update mikrotik/mt-dg.ke.einsle.de

This commit is contained in:
oxidized
2019-08-08 20:55:08 +02:00
parent 064722be6d
commit 213f2dcd23

View File

@@ -1,5 +1,4 @@
# /system routerboard print # routerboard: yes
[oxidized@mt-dg] > /system routerboard print
# board-name: hAP ac # board-name: hAP ac
# model: RouterBOARD 962UiGS-5HacT2HnT # model: RouterBOARD 962UiGS-5HacT2HnT
# serial-number: 67370685D272 # serial-number: 67370685D272
@@ -7,14 +6,13 @@
# factory-firmware: 3.31 # factory-firmware: 3.31
# current-firmware: 6.45.3 # current-firmware: 6.45.3
# upgrade-firmware: 6.45.3 # upgrade-firmware: 6.45.3
# current-firmware: 6.45.3 #
# upgrade-firmware: 6.45.3 # channel: stable
# installed-version: 6.45.3 # installed-version: 6.45.3
#
# Flags: U - undoable, R - redoable, F - floating-undo
# ACTION BY POLICY
[oxidized@mt-dg] > #
[oxidized@mt-dg] > # /system package update print
# software id = 4J0Q-ELYL # software id = 4J0Q-ELYL
# #
# model = RouterBOARD 962UiGS-5HacT2HnT # model = RouterBOARD 962UiGS-5HacT2HnT
@@ -34,8 +32,7 @@ set [ find default-name=ether2 ] speed=100Mbps
set [ find default-name=ether3 ] speed=100Mbps set [ find default-name=ether3 ] speed=100Mbps
set [ find default-name=ether4 ] speed=100Mbps set [ find default-name=ether4 ] speed=100Mbps
set [ find default-name=ether5 ] speed=100Mbps set [ find default-name=ether5 ] speed=100Mbps
[oxidized@mt-dg] > /export set [ find default-name=sfp1 ] advertise=10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
[oxidized@mt-dg] > /export
/interface wireless /interface wireless
# managed by CAPsMAN # managed by CAPsMAN
# channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding # channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
@@ -44,32 +41,19 @@ set [ find default-name=wlan1 ] ssid=MikroTik
# channel: 5180/20/ac(20dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding # channel: 5180/20/ac(20dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
set [ find default-name=wlan2 ] ssid=MikroTik set [ find default-name=wlan2 ] ssid=MikroTik
/interface vlan /interface vlan
add fast-forward=no name=br_vlan10 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan42 vlan-id=42
add fast-forward=no name=br_vlan42 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan50 vlan-id=50
add fast-forward=no name=br_vlan50 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan51 vlan-id=51
add fast-forward=no name=br_vlan51 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan52 vlan-id=52
add fast-forward=no name=br_vlan52 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan99 vlan-id=99
add fast-forward=no name=br_vlan99 protocol-mode=none add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan1 vlan-id=1
add fast-forward=no name=br_wlan protocol-mode=none add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan10 vlan-id=10
/interface ethernet add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan42 vlan-id=42
set [ find default-name=ether1 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan50 vlan-id=50
set [ find default-name=ether2 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan51 vlan-id=51
set [ find default-name=ether3 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan52 vlan-id=52
set [ find default-name=ether4 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan60 vlan-id=60
set [ find default-name=ether5 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan99 vlan-id=99
set [ find default-name=sfp1 ] advertise=\
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
/interface wireless
# managed by CAPsMAN
# channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
set [ find default-name=wlan1 ] ssid=MikroTik
# managed by CAPsMAN
# channel: 5180/20/ac(20dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
set [ find default-name=wlan2 ] ssid=MikroTik
/interface vlan
add interface=br_wlan loop-protect-disable-time=0s \
loop-protect-send-interval=0s name=br_wlan_vlan42 vlan-id=42
add interface=br_wlan loop-protect-disable-time=0s \
/interface wireless security-profiles /interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik set [ find default=yes ] supplicant-identity=MikroTik
/ip hotspot profile /ip hotspot profile
@@ -79,13 +63,8 @@ set default disabled=yes
/routing ospf instance /routing ospf instance
set [ find default=yes ] disabled=yes set [ find default=yes ] disabled=yes
/snmp community /snmp community
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ set [ find default=yes ] addresses=172.24.0.0/16 authentication-password=nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=jie6Wao5weeSahs
0s name=vlan10 vlan-id=10 add addresses=172.24.1.0/24,172.24.10.0/24 authentication-password=nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=monitor security=private
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\
0s name=vlan42 vlan-id=42
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\
0s name=vlan50 vlan-id=50
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\
/interface bridge port /interface bridge port
add bridge=br_vlan1 interface=vlan1 add bridge=br_vlan1 interface=vlan1
add bridge=br_vlan10 interface=vlan10 add bridge=br_vlan10 interface=vlan10
@@ -105,8 +84,7 @@ add bridge=br_vlan99 interface=br_wlan_vlan99
add bridge=br_vlan99 interface=vlan99 add bridge=br_vlan99 interface=vlan99
/interface wireless cap /interface wireless cap
# #
add addresses=172.24.1.0/24,172.24.10.0/24 authentication-password=\ set bridge=br_wlan caps-man-addresses=172.24.1.97 enabled=yes interfaces=wlan1,wlan2
nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=\
/ip address /ip address
add address=172.24.1.95/24 interface=vlan1 network=172.24.1.0 add address=172.24.1.95/24 interface=vlan1 network=172.24.1.0
add address=172.24.10.95/24 interface=vlan10 network=172.24.10.0 add address=172.24.10.95/24 interface=vlan10 network=172.24.10.0
@@ -118,8 +96,7 @@ add distance=1 gateway=172.24.1.1
/ip ssh /ip ssh
set allow-none-crypto=yes forwarding-enabled=remote set allow-none-crypto=yes forwarding-enabled=remote
/snmp /snmp
add bridge=br_vlan51 hw=no interface=ether4 set contact="Robert Einsle <robert@einsle.de>" enabled=yes location="Kempten, Dachgeschoss" trap-version=3
add bridge=br_vlan52 hw=no interface=ether5
/system clock /system clock
set time-zone-name=Europe/Berlin set time-zone-name=Europe/Berlin
/system identity /system identity
@@ -128,4 +105,3 @@ set name=mt-dg
set enabled=yes primary-ntp=172.24.10.13 secondary-ntp=172.24.10.12 set enabled=yes primary-ntp=172.24.10.13 secondary-ntp=172.24.10.12
/tool romon /tool romon
set enabled=yes id=6C:3B:6B:19:5C:58 secrets=78f244b59c set enabled=yes id=6C:3B:6B:19:5C:58 secrets=78f244b59c
set bridge=br_wlan caps-man-addresses=172.24.1.97 enabled=yes interfaces=\