Community discussions

MikroTik App

Search found 92 matches

by Hugh Hartman
Wed Jan 16, 2008 5:55 pm
Forum: Scripting
Topic: converting from 2.8.25 to 2.9.50
Replies: 0
Views: 995

converting from 2.8.25 to 2.9.50

I currently run v2.8.25 Bridge configuration and need some guidance in converting the following for 2.9.50 in the Bridge Firewall. 2.8.25 add mac-src-address=00:00:00:00:00:00 in-interface=all \ mac-dst-address=00:60:B3:3D:93:10 out-interface=all mac-protocol=all \ src-address=0.0.0.0/0 dst-address=...
by Hugh Hartman
Sun Apr 23, 2006 3:26 am
Forum: General
Topic: 2.9 rant
Replies: 4
Views: 1594

been on board since v.2.6--implemented v2.7 (Wisp) upgraded to v2.8.28 (PC&Wrap) one year ago in production and use v2.9.13 (PC)for testing....
I would like to try RB100 as CPE,,,but waiting a little longer..

I too love the product , but learned you have to pic the right platform and version.
by Hugh Hartman
Tue Apr 11, 2006 4:11 pm
Forum: General
Topic: Disable Webserver ?
Replies: 6
Views: 2212

just change the port from 80 to a high number above 30,000,,as port scanners stop around there.
by Hugh Hartman
Sat Mar 04, 2006 5:43 pm
Forum: General
Topic: simple queue small problem
Replies: 3
Views: 1481

Please post the actual rules
by Hugh Hartman
Sun Feb 26, 2006 3:26 am
Forum: General
Topic: Damage control for UDP
Replies: 2
Views: 1375

I use bandwidth rules for p2p,,full pipe and individual uploads. As I understand that only addresses the TCP part of P2P ,,(even though it is layer 7 filtering) not UDP as that can only be dropped,,,so what i was looking for is a way to "count" UDP packets that are P2P and drop after a cer...
by Hugh Hartman
Sat Feb 25, 2006 2:06 pm
Forum: General
Topic: Damage control for UDP
Replies: 2
Views: 1375

Damage control for UDP

UDP packets can only be dropped and you can not limit the connection numbers as UDP is connectionless... Is anyone aware, how to minumize the effects of mulitple UDP packets on an AP and/or network without dropping the entire protocol that is using it?. ie Bit-Torrent (P2P). beyond speed/burst etc.....
by Hugh Hartman
Thu Feb 23, 2006 11:26 pm
Forum: General
Topic: What version of MikroTik do you use?
Replies: 17
Views: 4260

FYI--upgraded one of my test units (transparent bridge configuration)to 2.9.13 from 2.8.28 without a hitch--
MANGLE and QUEUE TREE not working as documented by MT,, but to my surprise: Simple queues, custom queue types and Firewall chains all working.
by Hugh Hartman
Wed Feb 22, 2006 3:15 pm
Forum: General
Topic: Prevent customers sharing their connection
Replies: 41
Views: 11572

The simple answer is no--all a subscriber has to do is plug in another router using NAT and run off that. The complex answer, would be to inspect the packet for the IPid field and see what IP is being translated.. Google : "A Technique for Counting NATted Hosts" there is a pdf file from co...
by Hugh Hartman
Wed Feb 15, 2006 2:02 pm
Forum: General
Topic: What version of MikroTik do you use?
Replies: 17
Views: 4260

I use 2.8 exclusively,,once a router is set into production it makes little sense to update for the sake of updating-- I will update when the licensure is get close to expiring to get the most recent P2P protocols. That said, there are times to update in order to get new features. I am however, read...
by Hugh Hartman
Mon Feb 13, 2006 4:40 pm
Forum: General
Topic: queue question
Replies: 3
Views: 1489

by Hugh Hartman
Mon Feb 13, 2006 4:39 pm
Forum: General
Topic: Equal bandwidth and speed limit
Replies: 5
Views: 2118

by Hugh Hartman
Mon Feb 13, 2006 4:24 pm
Forum: General
Topic: Bandwitdh limit per IP
Replies: 9
Views: 3606

