Basic Security Checklist in RouterOS

Sdílet
Vložit
  • čas přidán 5. 07. 2024
  • Apart from firewall filters and configurations, there are a number basic but absolutely crucial measures you need to observe in order to ensure the security of your hardware and the integrity of its network. In this video, we will go over this checklist one by one and make sure you keep these vulnerabilities in check.
  • Věda a technologie

Komentáře • 13

  • @Quick-IT
    @Quick-IT Před rokem +2

    Thanks , great videos, Today i have completed all playlist videos . and waiting for new videos .

    • @MikroTikCanada
      @MikroTikCanada  Před rokem

      Dear Quick-IT,
      Many thanks for your comment and kind words! We’re so glad you’ve enjoyed them! Stay tuned, we have more coming!

    • @MikroTikCanada
      @MikroTikCanada  Před rokem

      That's a fantastic attitude, and it's great to see you embracing learning and growth in the world of networking and RouterOS. Practicing what you've learned and applying concepts to real-life projects will undoubtedly help you gain a deeper understanding and mastery of the subject matter.
      As you await new videos, exploring other resources and channels will help broaden your knowledge. Engaging in online forums, reading recent RouterOS changelogs, and participating in configuration challenges related to RouterOS v7 will further develop your skills and keep you current on updates and changes.
      Remember to subscribe to the CZcams channel and enable notifications to stay informed about new video uploads. Meanwhile, if you have any questions or need clarification on any topic, feel free to ask. We're here to support you on your learning journey. Happy networking!

  • @fabiankaczor3052
    @fabiankaczor3052 Před rokem +1

    Thx for all video they are gr8 ;)

  • @ABAMSYTEL
    @ABAMSYTEL Před rokem +1

    Great video! Tks!

  • @mohamadnor3074
    @mohamadnor3074 Před rokem +1

  • @hit-757
    @hit-757 Před 4 měsíci +1

    1. Is there a point of blocking invalid state packets with dedicated rule (besides of having a counter) if the next rule drops everything anyway?
    2. Wouldn't be better to accept "established+related" in the first rule in both chains for performance reasons?

    • @MikroTikCanada
      @MikroTikCanada  Před 4 měsíci +1

      Thank you for your insightful question. Our current training is centered on laying a solid foundation in the fundamentals of MikroTik RouterOS, particularly for first-time users or those who are not yet fully acquainted with MikroTik RouterOS and its new interfaces. Our goal is to ensure that participants grasp all the basic networking concepts within RouterOS at an introductory level. While we understand the importance and relevance of your question, this session is not tailored to delve into such specific and advanced topics. However, we are looking forward to exploring these more detailed and complex concepts in future sessions. Your interest and concerns are greatly appreciated, and they help us shape our upcoming content. Thank you for sharing your thoughts with us.

  • @GokhanKaya
    @GokhanKaya Před rokem +1

    Thank you great checklist! FYI: Unchecking/Disabling "Allow Remote Requests" under DNS Settings broke my DNS resolving feature and I could not longer surf the Internet. I had to turn it on to make things work. Not sure why.

    • @MikroTikCanada
      @MikroTikCanada  Před rokem +3

      When you disable the "Allow Remote Requests" option on a MikroTik router, the DNS server in your network may stop functioning properly. To resolve this issue, you can consider the following two options:
      1. Modify the default DNS configuration in your network by navigating to IP > DHCP Server > Networks. Edit the existing network and replace the default DNS settings with a public DNS server, such as 1.1.1.1, 8.8.8.8, or 4.2.2.4. After making this change, release and renew your device's IP configuration to obtain a new IP address from your DHCP server.
      2. Or assign static DNS configurations to all active devices within your network.
      Switching your MikroTik router's DNS server functionality to a public DNS server may increase network latency. However, you don't need to worry about missing firewall rules or security issues. Firewall configurations from previous sessions can secure your router even when "Allow Remote Requests" is enabled, so there's no need to be concerned about this feature.

    • @GokhanKaya
      @GokhanKaya Před rokem

      @@MikroTikCanada Thank you, very clear guidance, appreciated! One hesitation: I have an ad-blocker within LAN and plan to be using it as default DNS resolver. So if I understand the concepts correctly, I can just enter my network ad-blocker's IP address as DNS Server in MikroTik and point the ad-blocker to public DNS server and that shouldn't be an issue.

    • @seedofchaoss
      @seedofchaoss Před rokem

      @@GokhanKaya did it worked if you tried it , and are you talking about something like pi-hole ?

    • @GokhanKaya
      @GokhanKaya Před rokem

      @@seedofchaoss yes, I have a pi-hole and it works fine now. Thanks for checking!