is it necessary to specify the connection type of established and related for the fasttrack in order to be safe ?
@Bravin_Joshua2 жыл бұрын
hey your solution works pretty well but my concern is the allocated speeds I was to use does it bypass my capped speeds?
@chuyanzmytv34885 жыл бұрын
can u teach me how to add for the queque tree you used.
@elias1995ish4 жыл бұрын
hey man, thanks for the videos! Does this also bypass the queues for bandwidth? let's say I have an X device with an IP 192.168.1.124 and set a simple queue to only use 2mbps does this intervene or not?
@teamturad53845 жыл бұрын
Does it affect the config bandwidth of a router?
@Mi_Fa_Volare4 жыл бұрын
Can I specify it for certain MAC adressess?
@Anavllama3 жыл бұрын
Hmm, I typically have to allow access to router DNS services on the input chain, are you saying this is only valid for DNS direct to external sources or for router DNS Services as well??
@jeremymaravilla66853 жыл бұрын
Hi there, i'm having a problem when i try to watch live show on facebook it always buff and sometimes disconnect me from the streamer while when i'm connected to the main internet (not in mikrotek) i can watch it smoothly
@Martin-ot7xj4 жыл бұрын
Hi there, how we can set 2 wan on microtik, for example, we have 2 wan or 2 internet connection and we want to set it up these 2 internet connections on microtik, if 1 connection drop or stop working we have get Internet from secend wan or internet connection?
@joes39893 жыл бұрын
Can you use the same Filter Rule -> FastTrack for ICMP packets? Or is this better done using Mangle Rules? ... Amazing videos by the way! Greetings from UK!
@afdevs30543 жыл бұрын
That Was Awesome Dear
@boooozeed5 жыл бұрын
Do you have a solution for DNS cache poisoning?
@paulturner94442 жыл бұрын
Hello. If I have set up load balancing for two WANs, will I still be able to set up this fasttracking for DNS or any other fasttracking?
@johnbuchanan97002 жыл бұрын
Great videos, thank you. Can you upload a video on connecting a MikroTik SXT LTE through a hAP AC2 router? Configuration of LTE 4G and so on?
@SimonJMudd4 жыл бұрын
If it is faster I would like to know by how much. That is do a test before and after to various sites and provide the DNS lookup timings so we can see how much difference this makes. Also if it makes so much difference it would suggest the router is under a lot of load which might imply upgrading to better hardware. As mentioned running a local DNS server or configuring the DNS lookups to be done via the Mikrotik router where they will be cached would probably also help here.
@Mi_Fa_Volare2 жыл бұрын
Does it work with packet marks when I have defconf fasttrack rule on?
@user-tr8mc9kn8c4 жыл бұрын
Thanks sir for your useful information but.. can I just be helped with my issue I got stuck with . Well actually I did exactly what was mentioned there but it exceeds user transfer limit .and I do not want that to happen I need to limit them was they are configured in user_manager ..one point here to add is that time limit is ok ..but transfer limit is just free although I limited them perfectly. Thank you again and hopefully you get my point right.
@mesjidjamek5 жыл бұрын
can u help me setting my mikrotik?
@liaqatsultani9615 жыл бұрын
thank you very much to share quit useful training i hope you share a video - how to configure BGP and set ASN on Mikrotik router CCR720
@eidzmerpigcaulan66643 жыл бұрын
hello sir.. is this good for hotspot users?
@Elrevisor2k3 жыл бұрын
What about DNS cache?
@Leath20075 жыл бұрын
tnx so much
@andreadicioccio6658 Жыл бұрын
I don't have "queue tree"...how to set?
@yamenhemo78835 жыл бұрын
But maybe it will proceed hotspot accounting
@Slawall5 жыл бұрын
Looks, that the resolving of the addresses is really faster, but is it really safe? Isn't it security break?
@kqabro3 жыл бұрын
Thanks It worked
@esantos9995 жыл бұрын
Can you leave both fasttrack rules at the bottom or is it better to move them up to the beginning for faster firewall processing?
@EdVelez
5 жыл бұрын
I dont know that it makes a difference. I am seeing UDP packets even though its at the bottom of the list past my drop actions which usually are the last thing you enter.
@jefftee448
5 жыл бұрын
I was going to ask the same question. Especially considering its a firewall rule, I believe it should be on top
@TrivuzOfficial3 жыл бұрын
why the port is 53?
@niceguy235uk14 жыл бұрын
Does this rule bypass the internal DNS cache?
@foadysfah
2 жыл бұрын
It seems so unfortunately… I cleared my DNS cache after adding these 2 rules, and no more entries were being added to the cache after this. So, in my opinion this is not worth it since you’re always piling the server instead of the router’s cache!