Thanks, I was able to apply what you have done to rewrite a simple 4 rule bandwidth configuration for v2.8 as follows: / queue type queue type add name=Down kind=pcq pcq-rate=393216 pcq-limit=50 classifier=dst-address queue type add name=Up kind=pcq pcq-rate=98304 pcq-limit=50 classifier=src-address...
by Hugh Hartman
Sun Feb 12, 2006 2:40 am
Forum: General
Topic: Bandwitdh limit per IP
Replies: 9
Views: 3606

I have retested this setup and it is not working per IP--when tested before it was working on each IP--
back to the books,,as i know there is a way to do this using PCQ without classifiers,,and adding an IP class which triggers the limits for each IP.
by Hugh Hartman
Sat Feb 11, 2006 2:14 pm
Forum: General
Topic: Bandwitdh limit per IP
Replies: 9
Views: 3606

http://www.butchevans.com/readarticle.php?article_id=10

This is for v 2.8--it would need to be converted for 2.9
by Hugh Hartman
Tue Feb 07, 2006 2:08 am
Forum: General
Topic: Equal bandwidth and speed limit
Replies: 5
Views: 2118

The queue type is changed to pcq without classifier, which causes each ip in the range to have the same ul/dl , individually and the limits are applied on that bases, not ul/dl for entire ip class.
you can add burst etc..
by Hugh Hartman
Sun Feb 05, 2006 3:20 pm
Forum: General
Topic: Equal bandwidth and speed limit
Replies: 5
Views: 2118

this works in v 2.8--you would have to convert to 2.9

http://www.butchevans.com/readarticle.php?article_id=10

if you do--please post the code,,thanks
by Hugh Hartman
Sun Feb 05, 2006 3:15 pm
Forum: General
Topic: queue question
Replies: 3
Views: 1489

Could this work?, it provides each IP with upload/download across a class of IP's,,as long as you want the same speed for each customer.

http://www.butchevans.com/readarticle.php?article_id=10
by Hugh Hartman
Fri Feb 03, 2006 7:32 pm
Forum: General
Topic: how to block kama sutra?
Replies: 10
Views: 2351

from Eugene in previous threads discussing connection limits:

Every computer can make no more than 80 TCP connections through the router.

I had problems with hundreds of connections,,captured after using this rule and none exceeds the value 80.
by Hugh Hartman
Fri Feb 03, 2006 7:10 pm
Forum: General
Topic: how to block kama sutra?
Replies: 10
Views: 2351

in v 2.8.28 this is the rule I use:

/ip firewall rule forward add protocol=tcp tcp-options=syn-only connection-limit=80 action=drop
by Hugh Hartman
Fri Feb 03, 2006 6:31 pm
Forum: General
Topic: how to block kama sutra?
Replies: 10
Views: 2351

I use 80 without complaints, but started at 100 connections per/IP.
by Hugh Hartman
Thu Feb 02, 2006 1:50 pm
Forum: General
Topic: trafic shaping in bridge mode
Replies: 1
Views: 1086

yes
by Hugh Hartman
Thu Jan 26, 2006 12:44 am
Forum: Wireless Networking
Topic: Large Network Issues, possibly weather related. Very Strange
Replies: 2
Views: 1760

Did you re-point any CPE's after you replaced the antenna?
by Hugh Hartman
Wed Jan 25, 2006 6:09 pm
Forum: General
Topic: Simple Firewall question
Replies: 1
Views: 1122

you only edit the firewall rule to reflect the IP (or class) that you are allowing router access for configuration. input rules= to the router only. I leave out web-proxy. If you use safe mode, then you will erase the last 100 entries made in the current session, bringing you back to square one, sho...
by Hugh Hartman
Sun Jan 22, 2006 10:51 pm
Forum: General
Topic: telnet
Replies: 2
Views: 1152

in winbox--ip/services--disable telnet or change the port #
by Hugh Hartman
Sat Jan 21, 2006 7:14 pm
Forum: General
Topic: QoS and Bandwidth limitation
Replies: 4
Views: 3036

I use 2.8--so this may not apply:

I mangle the "whole pipe" using the local (in) and public (out) interfaces as the parent.---then this becomes the parent for all the traffic you are trying to shape:
I only use global-out for limiting P2P upload speeds on a per connection bases.
by Hugh Hartman
Sat Jan 21, 2006 1:33 pm
Forum: General
Topic: P2P detecion
Replies: 19
Views: 5426

Yes- I limit the connection time and the number of connections..
by Hugh Hartman
Sat Jan 21, 2006 1:27 pm
Forum: General
Topic: QoS and Bandwidth limitation
Replies: 4
Views: 3036

