Community discussions

MikroTik App

Search found 28 matches

by bibawa
Thu Aug 09, 2018 7:24 pm
Forum: General
Topic: Issue with OVPN between Mikrotik and PFSense
Replies: 1
Views: 1039

Issue with OVPN between Mikrotik and PFSense

Hi, I got a strange issue with a site-to-site vpn between a PFSense box and a Mikrotik device. The vpn itself is created with OpenVPN (server side = PFsense, client = Mikrotik).. The simplified setup: https://preview.ibb.co/k436GU/issue.png The problem is as follow: From Mikrotik side * I can succes...
by bibawa
Sun Oct 30, 2016 2:53 pm
Forum: Beginner Basics
Topic: IPSEC VPN Behind Nat
Replies: 2
Views: 2655

IPSEC VPN Behind Nat

Dear, I'm trying to create a IPSEC vpn connection between 2 Mikrotik Devices: --192.168.100.0/24--MIKROTIK -- 185.59.71.2 -------INTERNET ----- ISP MODEM (NAT APPLIED)-- 192.168.15.1 ----192.168.15.252---MIKROTIK --- 192.168.16.0/24 --- So as you see one side of the part has a NATTED IP. When I look...
by bibawa
Wed Jul 09, 2014 11:40 am
Forum: General
Topic: Traffic accounting per IP
Replies: 0
Views: 1016

Traffic accounting per IP

Dear, I'm looking for a product that allow me to count the bandwidth usage per IP. I've already installed tools like nfsen, ntop, bandwidthd but none of them do exactly what I want. nfsen+ntop: don't allow me to show me per ip data bandwidthd: can show data per ip, but doens't support netflow as a c...
by bibawa
Fri Jun 06, 2014 2:18 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

Following routes are active on Site 1: [admin@router] > /ip route print Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, B - blackhole, U - unreachable, P - prohibit # DST-ADDRESS PREF-SRC GATEWAY DIST 0 A S 0.0.0.0/0 192.168.0.1 1 ADC 172.1...
by bibawa
Thu Jun 05, 2014 10:02 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

HI, I've made some progress, when I start a ping from a device on the 192.168.100.0/24 network to a device on the 192.168.15.0/24 network, and start a torch on the L2TP interface i see on the 100.0/24 network TX traffic and on the 15.0/24 RX traffic, but the traffic is not going back.. Export from t...
by bibawa
Tue Jun 03, 2014 4:27 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

When I do a traceroute via interface PRIVATE LAN it seems that he's sending traffic through it's default gateway instead of using the route I've devined for the 192.168.15.0 network.
by bibawa
Tue Jun 03, 2014 3:19 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

I can't get this to work, my setup: PRIVATE LAN 192.168.100.0/24 <-----|ROUTERBOARD DC|172.16.1.1 ------L2TP VPN ------ 172.16.1.2|ROUTERBOARD HOME|---> PRIVATE LAN 192.168.15.0/24 - From my home router I can ping to 172.16.1.2,172.16.1.1 and also clients on the PRIVATE LAN subnets on both sides - F...
by bibawa
Sun Jun 01, 2014 12:08 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

Somebody with tips on this issue ?
by bibawa
Fri May 30, 2014 4:54 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

On SITE1: Allow both inbound, outbound en forward traffic
On SITE2: No firewall rules present
by bibawa
Fri May 30, 2014 4:34 pm
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Re: Bridge not routing traffic to L2TP

Hi,

Thanks for your reply,

Those routes already exists, clients have the RB as their default gateway.
On a client I can succesfully ping 172.16.1.1 or .2 but not the 192.168.100.0/24 network
by bibawa
Fri May 30, 2014 11:10 am
Forum: Beginner Basics
Topic: Bridge not routing traffic to L2TP
Replies: 12
Views: 11221

Bridge not routing traffic to L2TP

Dear, We've 2 sites: SITE 1, private lan with range 192.168.100.0/24 - port 2,3,4 bridged in bridge called 'PRIVATE LAN' SITE 2, private lan with range 192.168.15.0/24 - port 2, wlan1 bridged in bridged called 'bridge-local' I've created a L2TP tunnel between SITE 1 and SITE 2 as described in http:/...
by bibawa
Mon May 12, 2014 10:57 pm
Forum: General
Topic: Traffic not working without Torch
Replies: 6
Views: 2685

Re: Traffic not working without Torch

Tried that, enabled rstp on all bridged , enabled firewall on the bridge & vlan, but still no luck..
How can I disable the whole firewall ?
by bibawa
Mon May 12, 2014 8:24 pm
Forum: General
Topic: Traffic not working without Torch
Replies: 6
Views: 2685

Re: Traffic not working without Torch

Side note:

Also after rebooting the communication is working for a couple of minutes..
by bibawa
Mon May 12, 2014 8:21 pm
Forum: General
Topic: Traffic not working without Torch
Replies: 6
Views: 2685

Re: Traffic not working without Torch

Hi , Thanks for your assistance, the config: # may/12/2014 19:20:34 by RouterOS 6.12 # software id = EWM0-5AGT # /interface bridge add l2mtu=1598 name="Onapp Management" add admin-mac=4C:5E:0C:45:44:E8 auto-mac=no l2mtu=1594 name=bridge-local add l2mtu=1598 name=iDRAC protocol-mode=none /i...
by bibawa
Mon May 12, 2014 3:47 pm
Forum: General
Topic: Traffic not working without Torch
Replies: 6
Views: 2685

Traffic not working without Torch

Dear, Got some very, very strange problem I'll try to explain.. OUR SIDE: RB2011UAS for the routing on our network, one uplink ETH4 is a direct uplink to a customer private cage CUSTOMER SIDE: - RB2011UiAS - ETH1 uplink (direct uplink to ETH4 on our RB) - ETH2 ==> Direct link to temporary server - E...
by bibawa
Tue Apr 09, 2013 10:11 am
Forum: General
Topic: Port Forward
Replies: 11
Views: 3670

