[Mikrotik] Policy routing help

2016-06-22 Thread Ty Featherling
I have setup some policy routing at an edge router so that packets from subnet X get one default route and all other packets gets a different default route. This works fine for internet traffic but when trying to get from subnet X to anywhere else on my own network it's broken. If I explicitly add

Re: [Mikrotik] going to the MUM

2016-04-26 Thread Ty Featherling
> On Apr 26, 2016, at 10:32 AM, Ty Featherling <tyfeatherl...@gmail.com> > wrote: > > > > Who else is going to be at the MUM in Dallas this week? I'm heading up > > there tomorrow morning. It' s my first industry conference and I'm > looking > > forward to putt

[Mikrotik] going to the MUM

2016-04-26 Thread Ty Featherling
Who else is going to be at the MUM in Dallas this week? I'm heading up there tomorrow morning. It' s my first industry conference and I'm looking forward to putting some faces to names. -Ty -- next part -- An HTML attachment was scrubbed... URL:

Re: [Mikrotik] Script to monitor ethernet interface speed

2016-03-07 Thread Ty Featherling
I don't have a clue but I would love if you'd share the finished result. That would be very useful. -Ty -Ty On Mon, Mar 7, 2016 at 1:22 PM, Christopher Tyler wrote: > I'm in need of a little scripting assistance. I'm trying to write a router > script that gets the

Re: [Mikrotik] Rb750r2 only 16 MB of storage?

2015-11-18 Thread Ty Featherling
Wow, seriously? That seems like a major oversite. -Ty -Ty On Wed, Nov 18, 2015 at 3:18 PM, Josh Luthman wrote: > How are you supposed to upgrade??? There's only about 5 MB left after the > OS. You can't uninstall any packages. > > > /sys resource print >

[Mikrotik] Traffic generator

2015-09-04 Thread Ty Featherling
How the heck do I use this thing? I just want to do a bandwidth test. -Ty -- next part -- An HTML attachment was scrubbed... URL: ___

Re: [Mikrotik] Traffic generator

2015-09-04 Thread Ty Featherling
I started there, yes. -Ty On Sep 4, 2015 5:08 PM, "Chupaka" <chup...@gmail.com> wrote: > Have you checked > > http://wiki.mikrotik.com/wiki/Manual:Performance_Testing_with_Traffic_Generator > ? > > -- > Подпись: > (добавляется в конце всех исходящих

[Mikrotik] Multihomed - BGP + OSPF

2015-08-31 Thread Ty Featherling
I use OSPF to hand internal routing and BGP to talk to my provider. I just turned up a second circuit on the network so naturally I would like to be able to route some subnets through one connection and others through the other with either failing over should one connection go down. I get that I

Re: [Mikrotik] Multihomed - BGP + OSPF

2015-08-31 Thread Ty Featherling
wrote: > Are the two circuits at different points in your network? > > > > > - > Mike Hammett > Intelligent Computing Solutions > http://www.ics-il.com > > > > Midwest Internet Exchange > http://www.midwest-ix.com > > > - Original Message

Re: [Mikrotik] Multihomed - BGP + OSPF

2015-08-31 Thread Ty Featherling
ther. You just need to make sure your costs divide the network the same > way you are doing with your BGP routes. > There are other ways to do this that I am sure other folks will share, but > this one does work. > > > On 8/31/2015 2:54 PM, Ty Featherling wrote: > >&g

Re: [Mikrotik] Traffic pauses on 2011UiAS

2015-08-29 Thread Ty Featherling
I have seen this behavior in Winbox many times. Freaked me out until I realized it was not really happening just a display glitch. -Ty On Aug 29, 2015 9:23 AM, Terri Kelley net...@farm-market.net wrote: @Mike I will try the CLI, didn’t think of that. @Scott Counters on all interfaces go to

Re: [Mikrotik] simple BGP

2015-08-21 Thread Ty Featherling
: Basically what you said. Setup the session and put the advertised net in Networks. You can do a route filter to stop anything you don't want, but ask the upstream to only send the default. On 8/21/2015 10:32 AM, Ty Featherling wrote: What is the bare minimum necessary to turn up BGP

[Mikrotik] simple BGP

2015-08-21 Thread Ty Featherling
What is the bare minimum necessary to turn up BGP on a Tik router? I just need to establish a session, accept default routes, and advertise one /24 subnet. -Ty -- next part -- An HTML attachment was scrubbed... URL:

Re: [Mikrotik] simple BGP

2015-08-21 Thread Ty Featherling
. -- Christopher Tyler MTCRE/MTCNA/MTCTCE/MTCWE Total Highspeed Internet Services 417.851.1107 - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Friday, August 21, 2015 9:49:59 AM Subject: Re: [Mikrotik

