in the time of waiting for approval here, i have done a full backup and after that i restored default configs, made my changes to fit my network, added my wifi and ipv6 but its still the same, very very high pings in game server just from local connection. Connections from outside working as expected.
Cant believe that a MK router is having this kind of trouble in performance vs a fritzbox...
But im sure its just a config issue....
Here my current config after reset.... Firewall rules and co was in there too this time
so i let them in and just added my port nat
Cant believe that a MK router is having this kind of trouble in performance vs a fritzbox...
But im sure its just a config issue....
Here my current config after reset.... Firewall rules and co was in there too this time

Code:
# 2025-03-25 01:06:48 by RouterOS 7.18.2# software id = KEEF-Y536## model = C53UiG+5HPaxD2HPaxD# serial number = HGX0A9Z41FA/interface bridgeadd admin-mac=F4:1E:57:2A:33:61 auto-mac=no comment=defconf name=bridge/interface wifiset [ find default-name=wifi1 ] channel.skip-dfs-channels=10min-cac \ configuration.country=Germany .mode=ap .ssid=Dingsbums disabled=no \ security.authentication-types=wpa2-psk,wpa3-psk .ft=yes .ft-over-ds=yesset [ find default-name=wifi2 ] channel.skip-dfs-channels=10min-cac \ configuration.country=Germany .mode=ap .ssid=Dingsbums disabled=no \ security.authentication-types=wpa2-psk,wpa3-psk .ft=yes .ft-over-ds=yes/interface pppoe-clientadd add-default-route=yes allow=pap,chap,mschap2 disabled=no interface=ether1 \ name=telekom user=***************/interface listadd comment=defconf name=WANadd comment=defconf name=LAN/ip pooladd name=default-dhcp ranges=192.168.2.10-192.168.2.254/ip dhcp-serveradd address-pool=default-dhcp interface=bridge name=defconf/disk settingsset auto-media-interface=bridge auto-media-sharing=yes auto-smb-sharing=yes/interface bridge portadd bridge=bridge comment=defconf interface=ether2add bridge=bridge comment=defconf interface=ether3add bridge=bridge comment=defconf interface=ether4add bridge=bridge comment=defconf interface=ether5add bridge=bridge comment=defconf interface=wifi1add bridge=bridge comment=defconf interface=wifi2/ip neighbor discovery-settingsset discover-interface-list=LAN/interface list memberadd comment=defconf interface=bridge list=LANadd comment=defconf interface=ether1 list=WANadd interface=telekom list=WAN/ip addressadd address=192.168.2.1/24 comment=defconf interface=bridge network=\ 192.168.2.0/ip cloudset ddns-enabled=yes ddns-update-interval=5m/ip dhcp-clientadd comment=defconf disabled=yes interface=ether1/ip dhcp-server leaseadd address=192.168.2.141 client-id=1:b0:41:6f:e:98:51 mac-address=\ B0:41:6F:0E:98:51 server=defconfadd address=192.168.2.43 client-id=1:52:54:0:93:36:c1 mac-address=\ 52:54:00:93:36:C1 server=defconfadd address=192.168.2.42 client-id=1:52:54:0:5b:1b:68 mac-address=\ 52:54:00:5B:1B:68 server=defconfadd address=192.168.2.40 client-id=1:52:54:0:79:24:fb mac-address=\ 52:54:00:79:24:FB server=defconfadd address=192.168.2.50 client-id=1:e4:5f:1:27:28:b2 mac-address=\ E4:5F:01:27:28:B2 server=defconf/ip dhcp-server networkadd address=192.168.2.0/24 comment=defconf dns-server=192.168.2.1 gateway=\ 192.168.2.1/ip dnsset allow-remote-requests=yes servers=8.8.8.8/ip dns staticadd address=192.168.2.1 comment=defconf name=router.lan type=A/ip firewall address-listadd address=*************** comment=WAN-IP list=WAN-IP/ip firewall filteradd action=accept chain=input comment=\ "defconf: accept established,related,untracked" connection-state=\ established,related,untrackedadd action=drop chain=input comment="defconf: drop invalid" connection-state=\ invalidadd action=accept chain=input comment="defconf: accept ICMP" protocol=icmpadd action=accept chain=input in-interface=!telekom src-address=\ 192.168.2.0/24add action=accept chain=input comment=\ "defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1add action=drop chain=input comment="defconf: drop all not coming from LAN" \ in-interface-list=!LANadd action=accept chain=forward comment="defconf: accept in ipsec policy" \ ipsec-policy=in,ipsecadd action=accept chain=forward comment="defconf: accept out ipsec policy" \ ipsec-policy=out,ipsecadd action=fasttrack-connection chain=forward comment="defconf: fasttrack" \ connection-state=established,related hw-offload=yesadd action=accept chain=forward comment=\ "defconf: accept established,related, untracked" connection-state=\ established,related,untrackedadd action=drop chain=forward comment="defconf: drop invalid" \ connection-state=invalidadd action=drop chain=forward comment=\ "defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \ connection-state=new in-interface-list=WAN/ip firewall natadd action=masquerade chain=srcnat comment="Hairpin NAT" dst-address=\ 192.168.2.0/24 src-address=192.168.2.0/24add action=masquerade chain=srcnat comment="defconf: masquerade" \ ipsec-policy=out,none out-interface-list=WANadd action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=80 protocol=\ tcp to-addresses=192.168.2.43 to-ports=80add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=443 \ protocol=tcp to-addresses=192.168.2.43 to-ports=443add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=25565-25620 \ protocol=tcp