Welcome Guest ( Log In | Register )

175 Pages « < 34 35 36 37 38 > » Bottom

Outline · [ Standard ] · Linear+

Enterprise Networking Mikrotik Routers (RouterBoard & RouterOS), User and owner discussion group

views
     
weikee
post May 25 2013, 11:23 PM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
QUOTE(gahkin @ May 25 2013, 12:25 PM)
any guy willing guide how to block user access facebook from phone? i was set the L7 protocal block is work 100% from pc. but user still can access the facebook from the phone / app. how to going to block them as well? can share with me about your firewall rules through?
*
The phone using your office network? or using own service provider network? If service provider you can't do much. Office you got to trace the packet or L7 data and block it.
weikee
post May 25 2013, 11:45 PM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
QUOTE(eric_tan @ May 24 2013, 08:24 AM)
I don't use Fortigate. My customer had a 50B (maitenance contract expired), but having issues with it. Sometimes on heavy load, it will just "lag". After disabling almost every feature... it still lags. The latency on peak period could be like 10 secs before there is a response. He told me, company started small, but at this size maybe the Fortigate cant handle the load. In the forum, some said to flash to earlier firmware, which are more stable and efficient...

In the end, we just test with my "standby/testing" 751G on 40+ users. No more issues with "lag". Waiting for them to order a RB2011UAS. The issue now is they using those home grade wireless routers as AP. Some would just "hang" when too many users try to connect. Told them to get some Ubiquiti APs, but customer said will upgrade in stages because of limited budget. Will implement a 2 VLAN on 2 seperate broadband services when the 2011UAS comes in with backup failover. Total users should peak at 60+.

Back to your GB issue, I agree that it should just work out of the BOX. Not sure about the Auto-Neg issue (just goggle it). My 751G and 750G no issues when connecting to GB Switch. I just checked 2 of my customers RB2011, also no issue when connecting to GB Switches. However I noticed that the GUI is only showing 100MB, while when I use command line, it shows GB with Full Duplex.

Did you know there is a "master port" on the Mikrotik, features where the ports are linked together like a "switch" giving you wire speeds, without any CPU utilization. If the packet is NOT meant for the switch (layer 2), it will pass to router (layer 3). I would suggest "switching" the ports together reducing the CPU usage and getting closer to Wire speed. When you test your throughput, remember to enable the "master port". And if you could, disable it and see what is the difference tongue.gif

And in Mikrotik got Traffic Flow (IP-> Traffic Flow) feature, where it is NetFlow compatible. I think they support V5 and V9 of netflow. What software you use to monitor? I am using PRTG. Is there a better one?
If you want to pinjam my "standby/testing" 751G unit, you can after I install for my customer next week.
*
Your client fortigate, how is the traffic being monitor? As Proxy or Flow-based for the firewall and antivirus? Flow base will be faster, proxy based it will download into the firewall verify than only push to client. This may look slow because it need to download into the firewall before push to client.

It also could be slow due to higher traffic now and that unit cannot handle. How long is that unit running? Check the ram and cpu usage on the gui dashboard.

I found out fortigate using sflow (similar to netflow), will try configure it next week. I was using NetFlow Traffic Analyzer, and Cisco own analyzer. Now that I want free maybe PRTG will do smile.gif

Thanks for the tip on mikrotik, I told my friend on the issue I mention earlier, he is ok to buy and I will help him to setup. So if can't work out will use it for other things.


gahkin
post May 25 2013, 11:51 PM

Enthusiast
*****
Senior Member
733 posts

Joined: Jan 2003
From: Selayang , Kepong


these phone is using correct by our office network, of coz i understand they still can using their data to access these, but i just want to block these when they using our network. any idea ?
zr125
post May 26 2013, 12:05 AM

Enthusiast
*****
Senior Member
780 posts

Joined: Jan 2011
anyone letting go rb750/g? pm me please..
weikee
post May 26 2013, 08:49 AM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
QUOTE(gahkin @ May 25 2013, 11:51 PM)
these phone is using correct by our office network, of coz i understand they still can using their data to access these, but i just want to block these when they using our network. any idea ?
*
You may want to mirror the wifi port and use wireshark to check the pattern and build the filter. Have no knowledge on L7 for mikrotik.
weikee
post May 31 2013, 09:54 AM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
Arrg, upgrade to firmware 3.00, and RouterOS to 5.25 still can't solve the extended / external antenna issue on 751