RouterOS applies the queue tree first, then the simple queue.
I QoS in queue tree and bandwidth limit/burst in simple queues
by Hugh Hartman
Tue Jan 17, 2006 2:32 pm
Forum: Wireless Networking
Topic: wlan interface not showing when using CM9 mini PCI card
Replies: 8
Views: 5161

recently having a similair issue 1/15/06, I sent a support file as instructed by routerOS,,the response I received,,"please upgrade to 2.9.11, there is some kind of failure in your installation, upgrade should fix it." I was using 2.8.28 and wanted to continue,,so I removed the wireless pa...
by Hugh Hartman
Mon Jan 16, 2006 8:27 pm
Forum: General
Topic: limit connection per IP
Replies: 8
Views: 6318

conchalnet
Are all the connections TCP or is there some UDP mixed in?
by Hugh Hartman
Thu Jan 12, 2006 11:03 pm
Forum: General
Topic: How to give ping (icmp) priority?
Replies: 4
Views: 4130

Which Version?,,as 2.8.28 makes default priority 8,,so only a rule for ICMP would need to be added using a value in the limit-at field and change the priority to 1. ( you must have a value in the limit-at for the priority to take effect). Version 2.9--I understand defaults at priority 1--so all othe...
by Hugh Hartman
Thu Jan 12, 2006 4:06 pm
Forum: General
Topic: About Traffic Shapping
Replies: 2
Views: 1571

We would need more information,
please copy the simple queue you have set up for one customer.
by Hugh Hartman
Sun Jan 08, 2006 4:26 pm
Forum: General
Topic: DNS port
Replies: 2
Views: 1550

usually you allow all UDP in the input rule which covers DNS at UDP 53
by Hugh Hartman
Sat Jan 07, 2006 11:11 pm
Forum: General
Topic: Problems with P2P softwares - IT'S URGENT
Replies: 12
Views: 4567

Conchalnet: there are a couple of things I have done which seems to help. First limit the total number of TCP connections per IP (80-100): This will help with the saturation of TCP connections that occures with P2P programs. Next: many P2P programs will allow download based upon the amount of upload...
by Hugh Hartman
Sat Jan 07, 2006 10:25 pm
Forum: General
Topic: need another clue: howto transparently bridge VLANs
Replies: 2
Views: 1681

You can verify what protocols are forwarded, by going to> Interfaces/bridge1/bridge... there you should see a check boxed for the protocols selected,, we use IP, ARP and Other. deselect IPv6, Apple-Talk and IPX. This cofiguration will allow all packets through for the protocols selected to pass thro...
by Hugh Hartman
Tue Jan 03, 2006 5:39 pm
Forum: General
Topic: Problems with P2P softwares - IT'S URGENT
Replies: 12
Views: 4567

I notice you are dropping TCP in the above rule. Bit Torrent opens many UDP "connections", could that rule be modified to: /ip firewall filter add chain=forward protocol=udp p2p=all-p2p connection-limit=10,32 action=drop I already have a max connections for TCP on each IP,, but UDP is tric...
by Hugh Hartman
Tue Jan 03, 2006 4:41 pm
Forum: General
Topic: Per Connection Queuing ( PCQ ) Example Not work... Plz Help
Replies: 1
Views: 1566

I have been testing this for a few months on my home network,,with no issues:

http://www.butchevans.com/readarticle.php?article_id=10
by Hugh Hartman
Wed Dec 21, 2005 3:32 am
Forum: General
Topic: HTTP Traffic question
Replies: 6
Views: 2493

Could you mangle: passthrough for HTTP- IN traffic and then below an accept rule for the download if that can be identified? ie P2P:

dst-address=:80 protocol=tcp action=passthrough mark-flow=HTTP

action=accept mark-flow=P2P

then use the queue tree with the priority/speeds you want.

