Микротик сеть есть интернета нет

Микротик сеть есть интернета нет

Обнаружена блокировка рекламы: Наш сайт существует благодаря показу онлайн-рекламы нашим посетителям. Пожалуйста, подумайте о поддержке нас, отключив блокировщик рекламы на нашем веб-сайте.

Нет Интернета внутри локалки. От слова «совсем».

Подскажите, пожалуйста, где и в каком месте мне надо поправить руки.
Имеется следующее:
RB1100AHx4, Интернет получаем от провайдера, подключение статическое.

Первый порт назначил «наружу» (Port1WAN1), второй резервный под второй канал Интернета от другого провайдера (в данный момент не используется).
Порты второй группы объединил в свитч. Port6LAN1 — master port.
Port7LAN2, Port8LAN3, Port9LAN4 — slave для Port6LAN1.
Всё по инструкции: сделал bridge по имени LAN, указал там Port6LAN1.
По той же инструкции указал правило для NAT (masquerade) и правила Firewall (забегая вперёд: позже их делал неактивными и удалял, но это ни на что не влияло).

Интернет на интерфейсе WAN1 есть, Гугл пингуется.
В локалке Интернета нет.
DHCP поднят на ядре внутри локалки, но я подключался непосредственно к Mikrotik ноутом с прописанным статическим адресом.

Конфигурацию прилагаю:
# jun/24/2018 21:01:42 by RouterOS 6.38.4
# software > #
/interface bridge
add name=LAN
/interface ethernet
set [ find default-name=ether1 ] comment=WAN name=Port1WAN1
set [ find default-name=ether2 ] name=Port2WAN2
set [ find default-name=ether6 ] comment=LAN name=Port6LAN1
set [ find default-name=ether7 ] master-port=Port6LAN1 name=Port7LAN2
set [ find default-name=ether8 ] master-port=Port6LAN1 name=Port8LAN3
set [ find default-name=ether9 ] master-port=Port6LAN1 name=Port9LAN4
/interface list
add name=BridgeLAN
/interface bridge port
add bridge=LAN interface=Port6LAN1
/ip address
add address=6.202.62.34/30 comment=»External IP» interface=Port1WAN1 network=\
6.202.62.32
add address=172.16.100.254/24 comment=»Internal IP» interface=Port6LAN1 \
network=172.16.100.0
/ip dns
set allow-remote-requests=yes servers=8.8.8.8,8.8.4.4,6.202.62.33
/ip firewall filter
add action=accept chain=input connection-state=established in-interface=\
Port1WAN1
add action=accept chain=input connection-state=related in-interface=Port1WAN1
add action=drop chain=input in-interface=Port1WAN1
add action=jump chain=forward in-interface=Port1WAN1 jump-target=customer
add action=accept chain=customer connection-state=established
add action=accept chain=customer connection-state=related
add action=drop chain=customer
/ip firewall nat
add action=masquerade chain=srcnat out-interface=Port1WAN1
/ip route
add comment=Gateway distance=1 gateway=6.202.62.33
/ip upnp interfaces
add interface=Port1WAN1 type=external
add interface=Port2WAN2 type=internal
add interface=Port6LAN1 type=internal
add interface=Port7LAN2 type=internal
add interface=Port8LAN3 type=internal
add interface=Port9LAN4 type=internal
add interface=LAN type=internal
/system clock
set time-zone-name=Europe/Moscow

Читайте также:  Zyxel нет интернета через wifi

Где и что я делаю не так?
Заранее большое спасибо за любые ответы.

Источник

Микротик сеть есть интернета нет

can someone please enlighten me why i have no internet over LAN.
but connecting to internet via WLAN (wifi), i have no problem at all.

