[AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
If, for example a customer has a router connected backward, is there an arp(ish) check aside from packet sniffing to see this since its not a subnet on the interface and there wont be an arp entry? -- If you only see yourself as part of the team but you don't see your team as part of yourself y

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Faisal Imtiaz
Guy /sarcasm" > To: af@afmug.com > Sent: Monday, February 27, 2017 11:34:59 AM > Subject: [AFMUG] Mikrotik quick view for unknown subnets > If, for example a customer has a router connected backward, is there an > arp(ish) > check aside from packet sniffing to see

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
el: 305 663 5518 x 232 <(305)%20663-5518> > > Help-desk: (305)663-5518 <(305)%20663-5518> Option 2 or Email: > supp...@snappytelecom.net > > -- > > *From: *"That One Guy /sarcasm" > *To: *af@afmug.com > *Sent: *Monday, F

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
uy /sarcasm Sent: Monday, February 27, 2017 12:42 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets I wasnt clear, I was actually looking for rogue subnets in general another issue example is that a customer with some time clocks recently had a slick tech put a switch

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
t; > Radio Frequiency Coverages: www.towercoverage.com > > Office: 314-735-0270 <(314)%20735-0270> > > E-Mail: dmburg...@linktechs.net > > > > *From:* Af [mailto:af-boun...@afmug.com] *On Behalf Of *That One Guy > /sarcasm > *Sent:* Monday, February 27, 2017 1

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
g.com] On Behalf Of That One Guy /sarcasm Sent: Monday, February 27, 2017 1:13 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets A. we have some locations where we dont use client isolation and B client isolation doesnt apply to two access points as far as I know On

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
erages: www.towercoverage.com > > Office: 314-735-0270 <(314)%20735-0270> > > E-Mail: dmburg...@linktechs.net > > > > *From:* Af [mailto:af-boun...@afmug.com] *On Behalf Of *That One Guy > /sarcasm > *Sent:* Monday, February 27, 2017 1:13 PM > *To:* af

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
g.com] On Behalf Of That One Guy /sarcasm Sent: Monday, February 27, 2017 3:42 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets clients on two different access points wil be blocked by client isolation? On Mon, Feb 27, 2017 at 3:35 PM, Dennis Burgess mailto:dmburg.

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
visit www.linktechs.net > > Radio Frequiency Coverages: www.towercoverage.com > > Office: 314-735-0270 <(314)%20735-0270> > > E-Mail: dmburg...@linktechs.net > > > > *From:* Af [mailto:af-boun...@afmug.com] *On Behalf Of *That One Guy > /sarcasm > *Sent:* Monday, February 27, 20

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Josh Luthman
.@afmug.com] *On Behalf Of *That One Guy > /sarcasm > *Sent:* Monday, February 27, 2017 3:42 PM > > *To:* af@afmug.com > *Subject:* Re: [AFMUG] Mikrotik quick view for unknown subnets > > > > clients on two different access points wil be blocked by client isolation? > >

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Adam Moffett
es for "add default route" and "add peer DNS". That might be the kind of quick, simple test you're hoping for. -- Original Message -- From: "That One Guy /sarcasm" To: "af@afmug.com" Sent: 2/27/2017 4:42:02 PM Subject: Re: [AFMUG] Mikrot

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
af-boun...@afmug.com] On Behalf Of Adam Moffett Sent: Monday, February 27, 2017 3:57 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Only on two different router interfaces. If they're on a switch, then no. I think Dennis may be referring to how you should id

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
ce: 314-735-0270 E-Mail: dmburg...@linktechs.net<mailto:dmburg...@linktechs.net> From: Af [mailto:af-boun...@afmug.com] On Behalf Of Adam Moffett Sent: Monday, February 27, 2017 3:57 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Only on two different router in

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Adam Moffett
Yup that's true. -- Original Message -- From: "Dennis Burgess" To: "af@afmug.com" Sent: 2/27/2017 4:59:18 PM Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Switch can do it too, port isolation! Lol note, not a dumb switch though.

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
.net<mailto:dmburg...@linktechs.net> From: Af [mailto:af-boun...@afmug.com] On Behalf Of Adam Moffett Sent: Monday, February 27, 2017 3:57 PM To: af@afmug.com<mailto:af@afmug.com> Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Only on two different router interfaces. I

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Adam Moffett
riginal Message -- From: "Adam Moffett" To: af@afmug.com Sent: 2/27/2017 4:57:04 PM Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Only on two different router interfaces. If they're on a switch, then no. I think Dennis may be referring to how you should ideally

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Adam Moffett
uters visit www.linktechs.net Radio Frequiency Coverages: www.towercoverage.com Office: 314-735-0270 E-Mail: dmburg...@linktechs.net From: Af [mailto:af-boun...@afmug.com] On Behalf Of Dennis Burgess Sent: Monday, February 27, 2017 3:59 PM To:af@afmug.com Subject: Re: [AFMUG] Mikrotik quick vi