Regards, Hugh
by Hugh Hartman
Tue Dec 20, 2005 12:54 am
Forum: General
Topic: Bandwidth limit & equalize
Replies: 3
Views: 2986

sroa said:Hi every one, I am new with MT and I was wondering if it is possible to handle real QoS and after that do Bandwidth Limiting. the simple anser is yes--do the QoS in the queue tree and then bandwidth limiting in the simple queues which gets applied after the queue tree.. Here is what I do f...
by Hugh Hartman
Mon Dec 19, 2005 2:38 pm
Forum: General
Topic: Burst setting for PCQ queues and hotspot profiles
Replies: 2
Views: 1965

Not sure how the hotspot works,,but here is a 2 rule PCQ scheme: In 2.8.28 create a basic PCQ type without classifiers: queue type> add name=users kind=pcq then queue it up under simple queue with the type created above: use target address for entire class and whatever limits you want,,just be certa...
by Hugh Hartman
Sun Dec 18, 2005 2:40 pm
Forum: General
Topic: p2p filtering
Replies: 4
Views: 1933

P2P feature was added in 2.8 so 2.7 won't work.
by Hugh Hartman
Thu Dec 15, 2005 2:21 pm
Forum: Wireless Networking
Topic: slowing down to speed up?
Replies: 7
Views: 3225

Basic information about rates that may explain why default setting should be used:

http://archives.part-15.org/listarchive ... t=Mikrotik
by Hugh Hartman
Thu Dec 15, 2005 1:48 pm
Forum: General
Topic: RIC522 as Client for Bridge
Replies: 1
Views: 1202

While I haven't used 2.9 yet,,I notice the recent release 2.9.9- yesterday "changed bridge configuration approach" Not sure if the documentation has been changed to reflect that--but that is the direction I would go. I have been waiting for the bridge issues to be resolved as most of my MT...
by Hugh Hartman
Sun Dec 11, 2005 3:06 pm
Forum: General
Topic: What is the Best MT version??????????
Replies: 4
Views: 1544

http://forum.mikrotik.com//viewtopic.ph ... tion+limit

good points made in this thread--I learned 2.8 so use 2.8.28
by Hugh Hartman
Mon Dec 05, 2005 2:36 pm
Forum: General
Topic: How to limit such trafic
Replies: 4
Views: 1767

It is my understanding that UDP traffic can not be limited,,,just dropped
by Hugh Hartman
Mon Dec 05, 2005 2:33 pm
Forum: General
Topic: Plz anyone know the best Configration for bandwidth
Replies: 4
Views: 1801

A link to your configuration would be nice to compare as I am experimenting with PCQ -currently use queue tree & simple queues.
Thanks
by Hugh Hartman
Sat Nov 26, 2005 2:25 pm
Forum: General
Topic: connection timout super long
Replies: 14
Views: 3776

We use 30 minutes without any issues
by Hugh Hartman
Fri Nov 25, 2005 5:06 pm
Forum: General
Topic: Need suggestion for access to mt behind nat
Replies: 7
Views: 2266

To answer your question the initial connect port for winbox can be changed to anything you wish:: IP/Services-www.= anyport. The problem you will face is that the Winbox console goes on either TCP port 3986 or TCP port 3987 for secure in V 2.8.28,, V 2.9 uses TCP port 8291. I do not know how/if you ...
by Hugh Hartman
Sat Nov 19, 2005 2:16 pm
Forum: General
Topic: Simple Packet Shaping Transparently
Replies: 6
Views: 2312

Yes!!! Mikrotik will do what you want as a transparent bridge, and either hardware works fine.
by Hugh Hartman
Fri Nov 11, 2005 10:22 pm
Forum: General
Topic: Just have 2 simple questions that are fuzzy for me
Replies: 1
Views: 1093

limit-at is a guaranteed rate:
this link explains burst threshhold much better than I can:
http://www.butchevans.com/readarticle.php?article_id=6
by Hugh Hartman
Tue Oct 25, 2005 1:39 pm
Forum: General
Topic: dns cache not working
Replies: 16
Views: 7942

Change- primary-dns: 202.155.0.10 to 10.0.0.1 (Mikrotik IP)
make seconadary-dns:202.155.0.10

try those settings on the clients end as well
by Hugh Hartman
Wed Oct 19, 2005 3:18 pm
Forum: General
Topic: How to protect DNS server
Replies: 4
Views: 3589

Should a similair rule be set for TCP port 53 as well?
by Hugh Hartman
Mon Oct 17, 2005 11:22 pm
Forum: General
Topic: bandwidth control
Replies: 4
Views: 1661

This Article is pretty good to get you going:
http://www.butchevans.com/readarticle.php?article_id=6
by Hugh Hartman
Mon Aug 29, 2005 4:04 pm
Forum: General
Topic: Burst limit:
Replies: 1
Views: 1178