Now need to try RouterOS 6


TSeric_tan
post Jun 1 2013, 12:30 AM

Getting Started
**
Junior Member
264 posts

Joined: Feb 2005


QUOTE(mintgadget @ May 21 2013, 11:21 PM)
Hmmm... I am running it behind my NAS and I am not getting consistent speed with LACP. Perhaps have something to do with this auto negotiate issue. From the thread you posted, someone mentioned that the problem have not been sorted yet.
*
I have just installed the RB2011UAS and checked all the 5 GB ports using 2 laptops (with GB connection) and finally to a 24 Dlink GB Switch. No issues with auto neg.

I think this is issue only between routers....


digilife
post Jun 1 2013, 12:44 AM

The MNP guy, its me yeah.
*******
Senior Member
8,025 posts

Joined: Feb 2005
From: Planet Boleland


QUOTE(eric_tan @ Jun 1 2013, 12:30 AM)
I have just installed the RB2011UAS and checked all the 5 GB ports using 2 laptops (with GB connection) and finally to a 24 Dlink GB Switch. No issues with auto neg.

I think this is issue only between routers....
*
Do you think it is possible to use usb hub to connect 2 usb modems to combine the internet connection on a RB751-2HnD ?

If yes, what usb hub you recommend and how to issue the command .

Thanks

notworthy.gif


weikee
post Jun 1 2013, 07:56 AM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
After upgrade to ver 6.00, the external antenna support for 751 still not working. Sigh. Really drive me crazy.
weikee
post Jun 1 2013, 07:57 AM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
QUOTE(eric_tan @ Jun 1 2013, 12:30 AM)
I have just installed the RB2011UAS and checked all the 5 GB ports using 2 laptops (with GB connection) and finally to a 24 Dlink GB Switch. No issues with auto neg.

I think this is issue only between routers....
*
Think also depend on chipset. I have few 250g, will give it a try with 2011 my friend pass it to me.
mintgadget
post Jun 1 2013, 10:40 AM

Casual
***
Junior Member
326 posts

Joined: Jun 2008
QUOTE(eric_tan @ Jun 1 2013, 12:30 AM)
I have just installed the RB2011UAS and checked all the 5 GB ports using 2 laptops (with GB connection) and finally to a 24 Dlink GB Switch. No issues with auto neg.

I think this is issue only between routers....
*
The NAS is connected with bonding (802.3ad) to 2 ports and my computer with another 2 of the 5 gigabit ports the rest of my equipment are connected to the lan ports. No issues with auto negotiation just not getting above 100MB/sec speeds from my NAS, in fact is worst than a single connection. Tried all possible settings I can see. Not too sure where is the bottleneck. Any ideas the best way to check.
JinXXX
post Jun 1 2013, 11:20 AM

Look at all my stars!!
*******
Senior Member
2,516 posts

Joined: Feb 2007
From: Uarla Umpur



QUOTE(mintgadget @ Jun 1 2013, 10:40 AM)
The NAS is connected with bonding (802.3ad) to 2 ports and my computer with another 2 of the 5 gigabit ports the rest of my equipment are connected to the lan ports. No issues with auto negotiation just not getting above 100MB/sec speeds from my NAS, in fact is worst than a single connection. Tried all possible settings I can see. Not too sure where is the bottleneck. Any ideas the best way to check.
*
what NAS are you using ?? the bonding configured in the NAS already ?

found this too

http://wiki.mikrotik.com/wiki/Manual:Inter...Bonding#802.3ad

CODE
Note: layer-3-and-4 mode is not fully compatible with LACP.


This post has been edited by JinXXX: Jun 1 2013, 11:21 AM
mintgadget
post Jun 1 2013, 11:35 AM

Casual
***
Junior Member
326 posts

Joined: Jun 2008
QUOTE(JinXXX @ Jun 1 2013, 11:20 AM)
what NAS are you using ?? the bonding configured in the NAS already ?

found this too

http://wiki.mikrotik.com/wiki/Manual:Inter...Bonding#802.3ad

CODE
Note: layer-3-and-4 mode is not fully compatible with LACP.

*
These are the settings on the NAS

Attached Image

and on Mikrotik.

