1:28 am
Forum: Beginner Basics
Topic: WAN failover with VLANS on RouterOS 7
Replies: 3
Views: 965

Re: WAN failover with VLANS on RouterOS 7

I see. I can live without it working on T Mobile. My remote location will have Dynamic DNS with a public IP, so I was thinking a keepalive packet to that could allow me to establish a route?
That's the absolute least important part so I'll save that for last. Thank you for the input. I will be back!
by steamy
Sat May 25, 2024 2:50 am
Forum: Beginner Basics
Topic: WAN failover with VLANS on RouterOS 7
Replies: 3
Views: 965

WAN failover with VLANS on RouterOS 7

Hello! Probable Mikrotik convert here. I have this home/office setup working with another brand but it just isn't as reliable as I would like. I expect to need help because I keep coming across examples that are outdated where the first comment is something like, "forget discover and mactel, th...