csltraining mikrotik class 2
TRANSCRIPT
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 1/40
ISP Setup using MikroTik
Class - II
IP/ARP, Proxy ARP, MAC Bindings, DHCP Server,DHCP Client, NTP, User Management
M Abdullah Al Naser B.Sc in CSE
CCNA, RHCE, RHCSA, MTCNA
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 2/40
ARP
2
Even though IP packets are addressed using IPaddresses, hardware addresses must be used toactually transport data from one host toanother. Address Resolution Protocol is used to
map OSI level 3 IP addresses to OSI level 2 MACaddresses. Router has a table of currently usedARP entries. Normally the table is builtdynamically, but to increase network security, it
can be partially or completely built statically bymeans of adding static entries.
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 3/40
ARP Process
3Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 4/40
ARP Properties
4Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 5/40
Verify ARP
5
Note: Maximum number of ARP entries are 8192.
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 6/40
ARP Mode
6
● Enabled
● Disabled
● Reply-Only
● Proxy ARP
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 7/40
ARP Mode
7Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 8/40
ARP Mode
8
● EnabledThis mode is enabled by default on all
interfaces. ARPs will be discovered
automatically and new dynamic entries willbe added to ARP table.
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 9/40
ARP Mode
9
● DisabledIf ARP feature is turned off on the interface, i.e.,
arp=disabled is used, ARP requests from clients are
not answered by the router. Therefore, static arp
entry should be added to the clients as well. For
example, the router's IP and MAC addresses
should be added to the Windows workstations
using the arp command:
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 10/40
ARP Mode
10
●
Reply OnlyIf arp property is set to reply-only on the
interface, then router only replies to ARP
requests. Neighbour MAC addresses will beresolved using /ip arp statically, but there
will be no need to add the router's MAC
address to other hosts' ARP tables like in
case if arp is disabled.
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 11/40
11
ARP Mode
●
Proxy-ARP
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 12/40
Static MAC Address
12Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 13/40
Static MAC Address
13Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 14/40
14
DHCP Server
●The Dynamic Host Confirmation Protocol
(DHCP) service enables devices on a network to
obtain IP addresses and other information from
a DHCP server. This service automates the
assignment of IP addresses, subnet masks,gateway and other IP networking parameters.
● In order for the DHCP server to work, IP pools
must also be configured (do not include theDHCP server's own IP address into the pool
range) and the DHCP networks.
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 15/40
15
DHCP Server
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 16/40
16
DHCP Server
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 17/40
17
DHCP Server
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 18/40
18
DHCP Server
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 19/40
19
DHCP Server
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 20/40
20
DHCP Server
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 21/40
21
Verify DHCP Lease
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 22/40
22
Static DHCP Lease
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 23/40
23
Static DHCP Lease
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 24/40
24
Customize IP Pool
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 25/40
25
Add IP Pool
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 26/40
26
Add IP Pool
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 27/40
27
Verify Used IP from Pool
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 28/40
28
DHCP Client
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 29/40
29
DHCP Client
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 30/40
30
Time and Date
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 31/40
31
Change Time and Date
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 32/40
32
NTP Client
Why NTP?
● To get correct time on router.
● To get time for routers has no internalmemory to save clock time.
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 33/40
33
NTP Client
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 34/40
34
User and Group
● MikroTik’s default username is admin with no
password.
● There are three different groups with different
permission level. The groups are:
1. Full2. Read
3. Write
Username, password and Group can be added,
removed or changed as per requirements
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 35/40
35
User and Group (Change Password)
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 36/40
36
User and Group (Change Password)
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 37/40
37
User and Group (Add New User)
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 38/40
38
User and Group (Add New User)
Prepared by- M Abdullah Al Naser ([email protected])
7/23/2019 CSLtraining MikroTik Class 2
http://slidepdf.com/reader/full/csltraining-mikrotik-class-2 39/40
39
User and Group (Verify Group)
Prepared by- M Abdullah Al Naser ([email protected])