fbpx

How to assign segmentation in a wisp network?

The first thing to do is a network design where the segment is defined for both the backhaul links and the sectorial links. Generally, /29 segments are used for backhaul links, while for the sectorial links either /27,/26, /25,/24 in the case of the sectorial one, the selectivity of the mask will depend on the number of clients that will connect to the sectorial ones.

Assigning IP segmentation in a WISP (Wireless Internet Service Provider) network using MikroTik equipment involves carefully planning the network structure to ensure efficient traffic management, security, and scalability.

We detail a general approach that you can follow:

1. Network Planning

  • Determine the Requirements: Consider the number of clients, services offered, network topology and bandwidth requirements.
  • Design the Subnet Structure: Divide the network into smaller subnets to improve management and security. This may include subnets for network infrastructure (routers, switches, servers), end clients, internal services, etc.

2. IP Address Scheme

  • IP Block Allocation: Based on scheduling, it assigns blocks of IP addresses to different network segments. It uses CIDR (Classless Inter-Domain Routing) notation to efficiently define subnets and preserve IP addresses.
  • Subnets for Clients: For clients, you can assign dynamic subnets using DHCP or static subnets if required for specific use cases.
  • Directions for Infrastructure: Assign static IP addresses to all critical infrastructure devices, such as routers, switches, and servers.

3. Configuration in MikroTik RouterOS

  • Interfaces and IP Addresses: In the MikroTik RouterOS, assign the IP addresses to the corresponding interfaces according to your segmentation scheme. Use the menu IP > Addresses for this.
  • Static and Dynamic Routes: Configure static routes if necessary to route traffic between subnets. For more complex networks, consider using dynamic routing protocols such as OSPF.
  • DHCP for Clients: Configure the DHCP server in MikroTik to assign IP addresses to clients dynamically. Be sure to define the IP address range and other necessary options in IP > DHCP Server.
  • VLANs for Segmentation: If your network uses wired and wireless technology, consider using VLANs to further segment traffic within the network. Configure VLANs in Interfaces > VLANs and assigns the corresponding IP addresses to each VLAN.

4. Security Considerations

  • Firewall and Security: Configure firewall rules in MikroTik to protect subnets and control traffic between them. Use the menu IP > Firewall to configure filtering, NAT, and mangle rules.
  • Client Isolation: For wireless networks, use client isolation functionality to prevent direct traffic between clients and increase security.

5. Maintenance and Monitoring

  • Network Monitoring: Use tools built into MikroTik RouterOS, such as Torch and Traffic Flow, to monitor network traffic and detect potential problems.
  • Updates and Backups: Keep the software on your MikroTik devices updated and make regular backups of your settings.

IP segmentation in a WISP network is a critical task that requires careful planning and detailed implementation. The flexibility and powerful features of MikroTik RouterOS allow you to design and deploy a scalable, secure network that can grow and adapt to your customers' needs.

There are no tags for this post.
Did this content help you?
Facebook
Twitter
LinkedIn
WhatsApp
Telegram

Other documents in this category

Leave your comment

Your email address will not be published. Required fields are marked with *

Tutorials available at MikroLABs

No Courses Found!

DISCOUNT CODE

AN24-LIB

applies to MikroTik books and book packs

Days
Hours
Minutes
Seconds

Introduction to
OSPF - BGP - MPLS

Sign up for this Free course

MAE-RAV-ROS-240118
Days
Hours
Minutes
Seconds

Sign up for this Free course

MAS-ROS-240111

Promo for Three Kings Day!

KINGS24

15%

all the products

MikroTik courses
Academy courses
MikroTik books

Take advantage of the Three Kings Day discount code!

* promotion valid until Sunday January 7, 2024
** the code (KINGS24) applies to shopping cart
*** buy your course now and take it until March 31, 2024

New Year's Eve Promo!

NY24

20%

all the products

MikroTik courses
Academy courses
MikroTik books

Take advantage of the New Year's Eve discount code!

* promotion valid until Monday, January 1, 2024
** the code (NY24) applies to shopping cart
*** buy your course now and take it until March 31, 2024

Christmas discounts!

XMAS23

30%

all the products

MikroTik courses
Academy courses
MikroTik books

Take advantage of the discount code for Christmas!!!

**codes are applied in the shopping cart
Promo valid until Monday December 25, 2023

CYBER WEEK DISCOUNTS

CW23-MK

17%

all MikroTik OnLine courses

CW23-AX

30%

all Academy courses

CW23-LIB

25%

all MikroTik Books and Book Packs

Take advantage of the discount codes for Cyber ​​Week!!!

**codes are applied in the shopping cart
Promo valid until Sunday December 3, 2023

BLACK FRIDAY DISCOUNTS

BF23-MX

22%

all MikroTik OnLine courses

BF23-AX

35%

all Academy courses

BF23-LIB

30%

all MikroTik Books and Book Packs

Take advantage of the discount codes for Black Friday!!!

**Codes are applied in the shopping cart

codes are applied in the shopping cart
valid until Sunday November 26, 2023

Days
Hours
Minutes
Seconds

Sign up for this Free course

MAE-VPN-SET-231115

Halloween promo

Take advantage of discount codes for Halloween.

Codes are applied in the shopping cart

HW23-MK

11% discount on all MikroTik OnLine courses

11%

HW23-AX

30% discount on all Academy courses

30%

HW23-LIB

25% discount on all MikroTik Books and Book Packs

25%

Register and participate in the free course Introduction to Advanced Routing with MikroTik (MAE-RAV-ROS)

Today (Wednesday) October 11, 2023
7pm to 11pm (Colombia, Ecuador, Peru)

MAE-RAV-ROS-231011