Community discussions

MikroTik App
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 9:22 pm

Hello
Finally i got my hEX s device, just connected i could see that speed performance is less good than my ISP router (200mbit dropped to 170mb max)
What would be the best practice configuration for better performance?

10q in asvance
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 22135
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 9:34 pm

What is the throughput of your ISP?
How are you connecting the HEx to the internet (via the ISP modem or ISP router)?
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 9:49 pm

Throughput is 200mbit down 200 mbit up
Connected directly with cat6 to the hex s on port 1.

I am connected on p2p fiber so i get CAT6 to my apartment.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 22135
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 10:05 pm

Assuming you have the default firewall rules in place, not sure you can get any better performance.
Please post your config
/export hide-sensitive file=anynameyouwish

also ensure you remove the WANIP before posting.
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 10:15 pm

jul/02/2020 22:11:20 by RouterOS 6.46.3
# software id = X9GD-CZK4
#
# model = RB760iGS
# serial number =
/interface bridge
add admin-mac=48:8F:5A:2F:50:A5 auto-mac=no comment=defconf name=bridge
/interface list
add comment=defconf name=WAN
add comment=defconf name=LAN
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip pool
add name=dhcp ranges=192.168.88.10-192.168.88.254
/ip dhcp-server
add address-pool=dhcp disabled=no interface=bridge name=defconf
/interface bridge port
add bridge=bridge comment=defconf interface=ether2
add bridge=bridge comment=defconf interface=ether3
add bridge=bridge comment=defconf interface=ether4
add bridge=bridge comment=defconf interface=ether5
add bridge=bridge comment=defconf interface=sfp1
/ip neighbor discovery-settings
set discover-interface-list=LAN
/interface detect-internet
set detect-interface-list=all
/interface list member
add comment=defconf interface=bridge list=LAN
add comment=defconf interface=ether1 list=WAN
/ip address
add address=192.168.88.1/24 comment=defconf interface=ether2 network=\
192.168.88.0
/ip dhcp-client
add comment=defconf disabled=no interface=ether1
/ip dhcp-server lease
add address=192.168.88.254 client-id=1:e0:cb:bc:33:27:dd mac-address=\
E0:CB:BC:33:27:DD server=defconf
/ip dhcp-server network
add address=192.168.88.0/24 comment=defconf gateway=192.168.88.1
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=192.168.88.1 comment=defconf name=router.lan
/ip firewall filter
add action=accept chain=input comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked
add action=drop chain=input comment="defconf: drop invalid" connection-state=\
invalid
add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
add action=accept chain=input comment=\
"defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1
add action=drop chain=input comment="defconf: drop all not coming from LAN" \
in-interface-list=!LAN
add action=accept chain=forward comment="defconf: accept in ipsec policy" \
ipsec-policy=in,ipsec
add action=accept chain=forward comment="defconf: accept out ipsec policy" \
ipsec-policy=out,ipsec
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
connection-state=established,related
add action=accept chain=forward comment=\
"defconf: accept established,related, untracked" connection-state=\
established,related,untracked
add action=drop chain=forward comment="defconf: drop invalid" \
connection-state=invalid
add action=drop chain=forward comment=\
"defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
connection-state=new in-interface-list=WAN
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" \
ipsec-policy=out,none out-interface-list=WAN
/system clock
set time-zone-name=Asia/Jerusalem
/tool mac-server
set allowed-interface-list=LAN
/tool mac-server mac-winbox
set allowed-interface-list=LAN
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 10:56 pm

currently on 6.46.3
notticed that there is an upgrade to 6.47
should I run that?

also tried to enable fast track
the upload was better but download still the same
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 22135
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:02 pm

Two things
(1) Disable this rule as its functionality from what I have read as yet to be fully explored and may cause issues......
/interface detect-internet
set detect-interface-list=all

(2) The most discernible issue is that you are using the bridge but your IP address refers to ether2 so you need to ensure you have the correct interface there.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 22135
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:07 pm

What do you mean enabled fastrack?
I thought it was enabled as part of the default forward filter rules?

The only other thing I would consider in IP Settings is setting RP filter to "loose" and see if that has a beneficial affect on throughput.
Last edited by anav on Thu Jul 02, 2020 11:10 pm, edited 1 time in total.
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:07 pm

Two things
(1) Disable this rule as its functionality from what I have read as yet to be fully explored and may cause issues......
/interface detect-internet
set detect-interface-list=all

(2) The most discernible issue is that you are using the bridge but your IP address refers to ether2 so you need to ensure you have the correct interface there.
what do you mean it refers to the ether2 ?
what should I change?
ether1 is wan
ether2-3-4 are some PIs connected
ether5 is my ap

would you recommend to ugprade the OS ?
Last edited by Shy on Thu Jul 02, 2020 11:10 pm, edited 1 time in total.
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:08 pm

What do you mean enabled fastrack?
I thought it was enabled as part of the default forward filter rules?
Correct, It was.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 22135
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:13 pm

Well, one needs to learn what each line your configuration is doing right.

So what you have you got.....
You have inherited the default bridge of the router.
You have stated all ethernet ports belong on the bridge.
You have stated that the DHCP-server is the bridge and by ipso facto for all etherports then
You have associated the DHCP function is with the bridge as the bridge is giving out IP addresses. (ip pool)
you have defined the dhcp-server-network - the gateway, the dns server, the ip pool

So why do You think I am not happy when I see this....
/ip address
add address=192.168.88.1/24 comment=defconf interface=ether2 network=\
192.168.88.0


+++++++++++++++++++++++
Recommend 6.45.9 least problems reported and seems stable for me as well.
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:16 pm

well, I didnt config it manually
i believe it was there from the begining...
what do you recommend?
 
kalamaja
Member Candidate
Member Candidate
Posts: 115
Joined: Wed May 23, 2018 3:13 pm

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?

Thu Jul 02, 2020 11:20 pm

System -> Packages -> Upgrade to 6.47
System -> Reset Configuration
Files -> Backup

Now you are up to date, with default configuration and binary backup to return to. Do your initial measurements with default configuration, before even changing anything with QuickStart or messing up with configuration thousands of different ways. MT is a Swiss Army knife, be careful :)
 
Shy
Member Candidate
Member Candidate
Topic Author
Posts: 243
Joined: Sat Jun 13, 2020 8:17 am

Re: Got my 1st Mikrotik device = hEX s 》》 How do I improve it's performance?  [SOLVED]

Thu Jul 02, 2020 11:39 pm

Upgraded to 6.47
Did factory reset
Reconfigured my relevant rules

Everything is perfect.