Attached Image

Seems pretty normal to me. Perhaps the bottleneck is on the NICs.



ywkwy
post Jun 1 2013, 11:58 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Dec 2005
can I use RB2011 and plug a SFP tranceriver to totally replace the Fiber modem that come with Unifi/Maxis FTTH?
JinXXX
post Jun 1 2013, 12:07 PM

Look at all my stars!!
*******
Senior Member
2,516 posts

Joined: Feb 2007
From: Uarla Umpur



QUOTE(mintgadget @ Jun 1 2013, 11:35 AM)
These are the settings on the NAS
» Click to show Spoiler - click again to hide... «

Seems pretty normal to me. Perhaps the bottleneck is on the NICs.
*
on the NIC which one ? hmm everything seems alright, although im not too sure never played with bonding before smile.gif

first thing your NAS specification and your RAID deployed, can saturate the gigabit link ??

QUOTE(ywkwy @ Jun 1 2013, 11:58 AM)
can I use RB2011 and plug a SFP tranceriver to totally replace the Fiber modem that come with Unifi/Maxis FTTH?
*
unifi ftth using which mode first ?

This post has been edited by JinXXX: Jun 1 2013, 12:17 PM
weikee
post Jun 1 2013, 01:25 PM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
QUOTE(mintgadget @ Jun 1 2013, 11:35 AM)
These are the settings on the NAS

Attached Image

and on Mikrotik.

Attached Image

Seems pretty normal to me. Perhaps the bottleneck is on the NICs.
*
Look like synology screen.
weikee
post Jun 1 2013, 01:29 PM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
You may want to try get a dummy gigabits switch and try from your nas to workstation see it is better. I did read before the performance of gigabits performance are bad in mikrotik (can't confirm the model), I briefly read it in the mikrotik forum.

My home mikrotik priority is get the external antenna working but this Mikrotik don't work as it claim!!!! Really pain in the azz. maybe I should do what the other did, solder another connector for the internal antenna and extend it.
mintgadget
post Jun 1 2013, 01:49 PM

Casual
***
Junior Member
326 posts

Joined: Jun 2008
Yes it's a Syno box running SHR-1 which is similar to Raid5. Single connection to the box can hit 100MB++/sec easily on this router. Running SSD on my computer so peaking close to advertise 200MB/sec from the NAS should be possible or at least close to it. Unfortunately i do not have any switch that supports 802.3ad. Normal switches can't do the job.
JinXXX
post Jun 1 2013, 03:37 PM

Look at all my stars!!
*******
Senior Member
2,516 posts

Joined: Feb 2007
From: Uarla Umpur



QUOTE(weikee @ Jun 1 2013, 01:29 PM)
You may want to try get a dummy gigabits switch and try from your nas to workstation see it is better. I did read before the performance of gigabits performance are bad in mikrotik (can't confirm the model), I briefly read it in the mikrotik forum.

My home mikrotik priority is get the external antenna working but  this Mikrotik don't work as it claim!!!! Really pain in the azz. maybe I should do what the other did, solder another connector for the internal antenna and extend it.
*
i think this would be the fastest, there is a small connecter inside that is connected to the internal attenna ?

http://www.edccomp.com/converter/323-anten...751u-2hnd-.html


QUOTE(mintgadget @ Jun 1 2013, 01:49 PM)
Yes it's a Syno box running SHR-1 which is similar to Raid5. Single connection to the box can hit 100MB++/sec easily on this router. Running SSD on my computer so peaking close to advertise 200MB/sec from the NAS should be possible or at least close to it. Unfortunately i do not have any switch that supports 802.3ad. Normal switches can't do the job.
*
rb250g can do 802.3ad ?
weikee
post Jun 1 2013, 05:18 PM

10k Club
********
All Stars
12,019 posts

Joined: Jan 2003
QUOTE(JinXXX @ Jun 1 2013, 03:37 PM)
i think this would be the fastest, there is a small connecter inside that is connected to the internal attenna ?

http://www.edccomp.com/converter/323-anten...751u-2hnd-.html
rb250g can do 802.3ad ?
*
Only the build in external connector. And that is not working. I saw how a mikrotik owner did it. Many really pissed with the respond and support they get. This are things they should do it right the first time.

175 Pages « < 34 35 36 37 38 > » Top
 

Change to:
| Lo-Fi Version
0.0160sec    0.16    6 queries    GZIP Disabled
Time is now: 27th November 2025 - 01:00 AM