U směrovače MikroTik RB941-2ND-TC u kterého jsem aktualizoval RouterOS na nejnovější verzi 6.43.2 a současně aktualizoval i Firmware na aktuální verzi 3.24, nejde z terminálu ping na jakoukoliv internetovou doménu stejně tak ani tracerout z tohoto důvodu se MikroTik nespojí ani s NTP srverem a nenastaví čas. Na PC internet jede ping s CMD na jakoukoliv doménu jde stejně tak tracerout. Níže konfigurace:
Rozhraní ether1=WAN, ether2=LAN
> ip address print
Flags: X - disabled, I - invalid, D - dynamic
# ADDRESS NETWORK INTERFACE
0 ;;; defconf
192.168.88.1/24 192.168.88.0 ether2
1 D 10.111.252.70/26 10.111.252.64 ether1
Nastavení DHCP Serveru
/ip dhcp-server> print
Flags: D - dynamic, X - disabled, I - invalid
# NAME INTERFACE RELAY ADDRESS-POOL LEASE-TIME ADD-ARP
0 defconf bridge dhcp 10m
Nastavení DHCP Clienta
> ip dhcp-client print
Flags: X - disabled, I - invalid, D - dynamic
# INTERFACE USE-PEER-DNS ADD-DEFAULT-ROUTE STATUS ADDRESS
0 ether1 yes yes bound 10.111.252.70/26
Lokální síť které DHCP server přiděluje IP adresy
/ip dhcp-server network> print
Flags: D - dynamic
# ADDRESS GATEWAY DNS-SERVER WINS-SERVER DOMAIN
0 ;;; defconf
192.168.88.0/24 192.168.88.1 8.8.8.8,8.8.4.4
DNS server
/ip dns> print
servers: 8.8.8.8,8.8.4.4
dynamic-servers: 82.99.136.18,8.8.8.8
allow-remote-requests: yes
max-udp-packet-size: 4096
query-server-timeout: 2s
query-total-timeout: 10s
max-concurrent-queries: 100
max-concurrent-tcp-sessions: 20
cache-size: 2048KiB
cache-max-ttl: 1w
cache-used: 14KiB
NAT maškaráda
/ip firewall nat> print
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; defconf: masquerade
chain=srcnat action=masquerade src-address=192.168.88.100-192.168.88.105 log=no log-prefix="" ipsec-policy=out,ipsec
DHCP pool
/ip pool> print
# NAME RANGES
0 dhcp 192.168.88.100-192.168.88.105
Nastavení Rout
/ip route> print
Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, B - blackhole, U - unreachable, P - prohibit
# DST-ADDRESS PREF-SRC GATEWAY DISTANCE
0 ADS 0.0.0.0/0 10.111.252.65 1
1 ADC 10.111.252.64/26 10.111.252.70 ether1 0
2 ADC 192.168.88.0/24 192.168.88.1 bridge 0
Upřednostňované NTP servery
/system ntp client> print
enabled: yes
primary-ntp: 217.31.202.100
secondary-ntp: 195.113.144.201
server-dns-names:
mode: unicast
dynamic-servers: 212.158.154.90
poll-interval: 16s
active-server: 212.158.154.90
Adress list firewall
/ip firewall address-list> print
Flags: X - disabled, D - dynamic
# LIST ADDRESS CREATION-TIME TIMEOUT
0 ntp.nic.cz 217.31.202.100 jan/02/1970 13
1 tik.cesnet.cz 195.113.144.201 jan/02/1970 13
Mikrotik ping google.com
> ping google.com
invalid value for argument address:
invalid value of mac-address, mac address required
invalid value for argument ipv6-address
while resolving ip-address: could not get answer from dns server
Mikrotik traceroute google.com
> tool traceroute google.com
invalid value for argument address:
invalid value for argument ip-address
invalid value for argument ipv6-address
while resolving ip-address: could not get answer from dns server
Mikrotik ping 172.217.23.206
> ping 172.217.23.206
SEQ HOST SIZE TTL TIME STATUS
0 172.217.23.206 timeout
1 packet rejected
2 packet rejected
3 packet rejected
4 packet rejected
Mikrotik traceroute 172.217.23.206
> tool traceroute 172.217.23.206
# ADDRESS LOSS SENT LAST AVG BEST WORST STD-DEV STATUS
1 100% 3 timeout
2 100% 3 timeout
3 100% 3 timeout
4 100% 3 timeout
5 100% 2 timeout
--