@zanstkalkany20235 ай бұрын
i did that and worked for a few days, speed almost doubled but now its back to normal like before... any explanation?
@Martin-ot7xj4 жыл бұрын
Hi there, it was very useful and interesting video tutorial video. Thnx. Keep it up
@user-gw9co7mk5v Жыл бұрын
Perfect
@screenieman3 жыл бұрын
awesome
@Al3k5and3r5 жыл бұрын
is it safe? router can be attacked with 53 port (dns flood also). with fasttrack any firewall rule for unexpected/unrelated traffic (on 53 port) will not be working. Router is not safe.
@Al3k5and3r
5 жыл бұрын
@@orgind7778 Ну есть и интересные у него идеи, но это полный треш. Это урок как из микротика сделать TP-Link ))
@Dr.AnonymousPro
4 жыл бұрын
If you're not running a dns server, which in this video is not the case, there's nothing dangerous with having the port be fasttracked. The *destination* port is not inwardly available. Nothing is listening on it, besides, there's also a NAT masquerading all internal addressing.
@zakirhossain37034 жыл бұрын
* Thanks. ...
@Mohammed.Burhan.Mohammed5 жыл бұрын
Thanks alot
@paulkwameacquah72305 жыл бұрын
Any security issue with this rule? and is there any workaround ?/
@TKSJa
5 жыл бұрын
None that I know of.
@rodneyyeo77443 жыл бұрын
DNS is only tiny bits of information so not much to gain by fasttracking it. It are responses to your resolve requests and so statefull. Fasttrack should inspect the first package and time to time also packages in the stream. DNS exists in one or two packets returning so Fasttracking those is useless. Looking from your side it is also useless to fasttrack this traffic.
@pencuriinshaf8822
Жыл бұрын
well, I think you are right about this, do u have another way to make internet fast on mikrotik?
@iahmedelbarbary3 жыл бұрын
are these rules work on CHR? , mikrotik says that CHR Doesn't support fasttrack ?
@TKSJa
3 жыл бұрын
No they don't
@TITORANNY3 жыл бұрын
Hi sir! I'm newbie in mikrotik world. May I know if there is a way to bypass or improve my internet line connection which is under cgnat? My area is pretty congested thats why time to time my internet is getting slower and slower. Thanks in advance.
@TKSJa
3 жыл бұрын
If your ISP is congested then there is no way for you to bypass it.
@TITORANNY
3 жыл бұрын
@@TKSJa Hi again sir. I suspected that my isp is throttling my internet connection speed. Is there another way aside using vpn?
@TKSJa
3 жыл бұрын
@@TITORANNY I don't think so
@KenpachiZakachi-pl9pl Жыл бұрын
For me it doesn't show on que trees
@moetarded77572 жыл бұрын
I wish I had more thumbs
@manoyensoy3824 жыл бұрын
where did 53 came from sir...im sorry im studying im not really good for this
@KwikDELACRUZ
4 жыл бұрын
same question here
@Dr.AnonymousPro
4 жыл бұрын
Look up "DNS ports" in Google.
@matej_stepan2 жыл бұрын
This won't make a significant difference. You have to FastTrack all traffic in forward chain.
@frankmunoz89185 жыл бұрын
friend, you can make a script to free the memory of the routerboard, I thank you.
Пікірлер: 63
is it necessary to specify the connection type of established and related for the fasttrack in order to be safe ?
hey your solution works pretty well but my concern is the allocated speeds I was to use does it bypass my capped speeds?
can u teach me how to add for the queque tree you used.
hey man, thanks for the videos! Does this also bypass the queues for bandwidth? let's say I have an X device with an IP 192.168.1.124 and set a simple queue to only use 2mbps does this intervene or not?
Does it affect the config bandwidth of a router?
Can I specify it for certain MAC adressess?
Hmm, I typically have to allow access to router DNS services on the input chain, are you saying this is only valid for DNS direct to external sources or for router DNS Services as well??
Hi there, i'm having a problem when i try to watch live show on facebook it always buff and sometimes disconnect me from the streamer while when i'm connected to the main internet (not in mikrotek) i can watch it smoothly
Hi there, how we can set 2 wan on microtik, for example, we have 2 wan or 2 internet connection and we want to set it up these 2 internet connections on microtik, if 1 connection drop or stop working we have get Internet from secend wan or internet connection?
Can you use the same Filter Rule -> FastTrack for ICMP packets? Or is this better done using Mangle Rules? ... Amazing videos by the way! Greetings from UK!
That Was Awesome Dear
Do you have a solution for DNS cache poisoning?
Hello. If I have set up load balancing for two WANs, will I still be able to set up this fasttracking for DNS or any other fasttracking?
