update mikrotik/mt-dg.ke.einsle.de

This commit is contained in:
oxidized
2019-08-08 20:55:08 +02:00
parent 064722be6d
commit 213f2dcd23

View File

@@ -1,131 +1,107 @@
# /system routerboard print # routerboard: yes
[oxidized@mt-dg] > /system routerboard print # board-name: hAP ac
# # model: RouterBOARD 962UiGS-5HacT2HnT
routerboard: yes # serial-number: 67370685D272
# board-name: hAP ac # firmware-type: qca9550L
# model: RouterBOARD 962UiGS-5HacT2HnT # factory-firmware: 3.31
# serial-number: 67370685D272 # current-firmware: 6.45.3
# firmware-type: qca9550L
# upgrade-firmware: 6.45.3 # upgrade-firmware: 6.45.3
# current-firmware: 6.45.3 #
# upgrade-firmware: 6.45.3 # channel: stable
# installed-version: 6.45.3 # installed-version: 6.45.3
#
# Flags: U - undoable, R - redoable, F - floating-undo
# ACTION BY POLICY
[oxidized@mt-dg] > #
[oxidized@mt-dg] > # /system package update print # software id = 4J0Q-ELYL
[oxidized@mt-dg] > /system package update print #
# # model = RouterBOARD 962UiGS-5HacT2HnT
channel: stable # serial number = 67370685D272
# installed-version: 6.45.3 /interface bridge
# add fast-forward=no name=br_vlan1 protocol-mode=none
add fast-forward=no name=br_vlan10 protocol-mode=none
add fast-forward=no name=br_vlan42 protocol-mode=none
add fast-forward=no name=br_vlan50 protocol-mode=none
[oxidized@mt-dg] > add fast-forward=no name=br_vlan51 protocol-mode=none
[oxidized@mt-dg] > # /system history print add fast-forward=no name=br_vlan52 protocol-mode=none
[oxidized@mt-dg] > /system history print add fast-forward=no name=br_vlan99 protocol-mode=none
# add fast-forward=no name=br_wlan protocol-mode=none
Flags: U - undoable, R - redoable, F - floating-undo /interface ethernet
#  ACTION BY POLICY set [ find default-name=ether1 ] speed=100Mbps
# set [ find default-name=ether2 ] speed=100Mbps
set [ find default-name=ether3 ] speed=100Mbps
set [ find default-name=ether4 ] speed=100Mbps
set [ find default-name=ether5 ] speed=100Mbps
[oxidized@mt-dg] > set [ find default-name=sfp1 ] advertise=10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
[oxidized@mt-dg] > /export /interface wireless
[oxidized@mt-dg] > /export # managed by CAPsMAN
# channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
# aug/08/2019 19:55:03 by RouterOS 6.45.3 set [ find default-name=wlan1 ] ssid=MikroTik
# software id = 4J0Q-ELYL # managed by CAPsMAN
# # channel: 5180/20/ac(20dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding
# model = RouterBOARD 962UiGS-5HacT2HnT set [ find default-name=wlan2 ] ssid=MikroTik
# serial number = 67370685D272 /interface vlan
/interface bridge add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan42 vlan-id=42
add fast-forward=no name=br_vlan1 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan50 vlan-id=50
add fast-forward=no name=br_vlan10 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan51 vlan-id=51
add fast-forward=no name=br_vlan42 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan52 vlan-id=52
add fast-forward=no name=br_vlan50 protocol-mode=none add interface=br_wlan loop-protect-disable-time=0s loop-protect-send-interval=0s name=br_wlan_vlan99 vlan-id=99
add fast-forward=no name=br_vlan51 protocol-mode=none add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan1 vlan-id=1
add fast-forward=no name=br_vlan52 protocol-mode=none add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan10 vlan-id=10
add fast-forward=no name=br_vlan99 protocol-mode=none add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan42 vlan-id=42
add fast-forward=no name=br_wlan protocol-mode=none add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan50 vlan-id=50
/interface ethernet add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan51 vlan-id=51
set [ find default-name=ether1 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan52 vlan-id=52
set [ find default-name=ether2 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan60 vlan-id=60
set [ find default-name=ether3 ] speed=100Mbps add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=0s name=vlan99 vlan-id=99
set [ find default-name=ether4 ] speed=100Mbps /interface wireless security-profiles
set [ find default-name=ether5 ] speed=100Mbps set [ find default=yes ] supplicant-identity=MikroTik
set [ find default-name=sfp1 ] advertise=\ /ip hotspot profile
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full set [ find default=yes ] html-directory=flash/hotspot
/interface wireless /routing bgp instance
