Re: Comcast Bussiness Class and GRE Tunnels

2011-07-28 Thread Joel Jaeggli
On Jul 27, 2011, at 5:05 PM, Denys Fedoryshchenko wrote: > On Wed, 27 Jul 2011 10:15:04 -0500, David E. Smith wrote: >>> > I think on cheap platforms, they have wirespeed gigabit only on switching > functions, but rest will suck. Their top products can do more, but they are > still cannot b

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Denys Fedoryshchenko
On Wed, 27 Jul 2011 10:15:04 -0500, David E. Smith wrote: WT*F*? I've never understood the appeal of Microtik, and now I understand it even less. The software is... quirky, at times, but some of their hardware, especially on the very low-end, is hard to beat. For instance, they make a SOHO

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Walter Keen
We're evaluating a good spread of Mikrotik products as well, both for wireless AP's and general routers. Almost worked out all the features(some features have names that conflict with other vendors, or operate unlike you expect them to), but for the price, even of their higher end ones (RB1100

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread David E. Smith
> WT*F*? I've never understood the appeal of Microtik, and now I understand > it even less. > > The software is... quirky, at times, but some of their hardware, especially on the very low-end, is hard to beat. For instance, they make a SOHO router with five Gigabit Ethernet ports for $70, which h

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Denys Fedoryshchenko
On Wed, 27 Jul 2011 20:15:16 +1000, Matthew Palmer wrote: WT*F*? I've never understood the appeal of Microtik, and now I understand it even less. - Matt Well, it is luring people because it has easy GUI and it is cheap. Even noob can setup VPN in few clicks. At same time they hidden bugs, t

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Matthew Palmer
On Wed, Jul 27, 2011 at 12:30:36PM +0300, Denys Fedoryshchenko wrote: > On Wed, 27 Jul 2011 19:23:33 +1000, Matthew Palmer wrote: > >On Wed, Jul 27, 2011 at 12:17:16PM +0300, Denys Fedoryshchenko wrote: > >>I can recommend you to try to use openvpn, if you are "Mikrotik > >>only". At least it doesn

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Denys Fedoryshchenko
On Wed, 27 Jul 2011 19:23:33 +1000, Matthew Palmer wrote: On Wed, Jul 27, 2011 at 12:17:16PM +0300, Denys Fedoryshchenko wrote: I can recommend you to try to use openvpn, if you are "Mikrotik only". At least it doesn't have fragmentation issues, as IPIP/GRE/PPTP has, and also it will run smoothl

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Matthew Palmer
On Wed, Jul 27, 2011 at 12:17:16PM +0300, Denys Fedoryshchenko wrote: > I can recommend you to try to use openvpn, if you are "Mikrotik > only". At least it doesn't have fragmentation issues, as > IPIP/GRE/PPTP has, and also it will run smoothly over NAT/SPI. Cons, > that it is a bit more laggy, be

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-27 Thread Denys Fedoryshchenko
On Tue, 26 Jul 2011 10:07:37 -0500, Nate Burke wrote: Hello, I'm hoping that someone here might have run into a similar issue and might be able to offer me some pointers. ... Anyone with Insights or comments would be appreciated. Mikrotik EOIP are not following standards, it is just their own

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Pete Carah
On 07/26/2011 11:45 AM, Jon Bane wrote: > On Tue, Jul 26, 2011 at 11:38 AM, PC wrote: > > ... > Was working on the same reply as Paul. You assign your static to your > Mircotik box and check the box in the WebGUI (default is http://10.1.10.1) > to "Disable Firewall for True Static IP Subnet Only"

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread chris
I also have pretty much the exact same setup and it works very well for me On Tue, Jul 26, 2011 at 1:14 PM, Owen DeLong wrote: > I needed fast reliable internet access at home, so, I have Comcast Business > Class for fast and Raw Bandwidth DSL for reliable. I have my own ARIN > direct assignment

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Owen DeLong
The best thing to do is supply your own GRE router and have the Comcast gateway operate as a dumb simple ethernet bridge. Owen On Jul 26, 2011, at 10:03 AM, Blake Dunlap wrote: > Good luck. My experience with GRE over comcast business was a *nightmare*. > The web interface seems like it has a ra

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Owen DeLong
I needed fast reliable internet access at home, so, I have Comcast Business Class for fast and Raw Bandwidth DSL for reliable. I have my own ARIN direct assignments for my internal networks and I have routers in a couple of colo's where I get my true upstream connectivity. I run a Juniper router h

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Blake Dunlap
Good luck. My experience with GRE over comcast business was a *nightmare*. The web interface seems like it has a random roll to corrupt the firewall config when doing any GRE config, and you must get level 2 support to fix it each time using a l2 only CLI. -Blake

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Steven Bellovin
On Jul 26, 2011, at 11:07 37AM, Nate Burke wrote: > Hello, I'm hoping that someone here might have run into a similar issue and > might be able to offer me some pointers. > > I have a customer that I am providing redundant paths to, one link over a > microwave connection, and a backup link ove

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Nate Burke
Thanks for all the replies, I have all the firewalls disabled on the SMC Modem, with my Static IP set on the Mikrotik. The PPTP Tunnel came up and ran just fine when I configured it, it was working great when I left the office last night, but this morning It was running very slow. I just setu

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Jon Bane
On Tue, Jul 26, 2011 at 11:38 AM, PC wrote: > I have GRE tunnels and l2tp tunnels over those comcast boxes. l2tp is less > hassle because it handles NAT, but you can do GRE instead -- just make sure > you assign yourself a public static IP. > > First, go into the gateway and make sure all firewa

Re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread PC
I have GRE tunnels and l2tp tunnels over those comcast boxes. l2tp is less hassle because it handles NAT, but you can do GRE instead -- just make sure you assign yourself a public static IP. First, go into the gateway and make sure all firewalls are disabled (it has a web GUI). Second, if it's t

re: Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Nick Olsen
side.. Nick Olsen Network Operations (855) FLSPEED x106 From: "Nate Burke" Sent: Tuesday, July 26, 2011 11:07 AM To: "NANOG list" Subject: Comcast Bussiness Class and GRE Tunnels Hello, I'm hoping that someone here might hav

Comcast Bussiness Class and GRE Tunnels

2011-07-26 Thread Nate Burke
Hello, I'm hoping that someone here might have run into a similar issue and might be able to offer me some pointers. I have a customer that I am providing redundant paths to, one link over a microwave connection, and a backup link over a Comcast Business Class Connection. Everything on the Mi