-A FORWARD -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
[admin@MikroTik] /interface wireless> print
Flags: X - disabled, R - running
0 R name="wlan1" mtu=1500 mac-address=4C:5E:0C:09:3E:7B arp=enabled
interface-type=Atheros AR9300 mode=ap-bridge ssid="3500" frequency=auto
band=2ghz-b/g/n channel-width=20/40mhz-Ce scan-list=default
wireless-protocol=802.11 vlan-mode=no-tag vlan-id=1 wds-mode=disabled
wds-default-bridge=none wds-ignore-ssid=no bridge-mode=enabled
default-authentication=yes default-forwarding=yes default-ap-tx-limit=0
default-client-tx-limit=0 hide-ssid=no security-profile=default
compression=no
1 name="wlan2" mtu=1500 mac-address=4E:5E:0C:09:3E:7B arp=enabled
interface-type=virtual-AP master-interface=wlan1 ssid=""
vlan-mode=no-tag vlan-id=1 wds-mode=disabled wds-default-bridge=none
wds-ignore-ssid=no bridge-mode=enabled default-authentication=yes
default-forwarding=yes default-ap-tx-limit=0 default-client-tx-limit=0
hide-ssid=no security-profile=default
2 name="wlan3" mtu=1500 mac-address=4E:5E:0C:09:3E:7C arp=enabled
interface-type=virtual-AP master-interface=wlan1 ssid=""
vlan-mode=no-tag vlan-id=1 wds-mode=disabled wds-default-bridge=none
wds-ignore-ssid=no bridge-mode=enabled default-authentication=yes
default-forwarding=yes default-ap-tx-limit=0 default-client-tx-limit=0
hide-ssid=no security-profile=default
3 name="wlan4" mtu=1500 mac-address=4E:5E:0C:09:3E:7D arp=enabled
interface-type=virtual-AP master-interface=wlan1 ssid=""
vlan-mode=no-tag vlan-id=1 wds-mode=disabled wds-default-bridge=none
wds-ignore-ssid=no bridge-mode=enabled default-authentication=yes
default-forwarding=yes default-ap-tx-limit=0 default-client-tx-limit=0
hide-ssid=no security-profile=default
4 name="wlan5" mtu=1500 mac-address=4E:5E:0C:09:3E:7E arp=enabled
interface-type=virtual-AP master-interface=wlan1 ssid=""
vlan-mode=no-tag vlan-id=1 wds-mode=disabled wds-default-bridge=none
wds-ignore-ssid=no bridge-mode=enabled default-authentication=yes
default-forwarding=yes default-ap-tx-limit=0 default-client-tx-limit=0
hide-ssid=no security-profile=default
> interface print
Flags: D - dynamic, X - disabled, R - running, S - slave
# NAME TYPE ACTUAL-MTU L2MTU MAX-L2MTU MAC-ADDRESS
0 R ether1-gateway ether 1500 1598 4074 4C:5E:0C:58:DC:84
1 RS ether2-master-local ether 1500 1598 4074 4C:5E:0C:58:DC:85
2 RS ether3-slave-local ether 1500 1598 4074 4C:5E:0C:58:DC:86
3 R ether4-slave-local ether 1500 1598 4074 4C:5E:0C:58:DC:87
4 R ether5-slave-local ether 1500 1598 4074 4C:5E:0C:58:DC:88
5 X wlan-guest wlan 4E:5E:0C:58:DC:8A
6 RS wlan-home wlan 1500 2290 4C:5E:0C:58:DC:89
7 DR <ovpn-mikrotik> ovpn-in 1500
8 DR <ovpn-pavloof-1> ovpn-in 1500
9 R bridge-local bridge 1500 1598 4C:5E:0C:58:DC:85
10 X bridge1 bridge 00:00:00:00:00:00
11 X eoip-tunnel1 eoip 1458 65535 02:E5:1F:8D:C1:C3
12 R l2tp-out1 l2tp-out 1450
13 R loopback bridge 1500 65535 00:00:00:00:00:00
14 X ppp-out1 ppp-out
15 R pptp-out1 pptp-out 1450
16 R ;;; test vlan_ctrl_to_switch
vlan12 vlan 1500 1594 4C:5E:0C:58:DC:88
17 R vlan2800 vlan 1500 1594 4C:5E:0C:58:DC:84
18 ;;; test vlan_dhcp_to_switch
vlan3692 vlan 1500 65531 02:E5:1F:8D:C1:C3
Прошу помощи в настройке и совета модели основного микротика.