www.glcnetworks.com
Fastpath
GLC webinar, 29 june 2017
Achmad Mardiansyah
achmad@glcnetworks.com
GLC Networks, Indonesia
1
www.glcnetworks.com
Agenda
â—Ź Introduction
â—Ź Mikrotik fasttrack / fastpath
â—Ź Demo
â—Ź Q & A
2
www.glcnetworks.com
What is GLC?
â—Ź Garda Lintas Cakrawala (www.glcnetworks.com)
â—Ź An Indonesian company
â—Ź Located in Bandung
â—Ź Areas: Training, IT Consulting
â—Ź Mikrotik Certified Training Partner/Consultant/Distributor
â—Ź Ubiquiti Certified Trainer/Consultant
â—Ź RedHat Certified Trainer
3
www.glcnetworks.com
About GLC webinar?
â—Ź First webinar: january 1, 2010 (title:
tahun baru bersama solaris - new
year with solaris OS)
â—Ź As a sharing event with various
topics: linux, networking, wireless,
database, programming, etc
â—Ź Regular schedule: every 2 weeks
â—Ź Irregular schedule: as needed
â—Ź Checking schedule:
http://www.glcnetworks.com/main/sc
hedule
â—Ź You are invited to be a presenter
â—‹ No need to be an expert
â—‹ This is a forum for sharing: knowledge,
experiences, information
4
www.glcnetworks.com
Trainer Introduction
â—Ź Name: Achmad Mardiansyah
â—Ź Base: bandung, Indonesia
â—Ź Linux user (since 1999), Mikrotik user (since 2007),
ubnt user (since 2011)
â—Ź Certified Trainer (Mikrotik, Ubiquiti, Redhat)
â—Ź Certified Consultant
â—Ź Work: Telco engineer, Sysadmin, PHP programmer,
and Lecturer
â—Ź Personal website: http://achmadjournal.com
â—Ź More info:
http://au.linkedin.com/in/achmadmardiansyah
5
www.glcnetworks.com
Please introduce yourself
â—Ź Your name
â—Ź Your company/university?
â—Ź Your networking experience?
â—Ź Your mikrotik experience?
â—Ź Your expectation from this course?
6
www.glcnetworks.com
Mikrotik Fastpath
7
www.glcnetworks.com 8
www.glcnetworks.com
Drawbacks of slowpath
â—Ź SLOW -> lower performance -> lower
packet per second
â—Ź Packets should go through many processing
post -> higher CPU usage
9
www.glcnetworks.com
Can we improve slowpath?
Yes -> fastpath
â—Ź Just skip the processing posts (in
case you dont use them)
â—Ź This will improve routerboard
performance
10
www.glcnetworks.com
Fastpath conditions (1)?
YES. fastpath will active if following conditions are met (aka. handler)
â—Ź IPv4 handler
â—‹ firewal rules are not configured;
â—‹ firewall address lists are not configured;
â—‹ Simple and queue trees with parent=global are not configured;
â—‹ no mesh, metarouter interface configuration;
â—‹ sniffer, torch and traffic generator is not running;
â—‹ connection tracking is not active;
â—‹ ip accounting is disabled (/ip accounting enabled=no);
â—‹ VRFs are not set (/ip route vrf is empty);
â—‹ Hotspot is not used (/ip hostspot has no interfaces);
â—‹ IpSec policies are not configured (ROS v6.8);
â—‹ /tool mac-scan is not actively used;
â—‹ /tool ip-scan is not actively used;
â—‹ route cache must be enabled
â—‹ /ip firewall connection tracking set enabled parameter has new auto value Which means that
connection tracking is disabled by default until firewall rules are added.
11
www.glcnetworks.com
Fastpath conditions (2)?
â—Ź IPv4 FastTrack handler
â—‹ FastTrack is available on the devices with FastPath support.
â—Ź Traffic Generator handler
â—‹ Traffic Generator fast path is automatically used for interfaces that support this feature.
â—Ź MPLS handler
â—‹ MPLS fast path is automatically used for interfaces that support this feature.
â—‹ Currently MPLS fast-path applies only to MPLS switched traffic
â—Ź Bridge handler
â—‹ no bridge firewall rules (/interface bridge filter, /interface bridge nat) are configured,
â—‹ /interface bridge settings use-ip-firwall=no,
â—‹ no mesh, metarouter interface configuration,
â—‹ sniffer, torch and traffic generator is not running,
12
www.glcnetworks.com
Is my routerboard supported by Fastpath?
â—Ź Almost all routerboard support fastpath
â—Ź To check physical interface: /interface print detail
13
www.glcnetworks.com
Fastpath supports virtual
interface?
Yes.
â—Ź more and more virtual interfaces will
be added to support fastpath
â—Ź To check: /interface print detail
○ Check “allow fast-path”
14
www.glcnetworks.com
How do i know the fastpath is
active?
/ip settings print
15
www.glcnetworks.com
Interested?
Just come to our
training...
