Re: [Mikrotik Users] RB2011UiAS Performance Tuning

2019-07-11 Thread Dennis Burgess via Mikrotik-users
So you using 1,5 and sp1 gives you 1 Gb max throughput though the unit.   
Depending on packet size etc.Thats the max per the physical unit can do on 
those ports.  1481 meg is max with 1500 bytes packets, and 860 is max with 512 
bypte packets.

I’m sure you had plenty of users etc.  I would except between 300-500meg max.  
depednign on the packet size, 116meg is 64 byte, so really depends on the 
average packet size at that point.


[LTI-Full_175px]
Dennis Burgess, Mikrotik Certified Trainer
MTCNA, MTCRE, MTCWE, MTCTCE, MTCINE, MTCSE, HE IPv6 Sage, Cambium ePMP Certified
Author of "Learn RouterOS- Second Edition”
Link Technologies, Inc -- Mikrotik & WISP Support Services
Office: 314-735-0270  Website: 
http://www.linktechs.net
Create Wireless Coverage’s with www.towercoverage.com

From: mikrotik-users-boun...@wispa.org  On 
Behalf Of Nick Bright via Mikrotik-users
Sent: Wednesday, July 10, 2019 6:03 PM
To: Mikrotik Users 
Subject: [Mikrotik Users] RB2011UiAS Performance Tuning


Had a CCR1009 get blown by lightning today. The only thing I had with an SFP to 
swap in its place was an RB2011UiAS.

Typically running peak of about 500Mbps in traffic in the evenings.

I have disabled the LCD, turned off connection tracking, disabled all mangle 
rules, and disabled as many filter rules as possible without compromising 
security (3 simple port filter rules remain). All services are disabled except 
SSH and Winbox for management. No NAT rules are enabled (some are configured, 
but they are disabled).

BGP is in use with one peer, receiving only a default route by filter (peer 
sends all routes, but I'm filtered for only default).

The only interfaces in use are ether1, ether5 and sfp1. All are routed (no 
switch or bridges configured). Each interface, except sfp1, has one VLAN for 
telemetry management.

I'm still seeing 70-100% cpu usage at only around 150Mbps (13kpps) with nearly 
all traffic falling in to Fast Path on 6.43.16 with the CPU set to 750MHz.

Have I missed any performance tuning options? I just need it to work half way 
decent for the night, I have a new CCR1009 on the way.

--

---

-  Nick Bright-

-  Vice President of Technology   -

-  Valnet -=- We Connect You -=-  -

-  Tel 888-332-1616 x 315 / Fax 620-331-0789  -

-  Web http://www.valnet.net/ -

---

- Are your files safe?-

- Valnet Vault - Secure Cloud Backup  -

- More information & 30 day free trial at -

- http://www.valnet.net/services/valnet-vault -

---
___
Mikrotik-users mailing list
Mikrotik-users@wispa.org
http://lists.wispa.org/mailman/listinfo/mikrotik-users


Re: [Mikrotik Users] RB2011UiAS Performance Tuning

2019-07-11 Thread Nick Bright via Mikrotik-users
Ended up with peak traffic around 300Mbps for the overnight, around 50% 
cpu while doing so.


On 7/11/2019 9:30 AM, David Jones wrote:
you are actually doing good with routing 150-200mbps with that router. 
I have never gotten mine to route over 185mbps. MPLS/VPLS around 600mbps.


On Wed, Jul 10, 2019 at 6:40 PM Mike Francis via Mikrotik-users 
mailto:mikrotik-users@wispa.org>> wrote:


Sorry, gotcha, was reading too many emails.  I feel your pain. I
toasted a Cisco 6509 once replacing a card. All we had laying
around was a rb450 and had to run our core on it until the
replacement 6509 chassis arrived. Not fun! It's a great Mikrotik
story though!

John Michael Francis
Entrepreneur & CEO
JMF | WAVEFLY | DLI
Main: +1-877-WAVEFLY
Support: supp...@wavefly.com 
Direct: +1-251-517-5069


*From:* mikrotik-users-boun...@wispa.org

mailto:mikrotik-users-boun...@wispa.org>> on behalf of Nick
Bright via Mikrotik-users mailto:mikrotik-users@wispa.org>>
*Sent:* Wednesday, July 10, 2019 7:50:29 PM
*To:* Mikrotik Users
*Subject:* Re: [Mikrotik Users] RB2011UiAS Performance Tuning
Right, almost all of my traffic is showing up in the FastPath
counters; it appears to be turned on properly.