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
g.com] On Behalf Of Adam Moffett Sent: Monday, February 27, 2017 4:03 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets I should probably addif you're distributing all connected subnets via ospf, then the dhcp-client trick will distribute a route to the customer&

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
ebruary 27, 2017 4:04 PM To: af@afmug.com; af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Oh? I never noticed that feature. If you get the offender's MAC address it should be trivial to find them at that point. That's really all you need. -- Ori

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Mike Hammett
M Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Only on two different router interfaces. If they're on a switch, then no. I think Dennis may be referring to how you should ideally have things configured, and I think you're talking specifically about the feature in Canop

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
at point. That's really all you need. > > > -- Original Message -- > From: "Dennis Burgess" > To: "af@afmug.com" > Sent: 2/27/2017 5:01:12 PM > Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets > > MIkroTik does have a dhcp

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Jesse DuPont
f [mailto:af-boun...@afmug.com] On Behalf Of Dennis Burgess Sent: Monday, February 27, 2017 3:59 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik qu

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
PM, Adam Moffett wrote: > >> Oh? I never noticed that feature. >> >> If you get the offender's MAC address it should be trivial to find them >> at that point. That's really all you need. >> >> >> -- Original Message -- >> From:

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Jesse DuPont
From: "Dennis Burgess" <dmburg...@linktechs.net> To: "af@afmug.com" <af@afmug.com> Sent: 2/27/2017 5:01:12 PM Subject: Re: [AFMU

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Ken Hohhof
To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets could what i see be a component of bad upnp? On Mon, Feb 27, 2017 at 4:25 PM, Jesse DuPont mailto:jesse.dup...@celeritycorp.net> > wrote: There isn't really anything that does what you want other than

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
af-boun...@afmug.com] On Behalf Of That One Guy /sarcasm Sent: Monday, February 27, 2017 4:19 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets Im mainly looking for IP space that shouldnt be present, DHCP or not. I can packet sniff and exclude all configured subnets on

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread chuck
, 2017 3:51 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets ARPs will not come though as you don’t have anything on that subnet. DHCP-Alert is what you want. Dennis Burgess – Network Solution Engineer – Consultant MikroTik Certified Trainer/Consultant

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
cy Coverages: www.towercoverage.com > > Office: 314-735-0270 <(314)%20735-0270> > > E-Mail: dmburg...@linktechs.net > > > > *From:* Af [mailto:af-boun...@afmug.com] *On Behalf Of *That One Guy > /sarcasm > *Sent:* Monday, February 27, 2017 4:19 PM > *To:* af@afmug

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Jesse DuPont
urg...@linktechs.net   From: Af [mailto:af-boun...@afmug.com] On Behalf Of That One Guy /sarcasm Sent: Monday, February 27, 2017 4:19 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Dennis Burgess
onday, February 27, 2017 4:54 PM To: af@afmug.com Subject: Re: [AFMUG] Mikrotik quick view for unknown subnets DHCP alert will tell me if there is an IP thats not a DHCP server? On Mon, Feb 27, 2017 at 4:51 PM, Dennis Burgess mailto:dmburg...@linktechs.net>> wrote: ARPs will not come though

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread That One Guy /sarcasm
0270 <(314)%20735-0270> > > E-Mail: dmburg...@linktechs.net > > > > *From:* Af [mailto:af-boun...@afmug.com] *On Behalf Of *That One Guy > /sarcasm > *Sent:* Monday, February 27, 2017 4:54 PM > *To:* af@afmug.com > *Subject:* Re: [AFMUG] Mikrotik quick view for unknown

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Bill Prince
g...@linktechs.net <mailto:dmburg...@linktechs.net> *From:*Af [mailto:af-boun...@afmug.com] *On Behalf Of *That One Guy /sarcasm *Sent:* Monday, February 27, 2017 4:54 PM *To:* af@afmug.com *Subject:* Re: [AFMUG] Mikrotik quick view for unknown subnets DHCP alert will tell me if there is an IP

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-27 Thread Rob Genovesi
Create a firewall address list of all known good subnets. Create a forwarding rule in your firewall to accept known good subnets to forward from customer side to WAN side Create a forwarding rule to drop everything else coming from customer side to WAN side /ip firewall address-list add list="cust

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-28 Thread That One Guy /sarcasm
How will that identify unroutable IP space? On Feb 28, 2017 1:55 AM, "Rob Genovesi" wrote: Create a firewall address list of all known good subnets. Create a forwarding rule in your firewall to accept known good subnets to forward from customer side to WAN side Create a forwarding rule to drop e

Re: [AFMUG] Mikrotik quick view for unknown subnets

2017-02-28 Thread Josh Luthman
A logging firewall rule Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Tue, Feb 28, 2017 at 9:56 AM, That One Guy /sarcasm < thatoneguyst...@gmail.com> wrote: > How will that identify unroutable IP space? > > On Feb 28, 2017 1:55 AM, "Rob Genov