Yes we use it,,,started out with high usage customers and currently placing all customers with burst/throttle..CPU usage is only at 4-5% Max Limit 98304/524288 Burst Limit 131072/786432 Threshold 65536/262144 Burst time variable from 75s to 300s Those who leave the computer on and allow unlimited up...
by Hugh Hartman
Wed Jun 01, 2005 4:13 am
Forum: General
Topic: profsional guys
Replies: 23
Views: 7972

yikes: IP Address : 213.209.174.66 HostName : IP66NET174 Resolved : ip66net174.skylogicnet.it Operating System : probably Unix Time to live (TTL) : 47 (64) - 17 hop(s) away Open Ports (76) 25 [ Smtp => Simple Mail Transfer Protocol ] 220 AVG ESMTP Proxy Server 7.0.321/7.0.322 [267.3.3] 110 [ Pop3 =>...
by Hugh Hartman
Wed Jun 01, 2005 4:02 am
Forum: General
Topic: profsional guys
Replies: 23
Views: 7972

engineer---LANguard Network Scanner v (2.0 beta)
taloot--scanning now
by Hugh Hartman
Tue May 31, 2005 4:32 am
Forum: General
Topic: profsional guys
Replies: 23
Views: 7972

this scan does not look good: IP Address : 213.209.174.66 HostName : 1117415880.335 MAC : 00-00-00-00-00-00 (probably Dial-Up) UserName : (No one logged on) Operating System : probably Unix Time to live (TTL) : 47 (64) - 17 hop(s) away NETBIOS names (1) 1117415880.335 - Workstation Service Open Port...
by Hugh Hartman
Tue May 24, 2005 1:48 pm
Forum: General
Topic: How cold do you go?
Replies: 15
Views: 4943

I use -40 as everyone understands that's COLD.......lol
by Hugh Hartman
Sun May 15, 2005 7:35 pm
Forum: General
Topic: Urgent NEW P2P ARES don't mangle
Replies: 8
Views: 2958

I was hoping that the most recent RouetrOS release would have Ares added in theP2P protocols, (my biggest reason to upgrade a perfect running system is to obtain new P2P protocols),so I upgraded to V2.8.27=no luck anyways, I have just started to look at ARES and find the default incoming request por...
by Hugh Hartman
Sat May 14, 2005 4:43 pm
Forum: General
Topic: How cold do you go?
Replies: 15
Views: 4943

wifiradio--this is great news as I have been trying to find someone who has deployed these under extreme conditions,, outside of the tested Mikrotik range of operation... At the training in Pheonix we discussed trying your mentioned setup assuming it would generate enough heat. I would not be quick ...
by Hugh Hartman
Thu May 12, 2005 1:47 pm
Forum: General
Topic: limiting upload of peer-to-peer appz
Replies: 15
Views: 4661

I don't have an answer, at this point we limit the upload of all traffic, using the brusting feature, on problem people who leave the P2P application on and max out u/l for extended periods.
by Hugh Hartman
Thu May 12, 2005 3:43 am
Forum: General
Topic: How cold do you go?
Replies: 15
Views: 4943

40' LMR 400 at each location,, try Tranzeo for AP's in cold climates as Mikrotik does not operate low enough for our climate,,,,but use Mikrotik on the ground, behind the Tranzeo AP .
I don't have any experience with 250' runs or anything other than LMR-400
by Hugh Hartman
Wed May 11, 2005 1:43 am
Forum: General
Topic: How cold do you go?
Replies: 15
Views: 4943

We see -40F for extended periods of time, plus windchill to -75F,,and have Mikrotik & AP's inside and use all-in-one CPE's rated to -60F.
by Hugh Hartman
Sun May 08, 2005 6:56 pm
Forum: General
Topic: DNS Cache Issue
Replies: 18
Views: 5992

