
Discover how to add a new customer in MikroTik by isolating them with separate interfaces, configuring the DHCP client and NAT, and preparing for VLAN separation.
Learn how VLANs segment a network, create separate DHCP scopes per VLAN, and distinguish trunk and access ports for scalable ISP deployments with MikroTik devices.
In this LAB, I am going to show how you can configure the MainRouter to have internet and to offer DHCP IP addresses to the routers of Customer1 and Customer 2
Learn to block inter-VLAN traffic between customers with a firewall filter on the ISP router, and understand router on a stick and how the router routes between VLANs.
Learn to assign per-client bandwidth with Mikrotik simple queues after configuring dhcp with vlans and packages, then compare simple queues with queue trees and radius server.
Assign per-customer bandwidth with queue trees (Q3), using prerouting and postrouting labels for upload and download, and verify two customers get 2 Mbps (1 Mbps up, 1 Mbps down).
Explain PPPoE as point-to-point over Ethernet that authenticates customers with usernames and passwords, creates isolated tunnels, assigns a single IP, and supports radius, billing, and QoS.
Configure the switch to pass VLAN 30 via trunk and access ports, enable PoE client, disable DHCP on the customer edge, and verify PPP connectivity and speed.
Explore OPNsense as an open source firewall and router for an ISP, enabling DNS filtering, stateful packet filtering, intrusion detection and prevention, and VPN, accessible via a user-friendly web interface.
Configure the OPNsense device as a DNS filtering firewall between the ISP router and the LAN, with Mikrotik redirecting DNS to enforce content filtering for all devices.
Connect to OPNsense via the web interface, log in with the default root/open credentials, and verify the LAN and WAN interfaces to enable dns filtering in this course.
Configure the OPNsense device as a DNS filtering appliance by enabling unbound DNS and applying a blocklist to filter ads, malware, and phishing.
Install and configure the OPNsense appliance in an ISP network, enable DNS filtering, and route DNS to the Mikrotik router with DHCP and destination NAT to block sites like Facebook.
Discover how to stay connected with the instructor and access resources, including my network training courses, bundles, Amazon books, and network.com content, plus tips to practice labs for long-term retention.
Many of you would like to start an ISP or possibly are working for an ISP to distribute internet service to customers. For this, it requires a lot of technical knowledge to be able to:
Reach the internet to the customer premises using technology such as DHCP or PPPoE
Assign each customer a bandwidth speed
Configure the ISP router to be able to divide the bandwidth per customer using VLAN's and QOS.
Sometimes, helping the customer to configure Queuing on his bandwidth to assign each user in his LAN an equal/unequal bandwidth.
Use DNS Filtering to protect your customers from unwanted contents.
For this, I have designed this course to explain in deep of all those topics. My lectures will be based on theory following practical LABs to show you how you can configure those things on the MikrotTik router. The LABs are based on step-by-step with a very friendly way so you can understand the contents in an easy way.
All LABs will be based on real MikroTik equipments and every LAB will be tested by end of each configuration to check if the goal is achieved the way we want.
During the course, I will explain in details and with LABS everything about DHCP, PPPoE, NAT, VLAN, QOS, Mangle using Prerouting/Postrouting, OPNsense DNS Filtering and much more.
If you want to master all those topics, don't be late and register in my course and get started.