Great videos, thank you. Can you upload a video on connecting a MikroTik SXT LTE through a hAP AC2 router? Configuration of LTE 4G and so on?
If it is faster I would like to know by how much. That is do a test before and after to various sites and provide the DNS lookup timings so we can see how much difference this makes. Also if it makes so much difference it would suggest the router is under a lot of load which might imply upgrading to better hardware. As mentioned running a local DNS server or configuring the DNS lookups to be done via the Mikrotik router where they will be cached would probably also help here.
Does it work with packet marks when I have defconf fasttrack rule on?
Thanks sir for your useful information but.. can I just be helped with my issue I got stuck with . Well actually I did exactly what was mentioned there but it exceeds user transfer limit .and I do not want that to happen I need to limit them was they are configured in user_manager ..one point here to add is that time limit is ok ..but transfer limit is just free although I limited them perfectly. Thank you again and hopefully you get my point right.
can u help me setting my mikrotik?
thank you very much to share quit useful training i hope you share a video - how to configure BGP and set ASN on Mikrotik router CCR720
hello sir.. is this good for hotspot users?
What about DNS cache?
tnx so much
I don't have "queue tree"...how to set?
But maybe it will proceed hotspot accounting
Looks, that the resolving of the addresses is really faster, but is it really safe? Isn't it security break?
Thanks It worked
Can you leave both fasttrack rules at the bottom or is it better to move them up to the beginning for faster firewall processing?
@EdVelez
5 жыл бұрын
I dont know that it makes a difference. I am seeing UDP packets even though its at the bottom of the list past my drop actions which usually are the last thing you enter.
@jefftee448
5 жыл бұрын
I was going to ask the same question. Especially considering its a firewall rule, I believe it should be on top
why the port is 53?
Does this rule bypass the internal DNS cache?
@foadysfah
2 жыл бұрын
It seems so unfortunately… I cleared my DNS cache after adding these 2 rules, and no more entries were being added to the cache after this. So, in my opinion this is not worth it since you’re always piling the server instead of the router’s cache!
i did that and worked for a few days, speed almost doubled but now its back to normal like before... any explanation?
Hi there, it was very useful and interesting video tutorial video. Thnx. Keep it up
Perfect
awesome
is it safe? router can be attacked with 53 port (dns flood also). with fasttrack any firewall rule for unexpected/unrelated traffic (on 53 port) will not be working. Router is not safe.
@Al3k5and3r
5 жыл бұрын
@@orgind7778 Ну есть и интересные у него идеи, но это полный треш. Это урок как из микротика сделать TP-Link ))
@Dr.AnonymousPro
4 жыл бұрын
If you're not running a dns server, which in this video is not the case, there's nothing dangerous with having the port be fasttracked. The *destination* port is not inwardly available. Nothing is listening on it, besides, there's also a NAT masquerading all internal addressing.
* Thanks. ...
Thanks alot
Any security issue with this rule? and is there any workaround ?/
@TKSJa
5 жыл бұрын
None that I know of.
DNS is only tiny bits of information so not much to gain by fasttracking it. It are responses to your resolve requests and so statefull. Fasttrack should inspect the first package and time to time also packages in the stream. DNS exists in one or two packets returning so Fasttracking those is useless. Looking from your side it is also useless to fasttrack this traffic.
@pencuriinshaf8822
Жыл бұрын
well, I think you are right about this, do u have another way to make internet fast on mikrotik?
are these rules work on CHR? , mikrotik says that CHR Doesn't support fasttrack ?
@TKSJa
3 жыл бұрын
No they don't
Hi sir! I'm newbie in mikrotik world. May I know if there is a way to bypass or improve my internet line connection which is under cgnat? My area is pretty congested thats why time to time my internet is getting slower and slower. Thanks in advance.
@TKSJa
3 жыл бұрын
If your ISP is congested then there is no way for you to bypass it.
@TITORANNY
3 жыл бұрын
@@TKSJa Hi again sir. I suspected that my isp is throttling my internet connection speed. Is there another way aside using vpn?
@TKSJa
3 жыл бұрын
@@TITORANNY I don't think so
For me it doesn't show on que trees
I wish I had more thumbs
where did 53 came from sir...im sorry im studying im not really good for this
@KwikDELACRUZ
4 жыл бұрын
same question here
@Dr.AnonymousPro
4 жыл бұрын
Look up "DNS ports" in Google.
This won't make a significant difference. You have to FastTrack all traffic in forward chain.
friend, you can make a script to free the memory of the routerboard, I thank you.
Your making the router vulnerable for dns attack.
am still waiting free radius
@ccesarpenate
5 жыл бұрын
Yep, me too!
@qammars1977
5 жыл бұрын
go for SAS Radius 100% free upto 100 clients.
انها خدعه ياشباب لا تصدقوه