Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


mrgsm021

1471 posts

Uber Geek

Trusted

#306547 2-Aug-2023 16:19
Send private message

Hi guys,

 

As per the title, looking for a bit of help with this.

 

Finally got around to swapping my ER-X to the RB750Gr3 the other day and downloaded the Mikrotik mobile app

 

No problems accessing the router via the app when on home WiFi but can't access it when out and about.

 

Did a bit of Googling, I understand the firewall rules need to be tweaked to allow this?

 

I just have the default firewall rules on it following michaelmurphy's guide.

 

Any help would be appreciated please.

 

TIA


Filter this topic showing only the reply marked as answer Create new topic
toejam316
1466 posts

Uber Geek

Trusted
Lifetime subscriber

  #3111110 2-Aug-2023 16:24
Send private message

My advice - don't.

 

Setup a Wireguard VPN using the Roadwarrior config from https://help.mikrotik.com/docs/display/ROS/WireGuard#WireGuard-RoadWarriorWireGuardtunnel





Anything I say is the ramblings of an ill informed, opinionated so-and-so, and not representative of any of my past, present or future employers, and is also probably best disregarded.




RunningMan
8953 posts

Uber Geek


  #3111112 2-Aug-2023 16:35
Send private message

What you're looking for is called MikroTik back to home.

 

https://help.mikrotik.com/docs/display/ROS/Back+To+Home 

 

It's a beta feature only released a few days ago, essentially creates a Wireguard VPN back to your router, and in the case of CG-NAT uses a MikroTik server as a relay. The MT DDNS (Cloud) will direct the connection to your router if it has a public IPv4 or relay it via MikroTIk with a private WAN address.

 

Think it's only ARM based devices at the moment, so counts out the RB750 at this stage. You could configure a Wireguard VPN manually as @toejam316 suggested, but will need ROS 7 for that.


ANglEAUT
2320 posts

Uber Geek

Trusted
Lifetime subscriber

  #3111119 2-Aug-2023 17:07
Send private message

toejam316:

 

My advice - don't.

 

 

Agreed





Please keep this GZ community vibrant by contributing in a constructive & respectful manner.




mrgsm021

1471 posts

Uber Geek

Trusted

  #3111120 2-Aug-2023 17:08
Send private message

Thanks for the responses guys, will take a look and see how I get on.


MadEngineer
4271 posts

Uber Geek

Trusted

  #3111199 2-Aug-2023 19:33
Send private message

Or search for Mikrotik IPsec l2tp vpn

If you have an iPhone or android, tack that on the end too so you can use the built in vpn client. Find a guide that includes windows or mac connections too.




You're not on Atlantis anymore, Duncan Idaho.

michaelmurfy
meow
13240 posts

Uber Geek

Moderator
ID Verified
Trusted
Lifetime subscriber

  #3111201 2-Aug-2023 19:41
Send private message

I personally wouldn’t expose any of your Mikrotik services at all.

You’ve got Zerotier that can run on the router or you can run Tailscale on another network device or even on the Mikrotik under a container provided you’ve got a newer one: https://github.com/Fluent-networks/tailscale-mikrotik

Opening up your router at all to the internet is asking to trouble. Never do it. Same with port forwarding - if you can work without it (and use a VPN) then don’t.




Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


Filter this topic showing only the reply marked as answer Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.