Re: [Mikrotik] simple BGP

2015-08-21 Thread Ty Featherling
-chain=MY_NETWORK add action=accept chain=PROVIDER_OUT match-chain=MY_NETWORK add action=discard chain=PROVIDER_OUT On 08/21/2015 09:32 AM, Ty Featherling wrote: What is the bare minimum necessary to turn up BGP on a Tik router? I just need to establish a session, accept default routes

Re: [Mikrotik] VPN Android to ROS

2015-08-21 Thread Ty Featherling
Okay that sounds easy. Yes, Sam, if you have a config happy I will gladly accept it. -Ty On Fri, Aug 21, 2015 at 2:24 PM, Scott Lambert lamb...@lambertfam.org wrote: On Fri, Aug 21, 2015 at 02:19:34PM -0500, Ty Featherling wrote: Has anyone gotten a VPN to work from their Android device

[Mikrotik] VPN Android to ROS

2015-08-21 Thread Ty Featherling
Has anyone gotten a VPN to work from their Android device to a Mikrotik? I searched the forums and only find people complaining about how it doesn't work and how stupid Mikrotik is. -Ty -- next part -- An HTML attachment was scrubbed... URL:

Re: [Mikrotik] VPN Android to ROS

2015-08-21 Thread Ty Featherling
nat add action=masquerade chain=srcnat src-address=192.168.99.0/24 out-interface=!pptp-USERNAME On 08/21/2015 03:54 PM, Ty Featherling wrote: Okay that sounds easy. Yes, Sam, if you have a config happy I will gladly accept it. -Ty On Fri, Aug 21, 2015 at 2:24 PM, Scott Lambert lamb

Re: [Mikrotik] POE *out* products

2015-05-26 Thread Ty Featherling
I have 3 of them. Haven't deployed just yet though. -Ty On Fri, May 22, 2015 at 11:32 PM, Mike Hammett butch-mikro...@ics-il.net wrote: It was added to RouterBoard.com on February 2nd. That said, the first three places all have it on pre-order still. - Mike Hammett Intelligent

[Mikrotik] Split-horizon on CRS125

2015-02-12 Thread Ty Featherling
Does anyone have a sample config that shows split-horizon setup? I would like port-isolation on my CRS125s. If it matters I have all ports in a bridge save for the upstream port. Doing some simple routing. -Ty -- next part -- An HTML attachment was scrubbed... URL:

Re: [Mikrotik] Split-horizon on CRS125

2015-02-12 Thread Ty Featherling
- From: mikrotik-boun...@mail.butchevans.com [mailto:mikrotik-boun...@mail.butchevans.com] On Behalf Of Ty Featherling Sent: Thursday, February 12, 2015 4:47 PM To: Mikrotik discussions Subject: [Mikrotik] Split-horizon on CRS125 Does anyone have a sample config that shows split

Re: [Mikrotik] A stable version 6

2014-11-25 Thread Ty Featherling
I have been running 6.15 on all of my CCRs, CRSs, and a couple of RB450s. I do all of the things you are talking about without issue. I just tried 6.20 on a CRS and it dropped packets like crazy. Stay off of that one for sure. -Ty On Tue, Nov 25, 2014 at 10:56 AM, Josh Luthman

Re: [Mikrotik] A stable version 6

2014-11-25 Thread Ty Featherling
Fine then. Be that way. :P -Ty On Nov 25, 2014 11:26 AM, Josh Luthman j...@imaginenetworksllc.com wrote: Thanks guys. I think I'll start with 6.22 since it's the latest and it got not only one but two endorsements! Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St

Re: [Mikrotik] A stable version 6

2014-11-25 Thread Ty Featherling
!!! Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Tue, Nov 25, 2014 at 12:42 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Fine then. Be that way. :P -Ty On Nov 25, 2014 11:26 AM, Josh Luthman j...@imaginenetworksllc.com wrote

Re: [Mikrotik] Portions of config not being loaded

2014-09-26 Thread Ty Featherling
Does the config you are pasting include mac addresses? If so you need to remove them. -Ty On Fri, Sep 26, 2014 at 11:07 AM, Roy, Jerry jerry@toltsolutions.com wrote: How do I get to it after a factory reset? Mac-telnet is not allowing me to paste. Winbox via mac works but pasting keeps

Re: [Mikrotik] Throughput Problem on Mikrotik RB951

2014-07-09 Thread Ty Featherling
I run a first-gen 2011 wireless model at home for my personal router. I get 25-30mbps down and 15-20mbps upload no problem. Was this an issue with the later model or just a hit-or miss issue? -Ty On Wed, Jul 9, 2014 at 4:38 PM, Paul McCall pa...@pdmnet.net wrote: We tried changing flow