Image

connecting to ether3 or ether4 has no luck connecting to internet

# dec/23/2016 23:37:02 by RouterOS 6.37.3 # software bridge add auto-mac=no mtu=1500 name=Local-Bridge /interface ethernet set [ find default-name=ether1 ] name=WAN1 set [ find default-name=ether2 ] name=WAN2 /interface wireless security-profiles add authentication-types=wpa2-psk eap-methods="" group-ciphers=tkip,aes-ccm \ management-protection=allowed mode=dynamic-keys name=wlan_password \ supplicant-identity="" unicast-ciphers=tkip,aes-ccm wpa2-pre-shared-key=\ f1e2d3c4b5a6 add authentication-types=wpa2-psk eap-methods="" management-protection=\ allowed mode=dynamic-keys name=newpass supplicant-identity="" \ wpa2-pre-shared-key=f1e2d3c4b5a6 /interface wireless set [ find default-name=wlan1 ] disabled=no mode=ap-bridge security-profile=\ newpass ssid=bahay_only wireless-protocol=802.11 /ip pool add name=Local-Pool ranges=192.168.50.11-192.168.50.199 add name=ether3_Pool ranges=192.168.75.101-192.168.75.150 /ip dhcp-server add address-pool=Local-Pool disabled=no interface=Local-Bridge lease-time=3d \ name=LAN-DHCP add address-pool=ether3_Pool disabled=no interface=ether3 lease-time=3d name=\ ether3_dhcp /queue simple add dst=WAN1 limit-at=1M/10M max-limit=1M/10M name=WLAN_limit target=\ Local-Bridge /queue tree add disabled=yes name=wlan parent=wlan1 /interface bridge port add bridge=Local-Bridge interface=wlan1 add bridge=Local-Bridge interface=ether4 /ip address add address=192.168.0.20/24 interface=WAN1 network=192.168.0.0 add address=192.168.1.2/24 disabled=yes interface=WAN2 network=192.168.1.0 add address=192.168.50.100/24 interface=Local-Bridge network=192.168.50.0 add address=192.168.75.100/24 interface=ether3 network=192.168.75.0 /ip dhcp-client add add-default-route=no dhcp-options=hostname,clientid interface=WAN1 \ use-peer-dns=no use-peer-ntp=no /ip dhcp-server network add address=192.168.50.0/24 gateway=192.168.50.100 add address=192.168.75.0/24 dns-server=8.8.8.8 gateway=192.168.75.100 /ip dns set allow-remote-requests=yes servers=8.8.8.8,8.8.4.4 /ip firewall filter add action=drop chain=forward connection-state=invalid disabled=yes add action=accept chain=forward connection-state=new in-interface=\ Local-Bridge add action=accept chain=forward comment="forward - established" \ connection-state=established add action=accept chain=forward comment="forward - related" connection-state=\ related add action=accept chain=forward connection-state=new in-interface=ether3 add action=accept chain=forward disabled=yes /ip firewall mangle add action=mark-connection chain=input disabled=yes in-interface=WAN1 \ new-connection-mark=WAN1 passthrough=yes add action=mark-connection chain=input disabled=yes in-interface=WAN2 \ new-connection-mark=WAN2 passthrough=yes add action=mark-routing chain=output connection-mark=WAN1 disabled=yes \ new-routing-mark=to_WAN1 passthrough=yes add action=mark-routing chain=output connection-mark=WAN2 disabled=yes \ new-routing-mark=to_WAN2 passthrough=yes /ip firewall nat add action=masquerade chain=srcnat out-interface=WAN1 /ip route add distance=1 gateway=192.168.0.1 routing-mark=to_WAN1 add disabled=yes distance=2 gateway=192.168.1.1 routing-mark=to_WAN2 add check-gateway=ping distance=1 gateway=192.168.0.1 add check-gateway=ping disabled=yes distance=1 gateway=192.168.0.1 /system clock set time-zone-name=Asia/Manila /system routerboard settings set cpu-frequency=650MHz protected-routerboot=disabled 

Источник

Микротик сеть есть интернета нет

Greetings Friends.
I used to have a DSL Tplink router (for PPPoE connection). I replaced it with RB951Ui-2HnD
I’m stuck with making a simple PPPoE Client connection. Is it possible that my ISP is blocking cloned MAC (from Tplink).
Though The PPPoE Connection is established and able to ping the gateway from router and computer.
I cannot ping 8.8.8.8 from router or computer.
My configuration is listed below.

