thank you for an answer, but I don't need hotspot. On the GATEWAY (WEBSERVER, NAT) I have Billing system which allows users and counts traffic. I described a situation and what I want to do, I need a suggestion with Firewall rules and nothing else
I found such solution the solution is to add such rule above my redirecting rule : chain=dstnat action=accept src-address-list=CLIENTS_LOGON dst-address-list=global above this chain=dstnat action=dst-nat to-addresses=10.0.0.10 to-ports=80 protocol=tcp src-address-list=CLIENTS dst-address=0.0.0.0/0 d...
I have such scheme: USER192.168.0.2---->192.168.1.2Mikrotik(DHCP)10.0.0.1---->10.0.0.10 GATEWAY(NAT,WEB-SERVER) when user receive 192.168.0.2 on I can ping 0.0.0.0/0 because NAT working on (10.0.0.10 )GATEWAY (it's NATing 192.168.0.0/24) I redirect all requests on 0.0.0.0/0:80 to 10.0.0.10:80 to log...
Hi all! I'm trying to make work such scheme: 1. mikrotik gives ip to LAN by DHCP-server. Let suppose the DHCP pool is 192.168.0.0/24, so I creating a address-list=CLIENTS with 192.168.0.0/24 and before give them access to the Internet, I send CLIENTS to web-server page where they need to login and t...
Hi all! I'm trying to make work such scheme: 1. mikrotik gives ip to LAN by DHCP-server. Let suppose the DHCP pool is 192.168.0.0/24, so I creating a address-list=CLIENTS with 192.168.0.0/24 and before give them access to the Internet, I send CLIENTS to web-server page where they need to login and t...