In following this thread, I could use a little clarification, if someone doesn't mind explaining.. I'm trying to understand DNS server vs DNS Cache. Am I correct that a Local "DNS server" will reslove addresses if the primary/secondary DNS server of the upstream provider is down? And DNS c...
by Hugh Hartman
Sat May 07, 2005 10:04 pm
Forum: General
Topic: hi guys, I am trying very urgent
Replies: 6
Views: 3150

i run it on windows XP with no issues with neigbour viewer from the MT site,,FWIW
by Hugh Hartman
Sat May 07, 2005 2:21 pm
Forum: General
Topic: src-nat, dst-nat
Replies: 3
Views: 1766

support file sent 5/7/05,,,thank you
by Hugh Hartman
Fri May 06, 2005 12:11 am
Forum: General
Topic: src-nat, dst-nat
Replies: 3
Views: 1766

bump--edit to export file which was too lengthy
by Hugh Hartman
Thu May 05, 2005 5:28 pm
Forum: General
Topic: src-nat, dst-nat
Replies: 3
Views: 1766

src-nat, dst-nat

I have RTFM and The How to's along with the threads, but still unable to pass traffic on the dst-nat rule,,,looks ok on the Src-nat end except all traffic is going out the 12.167.205.103 IP and not 1:1 NAT from 192.168.0.10 to 12.167.205.254. i can not surf,mail etc.,unless i activate masquerade,wha...
by Hugh Hartman
Thu May 05, 2005 1:02 am
Forum: General
Topic: hi guys, I am trying very urgent
Replies: 6
Views: 3150

MAC telnet should work as it is layer 2 protocol,,and you are blocked out of layer 3 (IP),
by Hugh Hartman
Mon May 02, 2005 12:11 am
Forum: General
Topic: Bandwith limiting over simple queues
Replies: 8
Views: 2365

remove your Limit At rates
decrease the burst threshold below the Max Limit by at least 10%
increase burst time

you may be allowing a burst too often.
by Hugh Hartman
Sun May 01, 2005 3:27 am
Forum: General
Topic: how to get public ip...
Replies: 7
Views: 5926

tryc:> pathping 64.233.161.99
by Hugh Hartman
Sat Apr 30, 2005 11:39 pm
Forum: General
Topic: how to get public ip...
Replies: 7
Views: 5926

at the command prompt use this command, it will show you all hops c:>pathping http://www.google.com
by Hugh Hartman
Fri Apr 29, 2005 6:11 pm
Forum: General
Topic: Download location for past version of the software?
Replies: 10
Views: 3052

what version are you looking for?
by Hugh Hartman
Wed Apr 27, 2005 2:21 pm
Forum: General
Topic: make the MT invisibly??
Replies: 15
Views: 4140

change the www service from port 80 to another port in the MT.
by Hugh Hartman
Wed Apr 27, 2005 1:30 pm
Forum: General
Topic: make the MT invisibly??
Replies: 15
Views: 4140

Try This change this : ip firewall rule input add src-address=10.0.0.0/24 \ comment="Allow access from our local network. Edit this!" to this: ip firewall rule input add src-address=192.168.2.0/24 \ comment="Allow access from our Clienst IPs. " this will give you winbox from your...
by Hugh Hartman
Tue Apr 26, 2005 7:29 pm
Forum: General
Topic: Full remote controlling
Replies: 6
Views: 2231

add the routerboad npk file, as the file allows the remote reboot of a MT "headless" without monitor or keyboard.
by Hugh Hartman
Mon Apr 25, 2005 11:08 pm
Forum: General
Topic: make the MT invisibly??
Replies: 15
Views: 4140

download neighbor viewer from: http://www.mikrotik.com/download.html
it's at the bottom of the page,,,then you can MAC telnet into the MT,,as it bypassess firewall rules.
by Hugh Hartman
Fri Apr 22, 2005 2:44 am
Forum: General
Topic: 1:1 nat
Replies: 5
Views: 1809

yes--when you add the dst-nat rule /32 is used on the private IP,,and when you add the src-nat rule /32 is on the public IP
by Hugh Hartman
Thu Apr 21, 2005 4:13 am
Forum: General
Topic: 1:1 nat
Replies: 5
Views: 1809

RouterOS How to list has:

How to link public addresses to local ones.
by Hugh Hartman
Fri Apr 15, 2005 4:44 am
Forum: General
Topic: Problem installing the router software
Replies: 3
Views: 1258

I recall this issue and searched the archives:
in bios is it in lba mode?
is quick boot disabled?
is the harddrive set to primary master?

