Skip to main content
Version: current

eoipv6


interface/eoipv6

Type: Directory

Ethernet over IP (EoIP) Tunneling is a MikroTik RouterOS protocol designed to create an Ethernet tunnel between two routers over an IP network.

FlagNameDescription
Xdisableddisabled
Rrunningrunning
ArgumentTypeDescription
namestringName of the tunnel.
mtunumLayer3 maximum transmission unit.
mac-addressmacAddrMedia Access Control number of an interface. The address numeration authority IANA allows the use of MAC addresses in the range from 00:00:5E:80:00:00 - 00:00:5E:FF:FF:FF freely.
local-addressip6AddrSource address of the tunnel packets, local to the router.
remote-address ( mandatory )address (flags=6Dvi)IPV6 address of the remote end of the EoIP tunnel.
tunnel-id ( mandatory )numUnique tunnel identifier, which must match the other side of the tunnel.
keepalivesuper { keepalive-interval: time [1 .. ] , [keepalive-retries] [ ,num [1 .. ]] }

The keepalive parameter sets the time interval in which the tunnel running flag remains even if the remote end of the tunnel goes down. If the configured time and retries fail, the interface running flag is removed.
Parameters are written in the following format: KeepaliveInterval,KeepaliveRetries
where KeepaliveInterval is the time interval and KeepaliveRetries is the number of retry attempts.
By default keepalive is set to 10 seconds and 10 retries.

dscpnumDSCP value of the packet. Inherited means the DSCP value is inherited from the packet to be encapsulated.
clamp-tcp-mssboolControls whether to change MSS size for received TCP SYN packets. When enabled, the router changes the MSS size for received TCP SYN packets if the current MSS size exceeds the tunnel interface MTU (taking into account the TCP/IP overhead). The received encapsulated packet still contains the original MSS, and only after decapsulation the MSS is changed.
dont-fragmentbool

Whether to include the DF bit in related packets.

  • no - fragment if needed.
  • inherit - use the DF flag of the original packet.
ipsec-secret (syscap=security)stringWhen a secret is specified, the router adds a dynamic IPsec peer to remote-address with a pre-shared key and policy (by default phase2 uses sha1/aes128cbc).
arpenum (disabled | enabled | proxy-arp | reply-only | local-proxy-arp)

Address Resolution Protocol mode.

arp-timeoutalt { arp-timeout: enum (auto) { auto:0 } , arp-timeout: time }Time interval in which ARP entries time out.
arp-acceptboolWhether to accept gratuitous ARP replies.
loop-protectenum (default | off | on)Enables or disables loop protect on the selected interface. default works as turned off.
loop-protect-send-intervaltimeSets how often loop protect packets are sent on the selected interface.
loop-protect-disable-timetimeSets how long the selected interface is disabled when a loop is detected.
Read-only ArgumentTypeDescription
actual-mtunumActual maximum transmission unit of the tunnel.
l2mtunumLayer2 maximum transmission unit. Not configurable for EoIP.
current-remote-addressip6AddrCurrent IPv6 address of the remote end.
loop-protect-statusenum (off | on | disabled)

Loop protection status:

  • on - loop protect is enabled and the interface is sending and listening for loop protect packets
  • off - loop protect is disabled
  • disabled - loop protect is enabled, the interface has received a loop protect packet and disabled itself to prevent a loop.