❗️Toto je původní verze internetového fóra ISPforum.cz do února 2020 bez možnosti registrace nových uživatelů. Aktivní verzi fóra naleznete na adrese https://telekomunikace.cz

RBLHG-5nD nelze se přihlásit

Návody a problémy s konfigurací.
tihec
Příspěvky: 23
Registrován: 9 years ago

Re: RBLHG-5nD nelze se přihlásit

Příspěvekod tihec » 7 years ago

MMM MMM KKK TTTTTTTTTTT KKK
MMMM MMMM KKK TTTTTTTTTTT KKK
MMM MMMM MMM III KKK KKK RRRRRR OOOOOO TTT III KKK KKK
MMM MM MMM III KKKKK RRR RRR OOO OOO TTT III KKKKK
MMM MMM III KKK KKK RRRRRR OOO OOO TTT III KKK KKK
MMM MMM III KKK KKK RRR RRR OOOOOO TTT III KKK KKK

MikroTik RouterOS 6.42.4 (c) 1999-2018 http://www.mikrotik.com/

[?] Gives the list of available commands
command [?] Gives help on the command and list of arguments

[Tab] Completes the command/word. If the input is ambiguous,
a second [Tab] gives possible options

/ Move up to base level
.. Move up one level
/command Use command at the base level
[admin@MikroTik] > export
# jul/26/2018 11:04:03 by RouterOS 6.42.4
# software id = EWYA-GP0S
#
# model = RouterBOARD LHG 5nD
# serial number = 6F2C069923A9
/interface bridge
add fast-forward=no name=bridge1
/interface wireless
set [ find default-name=wlan1 ] band=5ghz-a/n channel-width=20/40mhz-Ce \
country="czech republic" disabled=no frequency=5805 mode=bridge \
nv2-cell-radius=10 ssid="MikroTik barak" wireless-protocol=nv2
/interface list
add exclude=dynamic name=discover
add name=mactel
add name=mac-winbox
add name=LAN
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip hotspot profile
set [ find default=yes ] html-directory=flash/hotspot
/ip pool
add name=default-dhcp ranges=192.168.88.10-192.168.88.254
/ip dhcp-server
add address-pool=default-dhcp authoritative=after-2sec-delay interface=ether1 \
name=defconf
/interface bridge port
add bridge=bridge1 interface=wlan1
add bridge=bridge1 hw=no interface=ether1
/ip neighbor discovery-settings
set discover-interface-list=discover
/interface list member
add interface=ether1 list=discover
add interface=bridge1 list=discover
add interface=ether1 list=mactel
add interface=ether1 list=mac-winbox
add interface=wlan1
add interface=wlan1 list=LAN
/ip address
add address=10.0.0.36/24 comment=defconf interface=ether1 network=10.0.0.0
/ip dhcp-client
add comment=defconf dhcp-options=hostname,clientid interface=bridge1
/ip dhcp-server network
add address=192.168.88.0/24 comment=defconf gateway=192.168.88.1 netmask=24
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=10.0.0.36 name=router
/ip firewall filter
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
connection-state=established,related
add action=accept chain=forward comment="defconf: accept established,related" \
connection-state=established,related
add action=drop chain=forward comment="defconf: drop invalid" connection-state=\
invalid
# in/out-interface matcher not possible when interface (wlan1) is slave - use mast
r instead (bridge1)
add action=drop chain=forward comment=\
"defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
connection-state=new in-interface=wlan1
add action=accept chain=input protocol=icmp
add action=accept chain=input connection-state=established
add action=accept chain=input connection-state=related
add action=drop chain=input in-interface-list=!LAN
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" disabled=yes \
out-interface=wlan1
/ip route
add distance=1 gateway=10.0.0.8
/system clock
set time-zone-name=Europe/Prague
/system routerboard settings
set silent-boot=no
/system watchdog
set watch-address=10.0.0.8
/tool mac-server
set allowed-interface-list=mactel
/tool mac-server mac-winbox
set allowed-interface-list=mac-winbox
[admin@MikroTik] >
0 x

mirek.k
Příspěvky: 796
Registrován: 17 years ago

Příspěvekod mirek.k » 7 years ago

​/ip address
add address=10.0.0.36/24 comment=defconf interface=ether1 network=10.0.0.0


Pokud je interface v bridge, IP adresu by měl mít ten bridge.
Mirek
0 x

tihec
Příspěvky: 23
Registrován: 9 years ago

Příspěvekod tihec » 7 years ago

to nevysvětluje proč to po restartu funguje par dni a pak už ne.
0 x

mirek.k
Příspěvky: 796
Registrován: 17 years ago

Příspěvekod mirek.k » 7 years ago

Nemáme tady informace z druhého zařízení, takže stále vaříme z vody.
Zoufalý nápad - není tam někde ve hře DHCP server? Tam by mohlo dojít k expiraci IP adresy s podobným chováním. Je tam pevná adresa na eth1, který je ale v bridgi s DHCP klientem. To je velice podivné. Pokud přiděluje DHCP server IP staticky pro danou MAC, tak tam bych hledal problém, protože jsem se již setkal s tím, že bridge někdy vezme MAC z eth a jindy z wlan.
0 x

tihec
Příspěvky: 23
Registrován: 9 years ago

Příspěvekod tihec » 7 years ago

druhé zařízení funguje jak má , dhcp v síti je na jiném zařízení.
tady je protikus.