Re: [Mikrotik] local access to a NAT'ted address

2014-05-01 Thread Ty Featherling
: Hairpin NAT http://gregsowell.com/?p=4242 Bryon -Original Message- From: mikrotik-boun...@mail.butchevans.com [mailto:mikrotik-boun...@mail.butchevans.com] On Behalf Of Ty Featherling Sent: Monday, April 28, 2014 4:15 PM To: Mikrotik discussions Subject: Re: [Mikrotik] local access

Re: [Mikrotik] local access to a NAT'ted address

2014-04-29 Thread Ty Featherling
, 2014 at 5:00 PM, Butch Evans but...@butchevans.com wrote: On 04/28/2014 03:15 PM, Ty Featherling wrote: No dice. No packets even hit that rule. It needs to be above this rule: add action=src-nat chain=srcnat src-address=192.168.0.0/24 to-addresses=\ 207.235.20.130 -- Butch Evans

Re: [Mikrotik] local access to a NAT'ted address

2014-04-29 Thread Ty Featherling
: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Tue, Apr 29, 2014 at 3:08 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Like so? /ip firewall nat add action=dst-nat chain=dstnat dst-address=207.235.20.132 in-interface=\ bridgeWAN to-addresses=192.168.0.231 add

[Mikrotik] local access to a NAT'ted address

2014-04-28 Thread Ty Featherling
I have a server on my LAN here that I am 1:1 natting behind a public address. The srcNAT + dstNAT rules are working wonderfully but I find when I try to access the server on it's public address from within my LAN I can't reach it. From outside it works fine. It there another rule I need to allow

Re: [Mikrotik] local access to a NAT'ted address

2014-04-28 Thread Ty Featherling
On Mon, Apr 28, 2014 at 3:53 PM, Ty Featherling tyfeatherl...@gmail.com wrote: I have a server on my LAN here that I am 1:1 natting behind a public address. The srcNAT + dstNAT rules are working wonderfully but I find when I try to access the server on it's public address from within my LAN

Re: [Mikrotik] local access to a NAT'ted address

2014-04-28 Thread Ty Featherling
Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Mon, Apr 28, 2014 at 4:01 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Here is what I have right now. /ip address add address=207.235.20.130/25 interface=bridgeWAN network=207.235.20.128

Re: [Mikrotik] RouterOS 6.x ARP bug

2014-04-09 Thread Ty Featherling
at 10:10 AM, Ty Featherling tyfeatherl...@gmail.com wrote: I ran a script that removes all dynamic arp entries and scheduled it to run once an hour. So far so good. I can get the actual script if you like. -Ty On Apr 6, 2014 1:28 AM, RickG rgunder...@gmail.com wrote: Oh, you mean IP

Re: [Mikrotik] RouterOS 6.x ARP bug

2014-04-06 Thread Ty Featherling
ARP? On Sat, Apr 5, 2014 at 9:05 AM, Ty Featherling tyfeatherl...@gmail.com wrote: There is a ping scan tool in routeros. You could script it to run periodically. I may have found an easier fix though. I scripted the router to clear arp every hour. That seems to be working. -Ty

Re: [Mikrotik] RouterOS 6.x ARP bug

2014-04-05 Thread Ty Featherling
that I have run ping scanner when it happens and it clears up things on the offending subnet. On Fri, Apr 4, 2014 at 12:36 PM, Ty Featherling tyfeatherl...@gmail.com wrote: I wonder if a ping scan run from the router will update that entry? -Ty On Fri, Apr 4, 2014 at 11:34 AM, RickG

Re: [Mikrotik] RouterOS 6.x ARP bug

2014-04-05 Thread Ty Featherling
version too? Tushar On Apr 5, 2014, at 8:05 AM, Ty Featherling tyfeatherl...@gmail.com wrote: There is a ping scan tool in routeros. You could script it to run periodically. I may have found an easier fix though. I scripted the router to clear arp every hour. That seems to be working

Re: [Mikrotik] RouterOS 6.x ARP bug

2014-04-04 Thread Ty Featherling
with the CCR but this is exactly the bug I'm experiencing. When I switch over to my 1100 the issues go away. I hope Mikrotik gets this fixed soon! Thanks for the post! On Thu, Apr 3, 2014 at 2:57 PM, Ty Featherling tyfeatherl...@gmail.com wrote: After scratching my head for a day I just figured out

Re: [Mikrotik] RouterOS 6.x ARP bug

2014-04-04 Thread Ty Featherling
I wonder if a ping scan run from the router will update that entry? -Ty On Fri, Apr 4, 2014 at 11:34 AM, RickG rgunder...@gmail.com wrote: Same here. No DHCP. On Fri, Apr 4, 2014 at 9:21 AM, Ty Featherling tyfeatherl...@gmail.com wrote: I thought of that, but the DHCP server isn't

