#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
BRAC case study on mikrotik router for NGO network
1. as Branch Router
& Bandwidth Manager.
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
MikroTik User Meeting,
Dhaka, Bangladesh.
On 7th March, 2016
2. Summary of Content
Objectives
Designing Effective Network for NGO
BRAC’s Network expansions
MikroTik as Edge Router
MikroTik as Core Bandwidth Manager
MikroTik as Branch Router
MikroTik as WiFi Router
Case Study on EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
3. Objectives
Network can be defined as the digitalized
platform to operate the organization
Implementation Cost is the main concern for
business.
Properly design the network with low cost
MikroTik device can be reduced the cost
anxiety to implement modern networking.
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
4. Designing Effective Network For NGO
Enterprise Network Designing: Of course
Enterprise network will have some basic characteristics, Like .
Highly available
No bottleneck in the design
Horizontally and Vertically expandable
What is the Deference for NGO:
Reasonable Device Cost
Reasonable Maintenance Cost
Minimum activity in the end device end for deploy on new
location
Ready stock availability
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
5. Cost Effective Network Design For Scalability
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Stub Area
6. BRAC’s Network Expansion
Short History: We have to start from the scratch in the year of 2010.
There was flat network where we have started to make it structural
with bandwidth management and flexibility to expand up to field
level.
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
We have used Mikrotik with some expansive branded hardware
We have used different model of Mikrotik Router as Edge Router,
Bandwidth Management, VPN Router, Branch Router and WiFi
Router
As it was not that match renowned so we have to go through lots
of testing and learning process
7. MikroTik as Edge Router
Our Learnings
Initially we have used 1100 AHx2 to connect with our
multiple ISPs. It was able to handle up to 80 -100 mbps bandwidth.
But the MikroTik CCR 1036 has been resolve the bandwidth
capacity barrier performing great along with eBGP for multiple ISPs
for redundancy.
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
8. MikroTik as Core Bandwidth Manager
Bandwidth Management is on of the key requirement for any
developing country where bandwidth is limited.
We experimented on per user queue
But 30% bandwidth was unused in maximum time on the day
CPU utilization become huge
But PCQ gave us a good result of over all bandwidth utilization also
reduced the CPU utilization.
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
9. MikroTik as Branch Router
Our Requirements for Branch Router:
OSPF Routing
Static Routing
Site to Site VPN
PCQ for Bandwidth shaping
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Now we have 40+ remote
branch connected through
RB 450G and 750 Router
10. MikroTik as WiFi Router
Our Requirements for WiFi Router:
Good signal strength
Concurrent 25+ users
DHCP, NAT, PCQ
Custom policy based filtering
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
11. Case Study - EoIP
Scenario: Need to provide some IP address to some
computers of a Branch office which will be in the same
subnet of Head Office network.
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
12. Case Study - EoIP
Solutions : We have decided to implemented EoIP tunnel
between HO and Branch router
General Info
HO WAN IP 172.30.58.218 (Provided by Data Connectivity Provider)
Brach WAN IP 172.30.68.182 (Provided by Data Connectivity Provider)
HO LAN IP 192.168.99.0/24 with the VLAN ID 48
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Head Office MikroTik Configuration
IPIP Tunnel Configuration with IP address
/interface ipip
add local-address=172.30.58.218 name=ipip-tunnel1 remote-address=172.30.68.182
/ip address
add address=10.10.10.1/30 interface= ipip-tunnel1 network=10.10.10.0
13. Case Study - EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Head Office MikroTik Configuration
Adding IP address on Physical Interface of the HO VPN Router
where HO LAN will be connected with the VLAN ID 48
/ip address
add address=192.168.99.2/24 interface=ether12 network=192.168.99.0
/interface vlan
add interface=ether12 name=vlan48 vlan-id=48
14. Case Study - EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Head Office Mikrotik Configuration
Creating EoIP Tunnel
/interface eoip
add name=eoip-tunnel1 remote-address=172.30.68.182 tunnel-id=1
Assign Physical Interface 12 and EoIP tunnel in a same bridge
/interface bridge port
add bridge=bridge1 interface=ether12
add bridge=bridge1 interface= eoip-tunnel1
15. Case Study - EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Branch Office Mikrotik Configuration
General Info
HO WAN IP 172.30.58.218
Brach WAN IP 172.30.68.182
HO LAN IP 192.168.99.0/24 with the VLAN ID 48
IPIP Tunnel Configuration with IP address
/interface ipip
add local-address=172.30.68.182 name=ipip-tunnel1 remote-address=172.30.58.218
/ip address
add address=10.10.10.2/30 interface= ipip-tunnel1 network=10.10.10.0
16. Case Study - EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Branch Office Mikrotik Configuration
General Info
HO WAN IP 172.30.58.218
Brach WAN IP 172.30.68.182
HO LAN IP 192.168.99.0/24 with the VLAN ID 48
Adding IP address on Physical Interface 5
/ip address
add address=192.168.99.1/24 interface=ether5 network=192.168.99.0
Creating EoIP Tunnel
/interface eoip
add name=eoip-tunnel1 remote-address=172.30.58.218 tunnel-id=1
17. Case Study - EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Branch Office Mikrotik Configuration
General Info
HO WAN IP 172.30.58.218
Brach WAN IP 172.30.68.182
HO LAN IP 192.168.99.0/24 with the VLAN ID 48
Assign Physical Interface 5 and EoIP tunnel in a same bridge
/interface bridge port
add bridge=bridge1 interface=ether5
add bridge=bridge1 interface= eoip-tunnel1
Adding default route to Ho VPN Router
/ip route
add check-gateway=ping distance=1 dst-address=0.0.0.0/0 gateway=10.10.10.1
18. Case Study - EoIP
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS
Final Tricks to Configure PC IP Address
PC on HO will have GW address 192.168.99.2
PC on Branch will have GW address 192.168.99.1
19. Questions ?
Thank you !
Md. Jobayer Almahmud Hossain
(RHCA, RHCDS, RHCSS, RHCVA, RHCE, Redhat Certified
Openstack Administrator, SCSA)
Sr. Lead system Administrator
(In-charge infrastructure and support)
ICT, BRAC
Jobayer Almahmud Hossain RHCA, RHCDS, RHCSS