Re: Port Forward

Hi , Sorry it was my fault, I forgot to add the PUBLIC ip on the IP-->Addresses list, after that is was working. Now I need to create a firewall filter rule to allow all traffic to PUBLIC IP, when I create a forward rule with any any everything works Ok, but for some reason when I enter PUBLIC IP in...
by bibawa
Mon Apr 08, 2013 2:58 pm
Forum: General
Topic: Port Forward
Replies: 11
Views: 3670

Re: Port Forward

Hi,

When I configure the 2 rules as described above and try to reach is over https://publicip, nothings happens even the counters for both NAT rules didn't increase...
by bibawa
Fri Mar 29, 2013 10:01 am
Forum: General
Topic: Port Forward
Replies: 11
Views: 3670

Re: Port Forward

So something like this: /ip firewall nat add action=dst-nat chain=dstnat disabled=no dst-address=PUBLICIP dst-port=443 protocol=tcp to-addresses=CUSTOMERIP to-ports=4343 add action=masquerade chain=srcnat disabled=no dst-address=CUSTOMERIP dst-port=4343 protocol=tcp This is for forwarding all reques...
by bibawa
Thu Mar 28, 2013 2:23 pm
Forum: General
Topic: Port Forward
Replies: 11
Views: 3670

Port Forward

Dear, I need to achieve something that's quite easy but for some reason I can't get this working. A client has a server at home running a website at port 9090 the reasong why the site is running on 9090 is because the ISP is blocking all ports < 1024, now we want to assign another public ip address ...
by bibawa
Thu Jan 24, 2013 8:46 am
Forum: Beginner Basics
Topic: VRRP
Replies: 2
Views: 915

Re: VRRP

Hi,

Which configuration can I transfer? Is it everything (interface configs, vlans, firewall rules,..) ?
As from my understanding with vrrp you create an active/active setup right ?

Is vrrp the right choice to create this or is there something else ? I got a lot of fw rules and vlans.
by bibawa
Mon Jan 21, 2013 4:54 pm
Forum: Beginner Basics
Topic: VRRP
Replies: 2
Views: 915

VRRP

Dear, I would like to setup an active-active or active-passive cluster of 2 routerboard routers in case one of the routers fails another takes over. I've read a lot of it that I need to configure VRRP but got a question about it: - One you've configures VRRP is the configuration continiously replica...
by bibawa
Mon Jan 21, 2013 12:52 pm
Forum: Beginner Basics
Topic: Creating groups of address lists
Replies: 4
Views: 4521

Re: Creating groups of address lists

So you need to name all address list items the same to create a group?

Strange way but OK :-) :lol:
by bibawa
Sun Jan 20, 2013 2:10 pm
Forum: Beginner Basics
Topic: Creating groups of address lists
Replies: 4
Views: 4521

Creating groups of address lists

Hi, I don't know this is possible, but if it is it would be great: I've 2 address list items defined in my IPV4 firewall - Server 1 - 192.168.1.1 - Server 2 - 192.168.1.2 For both servers I would like to allow all traffic on port 80, now I create 2 identical rules to allow traffic on port 80 to this...
by bibawa
Fri Nov 02, 2012 2:54 pm
Forum: Beginner Basics
Topic: RB2011 Leds not working
Replies: 11
Views: 6036

RB2011 Leds not working

Hi, Got my brand new Mikrotik RB2011 device configured. But for some reason the leds are not flashing on interface activity. When I do an output of /system leds print I got this: Flags: X - disabled, * - default # TYPE INTERFACE LEDS and when I try to add a new led via /system leds add led for inter...
by bibawa
Thu Nov 01, 2012 10:05 pm
Forum: Beginner Basics
Topic: Transparent Firewall
Replies: 8
Views: 12495

Re: Transparent Firewall

Hi again, Got it working after a few hours of euh.. ;-). Now I got 2 servers which are in different broadcast domain and can't access each other resources, now my last challenge is the following: All servers need to have access to just 1 server (dns server), I tried to add routing stuff and so on bu...
by bibawa
Thu Nov 01, 2012 5:12 pm
Forum: Beginner Basics
Topic: Transparent Firewall
Replies: 8
Views: 12495

Re: Transparent Firewall

Hi Guys, Thanks for the feedback, that's running smoothly now. Next step is creating VLANS on the same network, as described here: http://gcharriere.com/blog/?p=620 Found this topic on the forum here from a guy trying to achieve the same as me http://forum.mikrotik.com/viewtopic.php?f=2&t=56208 ...
by bibawa
Tue Oct 30, 2012 7:39 pm
Forum: Beginner Basics
Topic: Transparent Firewall
Replies: 8
Views: 12495

Re: Transparent Firewall

Hi, So i now created a bridge called 'Servers', addes ETH1 and ETH2 to this bridge and assigned an ip address 192.168.16.254 to interface ETH1. I also applied the "Use IP Firewall" setting in the bridge settings menu. Now my network setup is as follow: DESKTOP (192.168.16.2) --> SWITCH -->...
by bibawa
Tue Oct 30, 2012 11:52 am
Forum: Beginner Basics
Topic: Transparent Firewall
Replies: 8
Views: 12495

Transparent Firewall

Hi Guys, I'm new to Routerboard and I want to configure my Routerboard acting as a "transparant firewall" in the current network, something like this: LAN (192.168.16.x /24) ---> ETH1 RB (192.168.16.254 /24) ----> ETH2 RB ----> LAN 2 (192.168.16.x/24) Clients that are connected to lan 2 ar...