Community discussions

MikroTik App
 
Max
Member Candidate
Member Candidate
Topic Author
Posts: 116
Joined: Fri Jan 01, 2010 5:45 pm

What should I do?

Fri Jan 01, 2010 6:23 pm

I need your help to solve this problem.

In the near future, I'll have 2 internet connections(connection "1" and "2") and 2 PCs(computer "A"-main computer and "B"-family computer).
I want to use connection 1 only for computer A.
Connection 2 will be either routed between A and B, either switched/commuted by priority.

I'd preffer routing, but I'm thinking that there might be some situations that need extra care and the members of my family won't know what to do(router reset, ports forwarding, etc).

The other way would be to hard-switch the connection when computer B doesn't use it.
I could build an Y-hardwired switch or...I'm wondering if there are managed switches that could block ports by priority, like this: There are 2 PCs, having identical IP addresses(for the internet connection to work), but different MAC addresses. When B is powered on, the switch blocks the port for A, and allows B to use the ISP connection. When B is off, the switch allows A to use the ISP connection. Is this possible?

Finally, I want to be able to use a RDP program to control computer A from computer B, from time to time.

The thing that worries me the most is the security of this "ramshackle house".
Computer B might get infected from time to time due to family use and I want to be able to maintain computer A clean and the network's security untouched.

IMHO, there are 3 solutions:

1)the router solution -I'm worried about those situations(router reset,ports forwarding, etc)
2)the Y switch solution -requires need 3 NICs on PC A, and 2 NICs on B :(
3)the managed switch solution -dunno yet if a managed switch can block/unblock ports by a MAC prioty rule.

There are some other questions, but I'll add them later, because I feel that I already have stuffed too many things in this post.
 
Max
Member Candidate
Member Candidate
Topic Author
Posts: 116
Joined: Fri Jan 01, 2010 5:45 pm

Re: What should I do?

Wed Jan 06, 2010 5:59 pm

Am I talking gibberish? :)
 
netrat
Member
Member
Posts: 402
Joined: Thu Jun 07, 2007 1:16 pm
Location: Virginia

Re: What should I do?

Mon Feb 01, 2010 9:42 pm

Yes you can do the above. You'll need to add routing marks and implement policy routing. Check out the wiki.

http://wiki.mikrotik.com/wiki/Firewall/Mangle
http://wiki.mikrotik.com/wiki/Routing

Who is online

Users browsing this forum: konstantinas and 68 guests