On 7/10/2019 6:47 PM, Mike Francis wrote:

I'm telling you, Fastpath is what you want.

https://mikrotik.com/product/RB2011UiAS-2HnD-IN#fndtn-testresults



John Michael Francis
Entrepreneur & CEO
JMF | WAVEFLY | DLI
Main: +1-877-WAVEFLY
Support: supp...@wavefly.com 
Direct: +1-251-517-5069


*From:* Josh Luthman 

*Sent:* Wednesday, July 10, 2019 7:33:01 PM
*To:* Mike Francis; Mikrotik Users
*Cc:* Nick Bright
*Subject:* Re: [Mikrotik Users] RB2011UiAS Performance Tuning
Fast track.  Path is for switching.

Josh Luthman
Office: 937-552-2340
Direct: 937-552-2343
1100 Wayne St
Suite 1337
Troy, OH 45373

On Wed, Jul 10, 2019, 7:16 PM Mike Francis via Mikrotik-users
mailto:mikrotik-users@wispa.org>> wrote:

You need fastpath.  You have to disable all rules for that to
happen. That's not a problem, especially if this is just a
router. Make sure you specific allowed subnets for your ssh
and win box services under UP Services. Get rid of all rules.
Go to IP Settings and make sure it has enabled fastpath.  If
not then you missed something.

John Michael Francis
Entrepreneur & CEO
JMF | WAVEFLY | DLI
Main: +1-877-WAVEFLY
Support: supp...@wavefly.com 
Direct: +1-251-517-5069


*From:* mikrotik-users-boun...@wispa.org

mailto:mikrotik-users-boun...@wispa.org>> on behalf of Nick
Bright via Mikrotik-users mailto:mikrotik-users@wispa.org>>
*Sent:* Wednesday, July 10, 2019 7:03:09 PM
*To:* Mikrotik Users
*Subject:* [Mikrotik Users] RB2011UiAS Performance Tuning

Had a CCR1009 get blown by lightning today. The only thing I
had with an SFP to swap in its place was an RB2011UiAS.

Typically running peak of about 500Mbps in traffic in the
evenings.

I have disabled the LCD, turned off connection tracking,
disabled all mangle rules, and disabled as many filter rules
as possible without compromising security (3 simple port
filter rules remain). All services are disabled except SSH
and Winbox for management. No NAT rules are enabled (some are
configured, but they are disabled).

BGP is in use with one peer, receiving only a default route
by filter (peer sends all routes, but I'm filtered for only
default).

The only interfaces in use are ether1, ether5 and sfp1. All
are routed (no switch or bridges configured). Each interface,
except sfp1, has one VLAN for telemetry management.

I'm still seeing 70-100% cpu usage at only around 150Mbps
(13kpps) with /nearly /all traffic falling in to Fast Path on
6.43.16 with the CPU set to 750MHz.

Have I missed any performance tuning options? I just need it
to work half way decent for the 

Re: [Mikrotik Users] RB2011UiAS Performance Tuning

2019-07-11 Thread David Jones via Mikrotik-users
you are actually doing good with routing 150-200mbps with that router. I
have never gotten mine to route over 185mbps. MPLS/VPLS around 600mbps.

On Wed, Jul 10, 2019 at 6:40 PM Mike Francis via Mikrotik-users <
mikrotik-users@wispa.org> wrote:

