update mikrotik/mt-og.ke.einsle.de

This commit is contained in:
oxidized 2019-12-04 11:59:29 +01:00
parent 9df8bbb7a9
commit 0a531355ba

View File

@ -1,90 +1,84 @@
# /system routerboard print [oxidized@mt-og] > /system routerboard print # routerboard: yes
# routerboard: yes # model: 951G-2HnD
# model: 951G-2HnD # serial-number: 4F43045E20E0
# serial-number: 4F43045E20E0 # firmware-type: ar9344
# firmware-type: ar9344 # factory-firmware: 3.17
# factory-firmware: 3.17 # current-firmware: 6.46
# current-firmware: 6.45.7
# upgrade-firmware: 6.46 # upgrade-firmware: 6.46
# [oxidized@mt-og] > [oxidized@mt-og] > # /system package update print [oxidized@mt-og] > /system package update print #
# channel: stable # channel: stable
# installed-version: 6.46 # installed-version: 6.46
# [oxidized@mt-og] > [oxidized@mt-og] > # /system history print [oxidized@mt-og] > /system history print #
# Flags: U - undoable, R - redoable, F - floating-undo # Flags: U - undoable, R - redoable, F - floating-undo
#  ACTION BY POLICY # ACTION BY POLICY
# [oxidized@mt-og] > [oxidized@mt-og] > /export [oxidized@mt-og] > /export #
# dec/04/2019 11:05:38 by RouterOS 6.46 # software id = 3E75-0AYA
# software id = 3E75-0AYA #
# # model = 951G-2HnD
# model = 951G-2HnD # serial number = 4F43045E20E0
# serial number = 4F43045E20E0 /interface bridge
/interface bridge add name=br_mgmt protocol-mode=none
add name=br_mgmt protocol-mode=none add name=br_robert protocol-mode=none
add name=br_robert protocol-mode=none add name=br_server protocol-mode=none
add name=br_server protocol-mode=none add name=br_tobias protocol-mode=none
add name=br_tobias protocol-mode=none /interface wireless
/interface wireless # managed by CAPsMAN
# managed by CAPsMAN # channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
# channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding set [ find default-name=wlan1 ] ssid=MikroTik
set [ find default-name=wlan1 ] ssid=MikroTik /interface ethernet
/interface ethernet set [ find default-name=ether1 ] name=eth1_kg speed=100Mbps
set [ find default-name=ether1 ] name=eth1_kg speed=100Mbps set [ find default-name=ether2 ] speed=100Mbps
set [ find default-name=ether2 ] speed=100Mbps set [ find default-name=ether3 ] speed=100Mbps
set [ find default-name=ether3 ] speed=100Mbps set [ find default-name=ether4 ] speed=100Mbps
set [ find default-name=ether4 ] speed=100Mbps set [ find default-name=ether5 ] speed=100Mbps
set [ find default-name=ether5 ] speed=100Mbps /interface vlan
/interface vlan add interface=eth1_kg name=vlan1 vlan-id=1
add interface=eth1_kg name=vlan1 vlan-id=1 add interface=eth1_kg name=vlan10 vlan-id=10
add interface=eth1_kg name=vlan10 vlan-id=10 add interface=eth1_kg name=vlan42 vlan-id=42
add interface=eth1_kg name=vlan42 vlan-id=42 add interface=eth1_kg name=vlan50 vlan-id=50
add interface=eth1_kg name=vlan50 vlan-id=50 add interface=eth1_kg name=vlan51 vlan-id=51
add interface=eth1_kg name=vlan51 vlan-id=51 add interface=eth1_kg name=vlan52 vlan-id=52
add interface=eth1_kg name=vlan52 vlan-id=52 add interface=eth1_kg name=vlan60 vlan-id=60
add interface=eth1_kg name=vlan60 vlan-id=60 add interface=eth1_kg name=vlan90 vlan-id=90
add interface=eth1_kg name=vlan90 vlan-id=90 add interface=eth1_kg name=vlan99 vlan-id=99
add interface=eth1_kg name=vlan99 vlan-id=99 /interface wireless security-profiles
/interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik
set [ find default=yes ] supplicant-identity=MikroTik /routing bgp instance
/routing bgp instance set default disabled=yes
set default disabled=yes /routing ospf instance
/routing ospf instance set [ find default=yes ] disabled=yes
set [ find default=yes ] disabled=yes /snmp community
/snmp community set [ find default=yes ] addresses=172.24.0.0/16 name=jie6Wao5weeSahs
set [ find default=yes ] addresses=172.24.0.0/16 name=jie6Wao5weeSahs add addresses=172.24.1.0/24,172.24.10.0/24 authentication-password=nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=monitor security=private
add addresses=172.24.1.0/24,172.24.10.0/24 authentication-password=\ /interface bridge port
nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=\ add bridge=br_mgmt interface=vlan1
nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=monitor security=\ add bridge=br_server interface=vlan10
private add bridge=br_robert interface=vlan42
/interface bridge port add bridge=br_tobias interface=vlan51
add bridge=br_mgmt interface=vlan1 add bridge=br_tobias interface=ether2
add bridge=br_server interface=vlan10 add bridge=br_tobias interface=ether3
add bridge=br_robert interface=vlan42 add bridge=br_tobias interface=ether4
add bridge=br_tobias interface=vlan51 add bridge=br_tobias interface=ether5
add bridge=br_tobias interface=ether2 /interface wireless cap
add bridge=br_tobias interface=ether3 #
add bridge=br_tobias interface=ether4 set caps-man-addresses=172.24.1.97 enabled=yes interfaces=wlan1
add bridge=br_tobias interface=ether5 /ip address
/interface wireless cap add address=172.24.1.96/24 interface=br_mgmt network=172.24.1.0
# add address=172.24.10.96/24 interface=br_server network=172.24.10.0
set caps-man-addresses=172.24.1.97 enabled=yes interfaces=wlan1 add address=172.24.42.96/24 interface=br_robert network=172.24.42.0
/ip address /ip dns
add address=172.24.1.96/24 interface=br_mgmt network=172.24.1.0 set servers=172.24.10.11,172.24.10.12
add address=172.24.10.96/24 interface=br_server network=172.24.10.0 /ip route
add address=172.24.42.96/24 interface=br_robert network=172.24.42.0 add distance=1 gateway=172.24.1.1
/ip dns /ip ssh
set servers=172.24.10.11,172.24.10.12 set allow-none-crypto=yes forwarding-enabled=remote
/ip route /snmp
add distance=1 gateway=172.24.1.1 set contact="Robert Einsle <robert@einsle.de" enabled=yes location=Kempten
/ip ssh /system clock
set allow-none-crypto=yes forwarding-enabled=remote set time-zone-name=Europe/Berlin
/snmp /system identity
set contact="Robert Einsle <robert@einsle.de" enabled=yes location=Kempten set name=mt-og
/system clock /system ntp client
set time-zone-name=Europe/Berlin set enabled=yes primary-ntp=172.24.10.11 secondary-ntp=172.24.10.12
/system identity /tool romon
set name=mt-og set enabled=yes id=4C:5E:0C:70:A2:10 secrets=78f244b59c
/system ntp client
set enabled=yes primary-ntp=172.24.10.11 secondary-ntp=172.24.10.12
/tool romon
set enabled=yes id=4C:5E:0C:70:A2:10 secrets=78f244b59c
[oxidized@mt-og] > [oxidized@mt-og] >