to-addresses=192.168.2.141add action=dst-nat chain=dstnat connection-limit=100,32 dst-address-list=\ WAN-IP dst-port=25565-25620 protocol=udp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=27000-27050 \ protocol=tcp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=27000-27050 \ protocol=udp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=3478 \ protocol=udp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=4379-4380 \ protocol=udp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=25565-25620 \ protocol=tcp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=25565-25620 \ protocol=udp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=27000-27030 \ protocol=tcp to-addresses=192.168.2.141add action=dst-nat chain=dstnat dst-address-list=WAN-IP dst-port=27000-27030 \ protocol=udp to-addresses=192.168.2.141/ip upnpset enabled=yes/ip upnp interfacesadd interface=bridge type=internaladd interface=telekom type=external/ipv6 addressadd address=::1 from-pool=telekom.ipv6 interface=bridge/ipv6 dhcp-clientadd add-default-route=yes interface=telekom pool-name=telekom.ipv6 request=\ prefix/ipv6 dhcp-serveradd address-pool=telekom.ipv6 interface=bridge name=server1 prefix-pool=\ telekom.ipv6/ipv6 firewall address-listadd address=::/128 comment="defconf: unspecified address" list=bad_ipv6add address=::1/128 comment="defconf: lo" list=bad_ipv6add address=fec0::/10 comment="defconf: site-local" list=bad_ipv6add address=::ffff:0.0.0.0/96 comment="defconf: ipv4-mapped" list=bad_ipv6add address=::/96 comment="defconf: ipv4 compat" list=bad_ipv6add address=100::/64 comment="defconf: discard only " list=bad_ipv6add address=2001:db8::/32 comment="defconf: documentation" list=bad_ipv6add address=2001:10::/28 comment="defconf: ORCHID" list=bad_ipv6add address=3ffe::/16 comment="defconf: 6bone" list=bad_ipv6/ipv6 firewall filteradd action=accept chain=input comment=\ "defconf: accept established,related,untracked" connection-state=\ established,related,untrackedadd action=drop chain=input comment="defconf: drop invalid" connection-state=\ invalidadd action=accept chain=input comment="defconf: accept ICMPv6" protocol=\ icmpv6add action=accept chain=input comment="defconf: accept UDP traceroute" \ dst-port=33434-33534 protocol=udpadd action=accept chain=input comment=\ "defconf: accept DHCPv6-Client prefix delegation." dst-port=546 protocol=\ udp src-address=fe80::/10add action=accept chain=input comment="defconf: accept IKE" dst-port=500,4500 \ protocol=udpadd action=accept chain=input comment="defconf: accept ipsec AH" protocol=\ ipsec-ahadd action=accept chain=input comment="defconf: accept ipsec ESP" protocol=\ ipsec-espadd action=accept chain=input comment=\ "defconf: accept all that matches ipsec policy" ipsec-policy=in,ipsecadd action=drop chain=input comment=\ "defconf: drop everything else not coming from LAN" in-interface-list=\ !LANadd action=fasttrack-connection chain=forward comment="defconf: fasttrack6" \ connection-state=established,relatedadd action=accept chain=forward comment=\ "defconf: accept established,related,untracked" connection-state=\ established,related,untrackedadd action=drop chain=forward comment="defconf: drop invalid" \ connection-state=invalidadd action=drop chain=forward comment=\ "defconf: drop packets with bad src ipv6" src-address-list=bad_ipv6add action=drop chain=forward comment=\ "defconf: drop packets with bad dst ipv6" dst-address-list=bad_ipv6add action=drop chain=forward comment="defconf: rfc4890 drop hop-limit=1" \ hop-limit=equal:1 protocol=icmpv6add action=accept chain=forward comment="defconf: accept ICMPv6" protocol=\ icmpv6add action=accept chain=forward comment="defconf: accept HIP" protocol=139add action=accept chain=forward comment="defconf: accept IKE" dst-port=\ 500,4500 protocol=udpadd action=accept chain=forward comment="defconf: accept ipsec AH" protocol=\ ipsec-ahadd action=accept chain=forward comment="defconf: accept ipsec ESP" protocol=\ ipsec-espadd action=accept chain=forward comment=\ "defconf: accept all that matches ipsec policy" ipsec-policy=in,ipsecadd action=drop chain=forward comment=\ "defconf: drop everything else not coming from LAN" in-interface-list=\ !LAN/ipv6 ndset [ find default=yes ] hop-limit=64 interface=bridge/system clockset time-zone-name=Europe/Berlin/system noteset show-at-login=no/system routerboard mode-buttonset enabled=yes on-event=dark-mode/system routerboard wps-buttonset enabled=yes on-event=wps-accept/system scriptadd comment=defconf dont-require-permissions=no name=dark-mode owner=*sys \ policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon \ source="\r\ \n :if ([system leds settings get all-leds-off] = \"never\") do={\r\ \n /system leds settings set all-leds-off=immediate \r\ \n } else={\r\ \n /system leds settings set all-leds-off=never \r\ \n }\r\ \n "add comment=defconf dont-require-permissions=no name=wps-accept owner=*sys \ policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon \ source="\r\ \n :foreach iface in=[/interface/wifi find where (configuration.mode=\"a\ p\" && disabled=no)] do={\r\ \n /interface/wifi wps-push-button \$iface;}\r\ \n "/tool mac-serverset allowed-interface-list=LAN/tool mac-server mac-winboxset allowed-interface-list=LAN
Statistics: Posted by mikrotiknewbie222 — Tue Mar 25, 2025 2:12 am