> Sorry, gotcha, was reading too many emails.  I feel your pain. I toasted a
> Cisco 6509 once replacing a card. All we had laying around was a rb450 and
> had to run our core on it until the replacement 6509 chassis arrived. Not
> fun! It's a great Mikrotik story though!
>
> John Michael Francis
> Entrepreneur & CEO
> JMF | WAVEFLY | DLI
> Main: +1-877-WAVEFLY
> Support: supp...@wavefly.com
> Direct: +1-251-517-5069
>
> --
> *From:* mikrotik-users-boun...@wispa.org 
> on behalf of Nick Bright via Mikrotik-users 
> *Sent:* Wednesday, July 10, 2019 7:50:29 PM
> *To:* Mikrotik Users
> *Subject:* Re: [Mikrotik Users] RB2011UiAS Performance Tuning
>
> Right, almost all of my traffic is showing up in the FastPath counters; it
> appears to be turned on properly.
>
> On 7/10/2019 6:47 PM, Mike Francis wrote:
>
> I'm telling you, Fastpath is what you want.
>
> https://mikrotik.com/product/RB2011UiAS-2HnD-IN#fndtn-testresults
> 
>
> John Michael Francis
> Entrepreneur & CEO
> JMF | WAVEFLY | DLI
> Main: +1-877-WAVEFLY
> Support: supp...@wavefly.com
> Direct: +1-251-517-5069
>
> --
> *From:* Josh Luthman 
> 
> *Sent:* Wednesday, July 10, 2019 7:33:01 PM
> *To:* Mike Francis; Mikrotik Users
> *Cc:* Nick Bright
> *Subject:* Re: [Mikrotik Users] RB2011UiAS Performance Tuning
>
> Fast track.  Path is for switching.
>
> Josh Luthman
> Office: 937-552-2340
> Direct: 937-552-2343
> 1100 Wayne St
> Suite 1337
> Troy, OH 45373
>
> On Wed, Jul 10, 2019, 7:16 PM Mike Francis via Mikrotik-users <
> mikrotik-users@wispa.org> wrote:
>
>> You need fastpath.  You have to disable all rules for that to happen.
>> That's not a problem,  especially if this is just a router. Make sure you
>> specific allowed subnets for your ssh and win box services under UP
>> Services. Get rid of all rules. Go to IP Settings and make sure it has
>> enabled fastpath.  If not then you missed something.
>>
>> John Michael Francis
>> Entrepreneur & CEO
>> JMF | WAVEFLY | DLI
>> Main: +1-877-WAVEFLY
>> Support: supp...@wavefly.com
>> Direct: +1-251-517-5069
>>
>> --
>> *From:* mikrotik-users-boun...@wispa.org <
>> mikrotik-users-boun...@wispa.org> on behalf of Nick Bright via
>> Mikrotik-users 
>> *Sent:* Wednesday, July 10, 2019 7:03:09 PM
>> *To:* Mikrotik Users
>> *Subject:* [Mikrotik Users] RB2011UiAS Performance Tuning
>>
>>
>> Had a CCR1009 get blown by lightning today. The only thing I had with an
>> SFP to swap in its place was an RB2011UiAS.
>>
>> Typically running peak of about 500Mbps in traffic in the evenings.
>>
>> I have disabled the LCD, turned off connection tracking, disabled all
>> mangle rules, and disabled as many filter rules as possible without
>> compromising security (3 simple port filter rules remain). All services are
>> disabled except SSH and Winbox for management. No NAT rules are enabled
>> (some are configured, but they are disabled).
>>
>> BGP is in use with one peer, receiving only a default route by filter
>> (peer sends all routes, but I'm filtered for only default).
>>
>> The only interfaces in use are ether1, ether5 and sfp1. All are routed
>> (no switch or bridges configured). Each interface, except sfp1, has one
>> VLAN for telemetry management.
>>
>> I'm still seeing 70-100% cpu usage at only around 150Mbps (13kpps) with 
>> *nearly
>> *all traffic falling in to Fast Path on 6.43.16 with the CPU set to
>> 750MHz.
>>
>> Have I missed any performance tuning options? I just need it to work half
>> way decent for the night, I have a new CCR1009 on the way.
>>
>> --
>> ---
>> -  Nick Bright-
>> -  Vice President of Technology   -
>> -  Valnet -=- We Connect You -=-  -
>> -  Tel 888-332-1616 x 315 / Fax 620-331-0789  -
>> -  Web http://www.valnet.net/ 
>> 
>>  -
>> ---
>> - Are your files safe?-
>> - Valnet Vault - Secure Cloud Backup  -
>> - More information & 30 day free trial at -
>> -