[Mikrotik] RouterOS 6.x ARP bug

2014-04-03 Thread Ty Featherling
After scratching my head for a day I just figured out what is causing these support calls where nothing seems wrong except the user cannot get online. Turns out the CCR I have routing this part of the network is experiencing a bug in the ARP table. For whatever reason, customers would get an IP

[Mikrotik] NTP primary vs secondary

2014-03-31 Thread Ty Featherling
I just went through my routers and was changing the NTP client settings. I have NTP servers on both of my edge Cisco routers. I added both as primary and secondary on all routers making sure to put the nearer router as primary on every one. Time and again I kept seeing the client report that it

Re: [Mikrotik] NTP primary vs secondary

2014-03-31 Thread Ty Featherling
They are backwards each time. Both Ciscos ate set to the same sources so strata should be the same but I will check. -Ty On Mar 31, 2014 5:39 PM, Scott Lambert lamb...@lambertfam.org wrote: On Mon, Mar 31, 2014 at 03:02:37PM -0500, Ty Featherling wrote: I just went through my routers

Re: [Mikrotik] VLAN setup

2014-03-24 Thread Ty Featherling
? -- Blake Covarrubias On Mar 21, 2014, at 3:58 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Thank you. I forgot to say I will be adding a trunk port on ether2 so I wanted to be prepared to do so. -Ty On Mar 21, 2014 4:55 PM, Chupaka chup...@gmail.com wrote: you don't need

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
, whether you want it or not. On 3/20/2014 8:07 AM, Ty Featherling wrote: Yes I have started the process with both upstreams. I do intend to spend some time on filters as well, thanks. Mike, the two networks each have 300Mbps feeds to the internet but only 100Mbps between the two networks via

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
, Ty Featherling tyfeatherl...@gmail.com wrote: Any advice on default vs full or connected routes? -Ty On Fri, Mar 21, 2014 at 10:13 AM, Simon Westlake si...@powercode.com wrote: Right, that's what I meant. On 3/20/2014 9:17 PM, Mike Hammett wrote: All that comes

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
11:00:39 AM Subject: Re: [Mikrotik] BGP guidance If you have the hardware for full, do it. Do you know the differences? Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Mar 21, 2014 11:56 AM, Ty Featherling tyfeatherl...@gmail.com wrote

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
On Mar 21, 2014 11:56 AM, Ty Featherling tyfeatherl...@gmail.com wrote: Any advice on default vs full or connected routes? -Ty On Fri, Mar 21, 2014 at 10:13 AM, Simon Westlake si...@powercode.com wrote: Right, that's what I meant. On 3/20/2014 9:17 PM

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
, take full routes on all providers. Increase backhauls if necessary. - Mike Hammett Intelligent Computing Solutions http://www.ics-il.com - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Friday

Re: [Mikrotik] Mikrotik Digest, Vol 75, Issue 17

2014-03-21 Thread Ty Featherling
...@mail.butchevans.com You can reach the person managing the list at mikrotik-ow...@mail.butchevans.com When replying, please edit your Subject line so it is more specific than Re: Contents of Mikrotik digest... Today's Topics: 1. Re: BGP guidance (Ty Featherling) 2. Re: BGP guidance

Re: [Mikrotik] SFP modules

2014-03-21 Thread Ty Featherling
I just had this problem setting up a CCR today. Make sure you enable auto-negotiation. By default it was disabled on the SFP ports on the CCR but not on a CRS. I was scratching my head until I found that. -Ty On Fri, Mar 21, 2014 at 3:25 PM, Scott Reed sr...@nwwnet.net wrote: We tried to

Re: [Mikrotik] SFP modules

2014-03-21 Thread Ty Featherling
Well that sucks. -Ty On Fri, Mar 21, 2014 at 3:57 PM, Scott Reed sr...@nwwnet.net wrote: Failed either way for me. Well, it linked, but we never received any packets. On 3/21/2014 4:31 PM, Ty Featherling wrote: I just had this problem setting up a CCR today. Make sure you enable auto

[Mikrotik] VLAN setup

2014-03-21 Thread Ty Featherling
I am replacing a Cisco 2950 with a CCR1036. I will have sfp1 connected to an incoming trunk carrying VLANs 50 and 51. I need sfp2, 3, an 4 setup as ACCESS VLAN 50 and ether1 as ACCESS VLAN 51. Does this look right? /interface bridge add l2mtu=1590 name=bridgeACCESS-50 add name=bridgeACCESS-51 add

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
. - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Friday, March 21, 2014 11:10:32 AM Subject: Re: [Mikrotik] BGP guidance How would you do it then? -Ty On Fri, Mar 21, 2014 at 11:07 AM, Mike Hammett