MMM MMM KKK TTTTTTTTTTT KKK
MMMM MMMM KKK TTTTTTTTTTT KKK
MMM MMMM MMM III KKK KKK RRRRRR OOOOOO TTT III KKK KKK
MMM MM MMM III KKKKK RRR RRR OOO OOO TTT III KKKKK
MMM MMM III KKK KKK RRRRRR OOO OOO TTT III KKK KKK
MMM MMM III KKK KKK RRR RRR OOOOOO TTT III KKK KKK

MikroTik RouterOS 6.42.4 (c) 1999-2018 http://www.mikrotik.com/

[?] Gives the list of available commands
command [?] Gives help on the command and list of arguments

[Tab] Completes the command/word. If the input is ambiguous,
a second [Tab] gives possible options

/ Move up to base level
.. Move up one level
/command Use command at the base level
[admin@MikroTik] > export
# jul/27/2018 11:18:57 by RouterOS 6.42.4
# software id = 2L8X-BUP7
#
# model = RouterBOARD LHG 5nD
# serial number = 6F2C0699BD8A
/interface bridge
add fast-forward=no name=bridge1
/interface wireless
set [ find default-name=wlan1 ] band=5ghz-a/n channel-width=20/40mhz-Ce \
disabled=no frequency=5200 mode=station-bridge ssid="MikroTik barak" \
wireless-protocol=nv2-nstreme-802.11
/interface list
add exclude=dynamic name=discover
add name=mactel
add name=mac-winbox
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip hotspot profile
set [ find default=yes ] html-directory=flash/hotspot
/ip pool
add name=dhcp ranges=10.0.0.39-10.0.0.254
/ip dhcp-server
add address-pool=dhcp authoritative=after-2sec-delay interface=ether1 name=\
defconf
/interface bridge port
add bridge=bridge1 interface=wlan1
add bridge=bridge1 hw=no interface=ether1
/ip neighbor discovery-settings
set discover-interface-list=discover
/interface list member
add interface=ether1 list=discover
add interface=bridge1 list=discover
add interface=ether1 list=mactel
add interface=ether1 list=mac-winbox
/ip address
add address=10.0.0.37/24 comment=defconf interface=ether1 network=10.0.0.0
/ip dhcp-client
add comment=defconf dhcp-options=hostname,clientid interface=bridge1
/ip dhcp-server network
add address=10.0.0.0/24 comment=defconf gateway=10.0.0.37 netmask=24
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=10.0.0.37 name=router
/ip firewall filter
add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
add action=accept chain=input comment="defconf: accept established,related" \
connection-state=established,related
# in/out-interface matcher not possible when interface (wlan1) is slave - use mast
r instead (bridge1)
add action=drop chain=input comment="defconf: drop all from WAN" in-interface=\
wlan1
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
connection-state=established,related
add action=accept chain=forward comment="defconf: accept established,related" \
connection-state=established,related
add action=drop chain=forward comment="defconf: drop invalid" connection-state=\
invalid
# in/out-interface matcher not possible when interface (wlan1) is slave - use mast
r instead (bridge1)
add action=drop chain=forward comment=\
"defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
connection-state=new in-interface=wlan1
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" disabled=yes \
out-interface=wlan1
/ip route
add distance=1 gateway=10.0.0.8
/system clock
set time-zone-name=Europe/Prague
/system routerboard settings
set silent-boot=no
/tool mac-server
set allowed-interface-list=mactel
/tool mac-server mac-winbox
set allowed-interface-list=mac-winbox
[admin@MikroTik] >
0 x

mirek.k
Příspěvky: 796
Registrován: 17 years ago

Příspěvekod mirek.k » 7 years ago

OK. Proč je ale na prvním zařízení DHCP client?
​/ip dhcp-client
add comment=defconf dhcp-options=hostname,clientid interface=bridge1
Nejsou ty pevné IP adresy v dhcp poolu dhcp serveru?. Pak by lehce vznikla duplicitní IP adresa opět s podobným chováním.
0 x

tihec
Příspěvky: 23
Registrován: 9 years ago

Příspěvekod tihec » 7 years ago

status dhcp client je stopped.
ip adresy dhcp jsou mimo než pevně přidělené.
0 x