Hi, i don't know where to hit my head. i've tried everything, followed tutorials, nothing, my CAPsMAN is i ax3 I followed what is described here: https://help.mikrotik.com/docs/display/ROS/WiFi#WiFi-CAPsMAN-CAPVLANconfigurationexample: The first CAP is i ax2 and it works correctly as described in th...
Hi, I have some difficulties myself. I have two ISPs I configured ECMP so that the two ISPs are used. I know it is recommended to use mangles with prerouting policies. And it does work, but the performance of my poor CRS125-24G drops dramatically. I am wondering why when I create a flow from the LAN...
don't worry, I started with Mikrotik because I have been using them for years for many things, I am surprised though at these limitations.
I had already used OpenVPN server (not cloud) successfully.
No problem, I will find an alternative solution.
Yes, I read here about the limitations: https://help.mikrotik.com/docs/display/ROS/OpenVPN imitations Currently, unsupported OpenVPN features: LZO compression TLS authentication authentication without username/password OpenVPN username is limited to 27 characters and password to 233 characters. is r...
This is the debug llog 10:38:30 ovpn,info ovpn-out3: initializing... 10:38:30 ovpn,info ovpn-out3: connecting... 10:38:30 ovpn,debug,packet sent P_CONTROL_HARD_RESET_CLIENT_V2 kid=0 sid=f0e7d91cbf78a22 pid=0 DATA len=0 10:38:30 ovpn,debug,packet sent P_CONTROL kid=0 sid=f0e7d91cbf78a22 pid=1 DATA le...
Hi, I am trying to connect routerOS 7.2.3 to OpenVPN Cloud. On OpenVPN claud there are instructions to connect different routers but not Mikrotik. The .ovpn file containing the certificates is provided which I can without problems import to RouterOS. I try to reproduce the instructions on RouterOS, ...
-> create, from web interface, a "template" user with a specific profile
-> add the new user with the following cmd:
/tool user-manager user add copy-from=template username=<user> password=<pass> customer=<customer>
Hi lebowski, no, I can't shut down this interfaces, these are the customer interfaces! I prevere to add manualy the device too, but in this case where there is many CPE connected it will be nice to do it automaticaly... The only way I findout is to modify the snmp comunity, so the cpe will be discov...
NO, the problem is different. the loopback and the WLAN address are in an other range: 10.10.255.0/24 for loopback and 10.10.99.0/24 for the WLAN. I start the discovery on 10.10.255.0/24, the first CPE will be discovered (lets say 10.10.255.1) and with SNMP will be found that he has a ETH1 with the ...
Hi, I want to auto-discover the CPEs on the network. All CPE have a loopback ip address (/32) and all are in a network range of /24 bit, and are reacheble from the WLAN side. The problem is that many of this have the same LAN address (eg 192.168.1.1/24) and after Dude discover the first CPE is unabl...
uldis, for me is not a problem I know exatrly the frequency I can use in the coutry where I'm operating (between Switzerland and Italy). I believe that the most EU country are using (more or less) the same frequency, I checked only somes countries (Italy, Germany and Switzerland) in your wiki, all t...
Hi Normis, this document define the ECC: http://www.erodocdb.dk/Docs/doc98/official/pdf/ECCDEC0408.PDF here the ETSI sdandard: http://pda.etsi.org/pda/AQuery.asp?qSEARCH_Type=EXACT&qSEARCHNumber=TRUE&qSEARCHALLVERSION=TRUE&qNB_TO_DISPLAY=10&qSEARCH_STRING=EN%20301%20893 and here the ...
Hi, on wiki.mikrotik.com is available a document with all the available frequencies: http://wiki.mikrotik.com/wiki/Frequencies_available BUT, if I check the regulation of my country (and other european countries) some frequency are not allowed. In particular frequency in the range 5745-5825 are from...
Hi marksx, this are good news for me ! Which version of this antenna do you have ? MARS manufactured TWO versions of this antenna, both are looking smilar, but if you have version with connectors (SMA or N) very close to each other (2cm)- that's probably DP25N The Mars I'm using are SMA. If you're i...
Hi, I experienced big problems with dual-polarity antennas. I setup two links (7 KM and 5 KM) with MARS Antennas MA-WA56-DP25SBRF -> http://www.mars-antennas.com/item/g_antennas_type_1-156.html The signal is very good, and both single polarity are working well. I have about 35-40Mbps in turbo mode. ...
I was finally able to setup a IpSec connection between a RB and a ScreenOS device, it was really not easy! Now the problem is: I set the parameter nat-traversal=yes and anyway the Ipsec tunnel is using ESP(ip-proto=50). I tried to block ESP on a firewall between the two Ipsec Gateway, then the ipsec...
I just "upgrade" my configuration to certificates/rsa signature. And with static IP it works well. Now I tried out to set the peer IP 0.0.0.0 and set generate policy = yes. In this case I have to remove the policies of the "concentrator", correct? this is the config MT1 (concentr...
Is not clear to me the behaviours of the command "generate-policy automatically". This should have effect for the networks behind the VPN, and not for the IP of the termination of the VPN. With aggressive mode you should normally (Juniper and Cisco) identify the connection with a FQDN. I t...
Hi, I want to set up a IPSec connection from MT with dynamic IP to a Juniper/ScreenOS/Firewall. Normaly to do this with other devices you have to set IPSec in Aggressive mode and define different FQDN for each remote/dynamic device. But with MT I'm not able to set up the FQDN. Is this configuratione...
Hi, I have exactly the same problem with a point-to-point dual link. I configured the dual link like this: http://wiki.mikrotik.com/wiki/Dual_Setup_with_OSPF An when both links are up, I get poor performances: 9Mbps "send" and 7Mbps "receive" (NOT simultaneous). The I tried the s...
hi nest, this is correct. But assuming this, why mikrotik is setting tx power 7dbm (in my example) for the "turbo mode" and 3 for the "normal" mode? for me this is unclear. In your example will means that in tha case of "turbo mode" I can power to 2x11.75 ? is realy unc...
Hi, can someone tell me how is calculated the tx power when I use “regulatory domain” ? I mean in my country (like many others) I can use 1W in the ragne 5.47-5.725. Then I select: frequency-mode=regulatory-domain country=switzerland antenna-gain=23 tx-power-mode=default with band=5ghz the TX power ...
I have 3 sites connected with multiple Full-duplex/WL connections and I would like to agragate the bandwith of all this connections. On the border of the 3 sites I have some 3party VPN that encrypt the traffic. This means that with ECMP all traffic use the same route. Only with round-robin/per-packe...
There is a siple way to switch from ECMP to per-Packet Load Balancing. The reason is simple: I wand to balance IPSec encrypted traffic, then with ECMP all flow will use only one link. I don't belive that mikrotik is not capable, CISCO is cabable to change this behaviours: http://www.cisco.com/en/US/...