Re: [Mikrotik] BGP guidance

2014-03-21 Thread Ty Featherling
. - Mike Hammett Intelligent Computing Solutions http://www.ics-il.com - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Friday, March 21, 2014 4:26:22 PM Subject: Re: [Mikrotik] BGP guidance I agree

Re: [Mikrotik] VLAN setup

2014-03-21 Thread Ty Featherling
bridge=bridgeACCESS-50 interface=sfp2 add bridge=bridgeACCESS-50 interface=sfp3 add bridge=bridgeACCESS-50 interface=sfp4 add bridge=bridgeACCESS-51 interface=ether1 -- Подпись: (добавляется в конце всех исходящих писем) 2014-03-22 0:17 GMT+03:00 Ty Featherling tyfeatherl...@gmail.com: I am

Re: [Mikrotik] BGP guidance

2014-03-20 Thread Ty Featherling
PM, Mike Hammett butch-mikro...@ics-il.net wrote: That would work, but I'm not sure no service is better than slow service. - Mike Hammett Intelligent Computing Solutions http://www.ics-il.com - Original Message - From: Ty Featherling tyfeatherl...@gmail.com

Re: [Mikrotik] BGP guidance

2014-03-20 Thread Ty Featherling
it or not. On 3/20/2014 8:07 AM, Ty Featherling wrote: Yes I have started the process with both upstreams. I do intend to spend some time on filters as well, thanks. Mike, the two networks each have 300Mbps feeds to the internet but only 100Mbps between the two networks via wireless backhaul. For now

Re: [Mikrotik] BGP guidance

2014-03-20 Thread Ty Featherling
Thank you. For this setup I should only need default routes from both upstreams, yes? -Ty On Mar 20, 2014 3:42 PM, Blake Covarrubias bl...@beamspeed.com wrote: On Mar 20, 2014, at 5:52 AM, Casey Mills wkm...@gmail.com wrote: It has been a while since I set one of these up... But when I did

[Mikrotik] BGP guidance

2014-03-19 Thread Ty Featherling
I am ready to begin turning up BGP on both of my edge routers and start advertising my new IPv4 assignment. I am want to make sure I understand things clearly first. These were setup as two separate networks, each with their own upstream. We built out between them and got a backhaul between the

Re: [Mikrotik] BGP guidance

2014-03-19 Thread Ty Featherling
Thank you. -Ty On Wed, Mar 19, 2014 at 3:26 PM, Blake Covarrubias bl...@beamspeed.comwrote: Yes, that sounds correct. -- Blake Covarrubias On Mar 19, 2014, at 12:11 PM, Ty Featherling tyfeatherl...@gmail.com wrote: I am ready to begin turning up BGP on both of my edge routers

Re: [Mikrotik] BGP guidance

2014-03-19 Thread Ty Featherling
http://www.ics-il.com - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Wednesday, March 19, 2014 2:11:43 PM Subject: [Mikrotik] BGP guidance I am ready to begin turning up BGP on both of my edge routers

Re: [Mikrotik] BGP guidance

2014-03-19 Thread Ty Featherling
will prefer the /19 until that provider fails. - Mike Hammett Intelligent Computing Solutions http://www.ics-il.com - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Wednesday, March 19, 2014 7:51:18 PM

Re: [Mikrotik] Blocking dhcp servers from customer, but not client

2014-03-03 Thread Ty Featherling
I have a single rule on my tower routers that drops udp source port 67 with an IN interface of bridgeLAN which is the bridge my APs are in and also the bridge my DHCP server runs. Works a treat. -Ty On Mar 3, 2014 5:23 PM, Josh Luthman j...@imaginenetworksllc.com wrote: Canopy can certainly

Re: [Mikrotik] Blocking dhcp servers from customer, but not client

2014-03-03 Thread Ty Featherling
I have done the same on UBNT bridged radios with a rule dropping udp port 67 on the eth port for the customer radio or the WLAN on the AP. -Ty On Mar 3, 2014 7:28 PM, Ty Featherling tyfeatherl...@gmail.com wrote: I have a single rule on my tower routers that drops udp source port 67

Re: [Mikrotik] Deleting lots of IPs from address-list

2014-02-27 Thread Ty Featherling
Can you create a new address-list and put in it only what you want to the there? then you can change the names of the address-lists to put the old one out and the new one in. -Ty On Thu, Feb 27, 2014 at 9:53 AM, Josh Luthman j...@imaginenetworksllc.comwrote: About 3.2 million addresses. I

Re: [Mikrotik] Deleting lots of IPs from address-list

2014-02-27 Thread Ty Featherling
I made that mistake once capturing all ips that attempted SMTP to port 25 on my mail server. I didn't set them to time out either. Luckily I had Winbox open for a while and noticed I was over 200 ips in less than an hour! I removed that rule and praised my foresight to block that traffic. -Ty On