Читайте также:  Плохой интернет настройки роутера

Image

Image

[admin@MikroTik] > ip firewall nat print
Flags: X — disabled, I — invalid, D — dynamic
0 chain=srcnat action=masquerade out-interface=pppoe-out1

[admin@MikroTik] > ip address print
Flags: X — disabled, I — invalid, D — dynamic
# ADDRESS NETWORK INTERFACE
0 192.168.4.1/24 192.168.4.0 e4-LAN
1 D 182.50.xx.yy/32 182.50.67.xx pppoe-out1
2 D 10.115.99.22/24 10.115.99.0 e3-DSL

[admin@MikroTik] > ip route print
Flags: X — disabled, A — active, D — dynamic,
C — connect, S — static, r — rip, b — bgp, o — ospf, m — mme,
B — blackhole, U — unreachable, P — prohibit
# DST-ADDRESS PREF-SRC GATEWAY DISTANCE
0 ADS 0.0.0.0/0 10.115.99.1 0
1 DS 0.0.0.0/0 182.50.67.xxx 1
2 ADC 10.115.99.0/24 10.115.99.22 e3-DSL 0
3 ADC 182.50.xx.yy/32 182.50.67.xx pppoe-out1 0
4 ADC 192.168.4.0/24 192.168.4.1 e4-LAN 0

[admin@MikroTik] > ping 182.50.67.xxx
HOST SIZE TTL TIME STATUS
182.50.67.xxx 56 64 8ms
182.50.67.xxx 56 64 6ms
182.50.67.xxx 56 64 9ms
182.50.67.xxx 56 64 3ms
182.50.67.xxx 56 64 8ms
sent=5 received=5 packet-loss=0% min-rtt=3ms avg-rtt=6ms max-rtt=9ms

admin@MikroTik] > ping 8.8.8.8
HOST SIZE TTL TIME STATUS
8.8.8.8 timeout
8.8.8.8 timeout
8.8.8.8 timeout
8.8.8.8 timeout
8.8.8.8 timeout
sent=5 received=0 packet-loss=100%

Re: PPPoE Client connected but no internet

[admin@MikroTik] > ip route print Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, B - blackhole, U - unreachable, P - prohibit # DST-ADDRESS PREF-SRC GATEWAY DISTANCE 0 ADS 0.0.0.0/0 10.115.99.1 0 

There's your problem. Your connection on e3-DSL is getting a better default route than the pppoe interface is.
Note the distance = 0 on the dsl, and 1 on the pppoe.
(lowest distance is the tie-breaker)

To fix it, go into your dhcp-client configured for e3-DSL, and where it's configured to use the default gateway there, change the distance from 0 to 2 or higher. (but lower than 255, which is "unreachable")

That will fix the routing issue.

The thing that really should catch your eye when looking at this is not the distance, but the lack of the 'A' flag (active) on the route that you wanted to be the default route.

Re: PPPoE Client connected but no internet

Image

As per the Doctor's Instruction.
I changed the settings ZeroByte mentioned.
It worked like a charm.

One thing i'm concerned is, if i have to make the same type of DSL PPPoE connection at my friends apartment then do i have to do it the same changes manually. i.e. Changing the "Default Route Distance = x"
or there is a process if you create the interface first than you will get the proper default route distance.
It worked but i just want to know how to do it so that i can understand better.
Thanks ZeroByte

Re: PPPoE Client connected but no internet

One thing i'm concerned is, if i have to make the same type of DSL PPPoE connection at my friends apartment then do i have to do it the same changes manually. i.e. Changing the "Default Route Distance = x"
or there is a process if you create the interface first than you will get the proper default route distance.
It worked but i just want to know how to do it so that i can understand better.
Thanks ZeroByte

Well, 0 is the default distance for a default gw from DHCP and 1 is the default for pppoe. This is just normal.
It's a bit unusual to intentionally configure dhcp and pppoe client at the same time on the same interface, though.
That's why you got the unusual behavior. If the dhcp is there just to get a management address to reach the DSL modem or something, then you could just un-check the "use default gateway" setting on the dhcp client and then it will not try to become your internet connection - it will just obtain an address.

Re: PPPoE Client connected but no internet

Well, 0 is the default distance for a default gw from DHCP and 1 is the default for pppoe. This is just normal.
It's a bit unusual to intentionally configure dhcp and pppoe client at the same time on the same interface, though.
That's why you got the unusual behavior. If the dhcp is there just to get a management address to reach the DSL modem or something, then you could just un-check the "use default gateway" setting on the dhcp client and then it will not try to become your internet connection - it will just obtain an address.

Wow. Now i can see the clear blue sky.
Thanks a ton for blowing off the clouds..
I don't know when i will reach people like your's level of expertise
Many Thanks Friend

Источник

Оцените статью
Adblock
detector