Special price for webinar
attendees…
http://www.glcnetworks.c
om/main/schedule
16
www.glcnetworks.com
End of slides
â—Ź Thank you for your attention
â—Ź Please submit your feedback: http://bit.ly/glcfeedback
● Like our facebook page: “GLC networks”
â—Ź Slide: http://www.slideshare.net/r41nbuw
â—Ź Recording: https://www.youtube.com/channel/UCI611_IIkQC0rsLWIFIx_yg
â—Ź Stay tune with our schedule
17

Mikrotik fastpath

  • 1.
    www.glcnetworks.com Fastpath GLC webinar, 29june 2017 Achmad Mardiansyah achmad@glcnetworks.com GLC Networks, Indonesia 1
  • 2.
    www.glcnetworks.com Agenda â—Ź Introduction â—Ź Mikrotikfasttrack / fastpath â—Ź Demo â—Ź Q & A 2
  • 3.
    www.glcnetworks.com What is GLC? â—ŹGarda Lintas Cakrawala (www.glcnetworks.com) â—Ź An Indonesian company â—Ź Located in Bandung â—Ź Areas: Training, IT Consulting â—Ź Mikrotik Certified Training Partner/Consultant/Distributor â—Ź Ubiquiti Certified Trainer/Consultant â—Ź RedHat Certified Trainer 3
  • 4.
    www.glcnetworks.com About GLC webinar? â—ŹFirst webinar: january 1, 2010 (title: tahun baru bersama solaris - new year with solaris OS) â—Ź As a sharing event with various topics: linux, networking, wireless, database, programming, etc â—Ź Regular schedule: every 2 weeks â—Ź Irregular schedule: as needed â—Ź Checking schedule: http://www.glcnetworks.com/main/sc hedule â—Ź You are invited to be a presenter â—‹ No need to be an expert â—‹ This is a forum for sharing: knowledge, experiences, information 4
  • 5.
    www.glcnetworks.com Trainer Introduction â—Ź Name:Achmad Mardiansyah â—Ź Base: bandung, Indonesia â—Ź Linux user (since 1999), Mikrotik user (since 2007), ubnt user (since 2011) â—Ź Certified Trainer (Mikrotik, Ubiquiti, Redhat) â—Ź Certified Consultant â—Ź Work: Telco engineer, Sysadmin, PHP programmer, and Lecturer â—Ź Personal website: http://achmadjournal.com â—Ź More info: http://au.linkedin.com/in/achmadmardiansyah 5
  • 6.
    www.glcnetworks.com Please introduce yourself â—ŹYour name â—Ź Your company/university? â—Ź Your networking experience? â—Ź Your mikrotik experience? â—Ź Your expectation from this course? 6
  • 7.
  • 8.
  • 9.
    www.glcnetworks.com Drawbacks of slowpath â—ŹSLOW -> lower performance -> lower packet per second â—Ź Packets should go through many processing post -> higher CPU usage 9
  • 10.
    www.glcnetworks.com Can we improveslowpath? Yes -> fastpath â—Ź Just skip the processing posts (in case you dont use them) â—Ź This will improve routerboard performance 10
  • 11.
    www.glcnetworks.com Fastpath conditions (1)? YES.fastpath will active if following conditions are met (aka. handler) â—Ź IPv4 handler â—‹ firewal rules are not configured; â—‹ firewall address lists are not configured; â—‹ Simple and queue trees with parent=global are not configured; â—‹ no mesh, metarouter interface configuration; â—‹ sniffer, torch and traffic generator is not running; â—‹ connection tracking is not active; â—‹ ip accounting is disabled (/ip accounting enabled=no); â—‹ VRFs are not set (/ip route vrf is empty); â—‹ Hotspot is not used (/ip hostspot has no interfaces); â—‹ IpSec policies are not configured (ROS v6.8); â—‹ /tool mac-scan is not actively used; â—‹ /tool ip-scan is not actively used; â—‹ route cache must be enabled â—‹ /ip firewall connection tracking set enabled parameter has new auto value Which means that connection tracking is disabled by default until firewall rules are added. 11
  • 12.
    www.glcnetworks.com Fastpath conditions (2)? â—ŹIPv4 FastTrack handler â—‹ FastTrack is available on the devices with FastPath support. â—Ź Traffic Generator handler â—‹ Traffic Generator fast path is automatically used for interfaces that support this feature. â—Ź MPLS handler â—‹ MPLS fast path is automatically used for interfaces that support this feature. â—‹ Currently MPLS fast-path applies only to MPLS switched traffic â—Ź Bridge handler â—‹ no bridge firewall rules (/interface bridge filter, /interface bridge nat) are configured, â—‹ /interface bridge settings use-ip-firwall=no, â—‹ no mesh, metarouter interface configuration, â—‹ sniffer, torch and traffic generator is not running, 12
  • 13.
    www.glcnetworks.com Is my routerboardsupported by Fastpath? â—Ź Almost all routerboard support fastpath â—Ź To check physical interface: /interface print detail 13
  • 14.
    www.glcnetworks.com Fastpath supports virtual interface? Yes. ●more and more virtual interfaces will be added to support fastpath ● To check: /interface print detail ○ Check “allow fast-path” 14
  • 15.
    www.glcnetworks.com How do iknow the fastpath is active? /ip settings print 15
  • 16.
    www.glcnetworks.com Interested? Just come toour training... Special price for webinar attendees… http://www.glcnetworks.c om/main/schedule 16
  • 17.
    www.glcnetworks.com End of slides ●Thank you for your attention ● Please submit your feedback: http://bit.ly/glcfeedback ● Like our facebook page: “GLC networks” ● Slide: http://www.slideshare.net/r41nbuw ● Recording: https://www.youtube.com/channel/UCI611_IIkQC0rsLWIFIx_yg ● Stay tune with our schedule 17