Re: [Mikrotik] OSPF problem situation #1

2014-02-25 Thread Ty Featherling
If you are concerned that the wireless link is fouling up the OSPF messages then you might try an EOIP tunnel between the routers. I haven't tried it but I have heard many people on this list recommend it as a fix. -Ty On Feb 25, 2014 9:17 PM, Paul McCall pa...@pdmnet.net wrote: Bill, Thanks

Re: [Mikrotik] Bridge Ports showing with an S on version 6.7

2014-02-05 Thread Ty Featherling
Bueller? -Ty On Wed, Feb 5, 2014 at 10:26 AM, Bill Prince part...@skylinebroadbandservice.com wrote: The software bridge used to operate like a hub, and according to some reports that we've gotten, the switch chip also operated like a hub. However, I have heard through the rumor mill that

Re: [Mikrotik] Bridge Ports showing with an S on version 6.7

2014-02-05 Thread Ty Featherling
When I implemented the port isolation rule I posted earlier. I logged the traffic first to make sure I was not blocking anything I didn't intend. The only traffic I saw was broadcast based; EGMP, UBNT Discovery, CDP, etc. This doesn't rule out the switching function of a bridge since this traffic

Re: [Mikrotik] Bridge Ports showing with an S on version 6.7

2014-02-05 Thread Ty Featherling
truly acting like a hub, I think you'd see practically the same graph on every interface. Craig Quoting Ty Featherling tyfeatherl...@gmail.com: When I implemented the port isolation rule I posted earlier. I logged the traffic first to make sure I was not blocking anything I didn't intend

[Mikrotik] cpu spikes on Mikrotik router

2014-02-04 Thread Ty Featherling
What the hell is this madness? This is an RB450G as a tower router with backhaul in ether1 and the rest of the ports bridged. A handful of static routes, a few filter rules. This same config is used on many other routers but this one is exhibiting this CPU behavior. It does not seem to correlate

Re: [Mikrotik] cpu spikes on Mikrotik router

2014-02-04 Thread Ty Featherling
I just found that tool. Looking now and waiting for the next spike. -Ty On Tue, Feb 4, 2014 at 1:06 PM, Scott Reed sr...@nwwnet.net wrote: Tools-Profile What is using the cycles? On 2/4/2014 1:47 PM, Ty Featherling wrote: What the hell is this madness? This is an RB450G as a tower

Re: [Mikrotik] cpu spikes on Mikrotik router

2014-02-04 Thread Ty Featherling
Looks like the Management profile is consuming the cycles. What could that be? -Ty On Tue, Feb 4, 2014 at 1:08 PM, Ty Featherling tyfeatherl...@gmail.comwrote: I just found the profile tool. I am watching it now and waiting for another spike. -Ty On Tue, Feb 4, 2014 at 12:47 PM, Ty

Re: [Mikrotik] cpu spikes on Mikrotik router

2014-02-04 Thread Ty Featherling
I just found the profile tool. I am watching it now and waiting for another spike. -Ty On Tue, Feb 4, 2014 at 12:47 PM, Ty Featherling tyfeatherl...@gmail.comwrote: What the hell is this madness? This is an RB450G as a tower router with backhaul in ether1 and the rest of the ports bridged

Re: [Mikrotik] Bridge Ports showing with an S on version 6.7

2014-02-03 Thread Ty Featherling
Yeah but why? Some updated functionality of bridge involving the switch chip? -Ty On Feb 3, 2014 11:24 AM, Justin Miller mikro...@dynstatic.net wrote: It's normal in 6. It's a new feature. A port in a bridge will have a S now on all devices. On Feb 3, 2014, at 10:38 AM, Paul McCall

Re: [Mikrotik] Possible to disable switch in RB450?

2014-01-30 Thread Ty Featherling
Set avg port to master=none. 3-5 are slaves to ether2 by default. You can reset without default config as well. -Ty On Jan 30, 2014 8:42 PM, Mike Lyon mike.l...@gmail.com wrote: Howdy, Is it possible to disable the switching chip in the RB450 and use all ports as individual IP interfaces?

Re: [Mikrotik] Possible to disable switch in RB450?

