<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Mikrotik Winbox Access in Wireless Service Providers</title>
<link>http://www.dslreports.com/forum/r17934681</link>
<description></description>
<language>en</language>
<pubDate>Fri, 04 Dec 2009 22:31:36 EDT</pubDate>
<lastBuildDate>Fri, 04 Dec 2009 22:31:36 EDT</lastBuildDate>

<item>
<title>Re: Mikrotik Winbox Access</title>
<link>http://www.dslreports.com/forum/remark,17940115</link>
<description><![CDATA[<A HREF="/useremail/u/717627"><b>khoaled</b></A> : The Mikrotik manual has a section on securing your router.<br><br>&raquo;<A HREF="http://www.mikrotik.com/testdocs/ros/2.9/ip/filter.php" >www.mikrotik.com/testdocs/ros/2.&middot;&middot;&middot;lter.php</A>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,17940115</guid>
<pubDate>Sun, 04 Mar 2007 07:29:24 EDT</pubDate>
</item>

<item>
<title>Re: Mikrotik Winbox Access</title>
<link>http://www.dslreports.com/forum/remark,17935654</link>
<description><![CDATA[<A HREF="/useremail/u/1433542"><b>ibliz</b></A> : Greetings,<br><br>You can set the authorized IP address for each username using  winbox as follows :<br>1. Click Users menu. <br>2. Then on the userlist that appears next, click the user which you'd like to restrict access<br>3. A window with the settings for that username will appear. Notice there is a field named Allowed Address. Enter the authorized address into that field. IP addresses other than the one listed will not be able to log onto the usename.<br><br>Iam sure there is console command for those steps I just discussed, but I cant seem to find it.<br><br>Hope that helps.  ]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,17935654</guid>
<pubDate>Sat, 03 Mar 2007 11:23:31 EDT</pubDate>
</item>

<item>
<title>Re: Mikrotik Winbox Access</title>
<link>http://www.dslreports.com/forum/remark,17934838</link>
<description><![CDATA[<A HREF="/useremail/u/1289925"><b>slipstream1</b></A> : Can you not just set a secure user name and password to prevent unauthorized access.  :D]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,17934838</guid>
<pubDate>Sat, 03 Mar 2007 07:00:17 EDT</pubDate>
</item>

<item>
<title>Re: Mikrotik Winbox Access</title>
<link>http://www.dslreports.com/forum/remark,17934703</link>
<description><![CDATA[<A HREF="/useremail/u/842769"><b>Diddy1</b></A> : Well, after 2.5 hours of messing around, it would appear that there is no way to prevent someone using winbox to log-in to a MT router if they are on same subnet with MAC or Ip. I'm not saying I've explored every option, but I think I have tried every combination of firewall settings that are possible?<br>Interesting to say the least. Anyone know of a way I haven't figured out? This is more of curious "computer science" question I guess :)<br>Aaron]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,17934703</guid>
<pubDate>Sat, 03 Mar 2007 05:03:39 EDT</pubDate>
</item>

<item>
<title>Mikrotik Winbox Access</title>
<link>http://www.dslreports.com/forum/remark,17934681</link>
<description><![CDATA[<A HREF="/useremail/u/842769"><b>Diddy1</b></A> : Can someone with MT experience give me an idea how to prevent access via Winbox from any other Ip other than one authorized address? I've disabled discovery on all interfaces so no MAC discovery. But, if someone on our private subnet were to learn the address of the router, how would one prevent access attempts via winbox? I can turn off all other access methods, to my knowledge. I do know that winbox uses Port 8291 and I have made a firewall to drop, or reject, anything attempting to login via that port on TCP that is not the address of the authorized machine. But unfortunately this doesn't work. <br>Any suggestions?<br>Aaron ]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,17934681</guid>
<pubDate>Sat, 03 Mar 2007 04:32:13 EDT</pubDate>
</item>

</channel>
</rss>
