Note: When using VLAN-filtering, add all desired interfaces to the bridge and configure the VLANs before you enable the VLAN-filtering function.
#MIKROTIK ROUTEROS VLAN WITH INTERNET MAC#
This table allows you to monitor learned MAC addresses and when VLAN-filtering is enabled, it shows learned VLAN IS’s as well. In Figure 3 you will see the Bridge Host table. Should multiple VLANs be specified for access ports, the tagged packets might get sent out as untagged packets through the wrong access port, regardless of the PVID value. Please note: On this interface, the VLAN-ids parameter can be used to specify a set or range of VLANs, but specifying multiple VLANs in a single bridge VLAN table entry should only be used for ports that are trunk ports.
The bridge VLAN table represents per-VLAN port mapping with an egress (outgoing) VLAN tag action.
#MIKROTIK ROUTEROS VLAN WITH INTERNET HOW TO#
The bridge not only joins Layer 2 interfaces for forwarding packets, but the bridge itself is also an interface and has its own Port VLAN ID (PVID).įigure 2 shows the bridge VLAN table and how to add VLANs to the bridge on specific interfaces. With this function, the bridge interface can modify tags (add and remove) and forwards or denies traffic to specific VLANs. With VLAN-filtering enabled, all bridge VLAN related functionality is enabled and works in an Independent-VLAN-Learning (IVL) mode. If VLAN-filtering is disabled, the bridge ignores all VLAN tags and works in a Shared-VLAN-Learning (SVL) and can’t add or remove tags on the bridge or interfaces within the bridge. In figure 1, you will notice the main setting is VLAN-filtering on a bridge interface, which controls THE VLAN-awareness and tag processing in the bridge. With this new feature, the bridge operates more like a normal Ethernet switch and addresses past compatibility issues.
It provides VLAN aware Layer 2 forwarding and VLAN tag modifications within the bridge. (Configurations based on ROS v6.41)įrom RouterOS v6.41, VLAN filtering was introduced on the bridge. In this Tech-Tip we will show you just how straight forward it is to create VLAN on a Network bridge with both Tagged and Untagged ports in a basic environment. MikroTik RouterOS is a very intuitive piece of equipment once you have a grasp on the basics. With the right network knowledge or a quick Google search or two, you can create, implement, and troubleshoot very complex networks, ranging from a basic flat/Layer2 network to MPLS, BGP, OSPF and so much more. Many network engineers find that there is very little that MikroTik RouteOS cannot do –from full-on core network configurations to edge networking through to last-mile CPE.