2014-01-30 Thread Ty Featherling
*all not avg, sorry. On Jan 30, 2014 8:44 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Set avg port to master=none. 3-5 are slaves to ether2 by default. You can reset without default config as well. -Ty On Jan 30, 2014 8:42 PM, Mike Lyon mike.l...@gmail.com wrote: Howdy

Re: [Mikrotik] DHCP server + Firewall

2014-01-28 Thread Ty Featherling
in ROS 6. YMMV in 6. Justin On Jan 23, 2014, at 12:13 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Can someone confirm that you CANNOT manage traffic FROM the DHCP Server on a Mikrotik with IP Firewall? To test this I added the rule: add action=log chain=output disabled

Re: [Mikrotik] DHCP server + Firewall

2014-01-28 Thread Ty Featherling
Now the more fun question is how is that router-sourced traffic managed in queues? Does it receive the highest priority or can you use mangle to mark and mange it further. -Ty On Tue, Jan 28, 2014 at 2:15 PM, Ty Featherling tyfeatherl...@gmail.comwrote: That has been my experience

Re: [Mikrotik] DHCP server + Firewall

2014-01-28 Thread Ty Featherling
No. Purely academic. -Ty On Tue, Jan 28, 2014 at 4:32 PM, Justin Miller mikro...@dynstatic.netwrote: That is an interesting question. Do you think you'll have enough DHCP traffic to care? Justin On Jan 28, 2014, at 3:18 PM, Ty Featherling tyfeatherl...@gmail.com wrote: Now the more

Re: [Mikrotik] DHCP server + Firewall

2014-01-24 Thread Ty Featherling
on the MT, wouldn't the chain need to be forward and not output? On 01/24/2014 08:54 AM, Ty Featherling wrote: Chupaka and Butch. This rule is on a router that has a bridge for LAN ports and the DHCP server is run on that bridge. Use IP Filter is enabled for the bridge as well. I am glad you

[Mikrotik] DHCP server + Firewall

2014-01-23 Thread Ty Featherling
Can someone confirm that you CANNOT manage traffic FROM the DHCP Server on a Mikrotik with IP Firewall? To test this I added the rule: add action=log chain=output disabled=no protocol=udp src-port=67 Nothing is caught. -Ty -- next part -- An HTML attachment was

Re: [Mikrotik] Open Port 16000-32000 only if Connection to 554 is established

2013-12-04 Thread Ty Featherling
Can one rule match both the port/protocol and connection state? If so you need one rule to match port 554/established and add to address list and then a rule above that to allow traffic to the ports you like if they are in that address list. -Ty On Wed, Dec 4, 2013 at 5:10 PM, Tayeb Meftah

[Mikrotik] CRS switches

2013-11-05 Thread Ty Featherling
Anyone tried out the new Cloud series switches? Since they are running ROS L5 it seems like they might be a good tower router where I have been using 493Gs or 2011s. They are comparable spec-wise except the 493 has more memory. If they would work in my deployment I can't see why, for the price, I

Re: [Mikrotik] Cable source

2013-08-28 Thread Ty Featherling
DoubleRadius found this one for me a few weeks ago. Didn't end up using it but here you go. Shireen CAT5e Sheilded GelFilled Bulk Cable 1000'. The DC-1041 will feature a double outer jacket, 4 Twisted pairs of 24 AWG wire with Al foil shielding and drain wire with LDPE + Gel. Excellent for use

[Mikrotik] RB493G voltage reporting

2013-08-08 Thread Ty Featherling
I have a box I am building out and I just powered everything up for the first time. All is well except the 493G being powered via a packetflux poe injector being fed 24V reports it's voltage as 18.3V. I verified that the POE is in fact putting out 24V so what gives? Is there a voltage regulator on

Re: [Mikrotik] RB493G voltage reporting

2013-08-08 Thread Ty Featherling
That is the conclusion I came to as well. If I really need to know I will install a shunt for my SiteMonitor. -Ty On Thu, Aug 8, 2013 at 12:34 PM, Vegard Svanberg veg...@svanberg.no wrote: * Ty Featherling tyfeatherl...@gmail.com [2013-08-08 17:56]: I wish I could calibrate it. I will just

Re: [Mikrotik] RB493G voltage reporting

2013-08-08 Thread Ty Featherling
Reed sr...@nwwnet.net wrote: The BaseII SiteMonitor will give you the voltage as is. The shunt is for current. Just use the same supply for it as the RBs and you will know what voltage the RBs are running. On 8/8/2013 2:13 PM, Ty Featherling wrote: That is the conclusion I came to as well

Re: [Mikrotik] Mikrotik template for Cacti

2013-03-20 Thread Ty Featherling
Do you mean traffic graphs? I just use the generic SNMP host template. Works fine for that. -Ty On Wed, Mar 20, 2013 at 3:40 PM, Kevin Pesenecker ke...@crestonetelecom.com wrote: Hi Butch, I was wondering if you had a good resource for some basic Cacti templates that would monitor the

Re: [Mikrotik] Automatic config backup

2013-02-06 Thread Ty Featherling
I use a windows app made by Greg Sowell. It ssh's into each box and does an export. I have daily backups of all my routers that way. I can dig up a link if needed. -Ty On Wed, Feb 6, 2013 at 3:13 PM, Jerry Roy j...@ipass.com wrote: Hi Rick, Your script would be kindly appreciated here as