There are other threads on this subject--try searching
by Hugh Hartman
Tue Mar 29, 2005 10:30 pm
Forum: General
Topic: destination vs target address for bandwidth queues
Replies: 7
Views: 8227

destination vs target address for bandwidth queues

When using simple queues for bandwidth management is there any advantage in using target address over destination address?
by Hugh Hartman
Tue Feb 15, 2005 4:10 pm
Forum: General
Topic: DHCP Auth Problem with Tranzeo?
Replies: 2
Views: 1305

The problem with DHCP and the TR-CPE-200-15 was fixed with the latest firmware upgrade available from Tranzeo.
by Hugh Hartman
Fri Oct 01, 2004 6:03 pm
Forum: General
Topic: arp reply-only in bridge mode
Replies: 7
Views: 7114

Ok--in the bridge firewall rules/tools--where you allowed the MAC--you can add a comment which will attach to the entry and show each clients name if you desire.

much like the Name for the IP limiting entry in the Simple Queues.
by Hugh Hartman
Wed Sep 29, 2004 1:12 pm
Forum: General
Topic: arp reply-only in bridge mode
Replies: 7
Views: 7114

In order for the customer to do that, he would have to hack into a router with the proper login name and password.

Even so, I believe the hacker would get the error message as the premise router keeps the customers always on.

Not the best, as it wont match an IP to a MAC.
by Hugh Hartman
Wed Sep 29, 2004 4:06 am
Forum: General
Topic: arp reply-only in bridge mode
Replies: 7
Views: 7114

I was unable to get that working in a bridged configuration v2.8. ended up using MAC filtering via the bridge interface firewall and limit traffic via IP in simple queues. Assign a static IP to each customer premise router. While a customer could break in, to gain access to the premise router and ch...
by Hugh Hartman
Thu Aug 26, 2004 4:53 pm
Forum: General
Topic: Mikrotik and MAC's in bridged configuration.
Replies: 9
Views: 3768

bjohns--i have run into that on the radio association side of wireless with Cisco Br342 when the WGB software was loaded in error. What I am not able to determine is if an ethernet connection side of Tranzeo TR-CPE200-15 has the same type of limitation. At this point, we plan to go forward, as there...
by Hugh Hartman
Thu Aug 26, 2004 4:22 pm
Forum: General
Topic: Mikrotik and MAC's in bridged configuration.
Replies: 9
Views: 3768

With a more testing I am finding that---with no MT behind this CPE,,you are unable to turn off clients via MAC addy in the
bridge interface at the NOC.

The CPE we are using must be adding it's MAC to allow traffic, even when the MAC of the clients is removed from the filter at the NOC.
by Hugh Hartman
Sun Aug 22, 2004 2:51 pm
Forum: General
Topic: Mikrotik and MAC's in bridged configuration.
Replies: 9
Views: 3768

At the customers premise we use a cheap router and they are on a seperate network,,,we provide the router programed with their IP/subnet/gateway/dns entry. I must be confusing things here-- The section of our network I am talking about is: where we are using a CPE (for a backhaul) <> MT<> switch<> A...
by Hugh Hartman
Sat Aug 21, 2004 4:29 pm
Forum: General
Topic: Mikrotik and MAC's in bridged configuration.
Replies: 9
Views: 3768

thanks for the info-- As you noted the MAC is usually limited to 1 MAC or unlimited, I have not seen a manufacturer limit to a specific number on the ethernet side. I have seen Cisco do this on the radio association side for the reasons you mention. I was seeking a way to not make this a seperate ne...
by Hugh Hartman
Fri Aug 20, 2004 7:29 pm
Forum: General
Topic: Mikrotik and MAC's in bridged configuration.
Replies: 9
Views: 3768

I was not sure what took place at the packet level when you use the Bridge firewall feature for MAC filtering and simple ques for bandwidth limiting. The issue I am faced with is the CPE is multi MAC bridge support, however limited to 8 MAC's according to the manufacturer (tranzeo TR-CPE200-15). I a...
by Hugh Hartman
Fri Aug 20, 2004 6:32 pm
Forum: General
Topic: Mikrotik and MAC's in bridged configuration.
Replies: 9
Views: 3768

Mikrotik and MAC's in bridged configuration.

Does a Mikrotik configured as a transparent bridge, bridging the ethernet interfaces and set between the CPE and the switch,,, change the packets to appear as 1 MAC?
by Hugh Hartman
Mon May 31, 2004 3:13 am
Forum: General
Topic: Help: How to manage bandwidth of each client?
Replies: 3
Views: 3895

Hotspot may be used on wired networks