Re: [Mikrotik] Automatic config backup

2013-02-06 Thread Ty Featherling
Found that app. I will link it here in case someone needs it. http://gregsowell.com/?p=1264 -Ty On Wed, Feb 6, 2013 at 3:18 PM, Jacob Heider jhhei...@gmail.com wrote: I've been using RANCID with the community MikroTik patch for years with fantastic results. I wouldn't run any network without

Re: [Mikrotik] Automatic config backup

2013-02-06 Thread Ty Featherling
Hahaha. You know that is going to come up again in the future. -Ty On Wed, Feb 6, 2013 at 4:59 PM, Eric Muehleisen ericm...@gmail.com wrote: Damn it! I told you to forget that I said that On Wed, Feb 6, 2013 at 4:58 PM, Josh Luthman j...@imaginenetworksllc.com wrote: Duh...6 is less than

Re: [Mikrotik] reset rb493

2013-01-22 Thread Ty Featherling
Suite 1337 Troy, OH 45373 On Jan 21, 2013 11:18 PM, Butch Evans but...@butchevans.com wrote: On Mon, 2013-01-21 at 14:45 -0600, Ty Featherling wrote: I am trying like hell to reset a couple of used RB493s I have here. I have tried holding the reset button while plugging in power, holding

Re: [Mikrotik] reset rb493

2013-01-22 Thread Ty Featherling
For posterity, this was a 493AH. -Ty On Tue, Jan 22, 2013 at 8:07 AM, Ty Featherling tyfeatherl...@gmail.comwrote: Thanks for the help guys. Shorting the jumper pads on the board and booting up reset it for me. -Ty On Mon, Jan 21, 2013 at 10:19 PM, Josh Luthman j

Re: [Mikrotik] reset rb493

2013-01-21 Thread Ty Featherling
Highspeed Internet Services 417.851.1107 - Original Message - From: Ty Featherling tyfeatherl...@gmail.com To: Mikrotik discussions mikrotik@mail.butchevans.com Sent: Monday, January 21, 2013 2:45:31 PM Subject: [Mikrotik] reset rb493 I am trying like hell to reset a couple of used

Re: [Mikrotik] reset rb493

2013-01-21 Thread Ty Featherling
I just left them shorted and I am in now! Thanks. -Ty On Mon, Jan 21, 2013 at 3:09 PM, Ty Featherling tyfeatherl...@gmail.comwrote: Leave them shorted for complete power-up? -Ty On Mon, Jan 21, 2013 at 3:01 PM, Chris Tyler ch...@totalhighspeed.netwrote: You have open the case and use

Re: [Mikrotik] Merry Christmas to all

2012-12-21 Thread Ty Featherling
Amen to that! Thanks Butch. -Ty On Dec 21, 2012 2:33 PM, Butch Evans but...@butchevans.com wrote: I just wanted to send out a Merry Christmas message to all my friends in the WISP industry. May your links all stay running and your bandwidth be plentiful. Many of you will be with family and

Re: [Mikrotik] Multiple IP Adresses to one interface = No route to host

2012-12-07 Thread Ty Featherling
I agree with that. Thanks for hosting it Butch! Is there a English-speaking IRC room for the subject that you know of as well? -Ty On Fri, Dec 7, 2012 at 12:01 PM, Butch Evans but...@butchevans.com wrote: On Fri, 2012-12-07 at 09:44 +0100, Benoit Panizzon wrote: I fear I stumbled over a

Re: [Mikrotik] Multiple IP Adresses to one interface = No route to host

2012-12-07 Thread Ty Featherling
Thanks. -Ty On Fri, Dec 7, 2012 at 3:01 PM, Josh Luthman j...@imaginenetworksllc.comwrote: Freenode ##mikrotik Josh Luthman Office: 937-552-2340 Direct: 937-552-2343 1100 Wayne St Suite 1337 Troy, OH 45373 On Dec 7, 2012 3:59 PM, Ty Featherling tyfeatherl...@gmail.com wrote: I agree

Re: [Mikrotik] Managing traffic on management ports

2012-12-04 Thread Ty Featherling
On Tue, Dec 4, 2012 at 1:54 PM, Butch Evans but...@butchevans.com wrote: On Tue, 2012-12-04 at 13:13 -0600, Ty Featherling wrote: Since you mention it Butch, NOTE that this is just an example and NOT the best way to handle input rules to manage traffic on port 22 or any other management

Re: [Mikrotik] MT cable diagnostics

2012-11-14 Thread Ty Featherling
From the newsletter: This works on SXT-G, RB711G, RB2011, RB750 series and other devices with the same switch chips, and also the Cloud Core series devices. Here is example output: *[admin@CCR] interface ethernet monitor ether5* * status: no-link* * auto-negotiation: done* *

  1   2   >