# managed by CAPsMAN set default disabled=yes
# channel: 2412/20/gn(10dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding /routing ospf instance
set [ find default-name=wlan1 ] ssid=MikroTik set [ find default=yes ] disabled=yes
# managed by CAPsMAN /snmp community
# channel: 5180/20/ac(20dBm), SSID: wifis.org/ke/bertling, CAPsMAN forwarding set [ find default=yes ] addresses=172.24.0.0/16 authentication-password=nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=jie6Wao5weeSahs
set [ find default-name=wlan2 ] ssid=MikroTik add addresses=172.24.1.0/24,172.24.10.0/24 authentication-password=nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=monitor security=private
/interface vlan /interface bridge port
add interface=br_wlan loop-protect-disable-time=0s \ add bridge=br_vlan1 interface=vlan1
loop-protect-send-interval=0s name=br_wlan_vlan42 vlan-id=42 add bridge=br_vlan10 interface=vlan10
add interface=br_wlan loop-protect-disable-time=0s \ add bridge=br_vlan42 interface=vlan42
loop-protect-send-interval=0s name=br_wlan_vlan50 vlan-id=50 add bridge=br_vlan50 interface=vlan50
add interface=br_wlan loop-protect-disable-time=0s \ add bridge=br_vlan51 interface=vlan51
loop-protect-send-interval=0s name=br_wlan_vlan51 vlan-id=51 add bridge=br_vlan52 interface=vlan52
add interface=br_wlan loop-protect-disable-time=0s \ add bridge=br_vlan10 hw=no interface=ether2
loop-protect-send-interval=0s name=br_wlan_vlan52 vlan-id=52 add bridge=br_vlan51 hw=no interface=ether3
add interface=br_wlan loop-protect-disable-time=0s \ add bridge=br_vlan51 hw=no interface=ether4
loop-protect-send-interval=0s name=br_wlan_vlan99 vlan-id=99 add bridge=br_vlan52 hw=no interface=ether5
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ add bridge=br_vlan42 interface=br_wlan_vlan42
0s name=vlan1 vlan-id=1 add bridge=br_vlan50 interface=br_wlan_vlan50
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ add bridge=br_vlan51 interface=br_wlan_vlan51
0s name=vlan10 vlan-id=10 add bridge=br_vlan52 interface=br_wlan_vlan52
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ add bridge=br_vlan99 interface=br_wlan_vlan99
0s name=vlan42 vlan-id=42 add bridge=br_vlan99 interface=vlan99
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ /interface wireless cap
0s name=vlan50 vlan-id=50 #
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ set bridge=br_wlan caps-man-addresses=172.24.1.97 enabled=yes interfaces=wlan1,wlan2
0s name=vlan51 vlan-id=51 /ip address
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ add address=172.24.1.95/24 interface=vlan1 network=172.24.1.0
0s name=vlan52 vlan-id=52 add address=172.24.10.95/24 interface=vlan10 network=172.24.10.0
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ add address=172.24.42.95/24 interface=vlan42 network=172.24.42.0
0s name=vlan60 vlan-id=60 /ip dns
add interface=ether1 loop-protect-disable-time=0s loop-protect-send-interval=\ set servers=172.24.10.11,172.24.10.12
0s name=vlan99 vlan-id=99 /ip route
/interface wireless security-profiles add distance=1 gateway=172.24.1.1
set [ find default=yes ] supplicant-identity=MikroTik /ip ssh
/ip hotspot profile set allow-none-crypto=yes forwarding-enabled=remote
set [ find default=yes ] html-directory=flash/hotspot /snmp
/routing bgp instance set contact="Robert Einsle <robert@einsle.de>" enabled=yes location="Kempten, Dachgeschoss" trap-version=3
set default disabled=yes /system clock
/routing ospf instance set time-zone-name=Europe/Berlin
set [ find default=yes ] disabled=yes /system identity
/snmp community set name=mt-dg
set [ find default=yes ] addresses=172.24.0.0/16 authentication-password=\ /system ntp client
nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=\ set enabled=yes primary-ntp=172.24.10.13 secondary-ntp=172.24.10.12
nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=jie6Wao5weeSahs /tool romon
add addresses=172.24.1.0/24,172.24.10.0/24 authentication-password=\ set enabled=yes id=6C:3B:6B:19:5C:58 secrets=78f244b59c
nUTIRozDeJMiQ2Goj8BR authentication-protocol=SHA1 encryption-password=\
nUTIRozDeJMiQ2Goj8BR encryption-protocol=AES name=monitor security=\
private
/interface bridge port
add bridge=br_vlan1 interface=vlan1
add bridge=br_vlan10 interface=vlan10
add bridge=br_vlan42 interface=vlan42
add bridge=br_vlan50 interface=vlan50
add bridge=br_vlan51 interface=vlan51
add bridge=br_vlan52 interface=vlan52
add bridge=br_vlan10 hw=no interface=ether2
add bridge=br_vlan51 hw=no interface=ether3
add bridge=br_vlan51 hw=no interface=ether4
add bridge=br_vlan52 hw=no interface=ether5
add bridge=br_vlan42 interface=br_wlan_vlan42
add bridge=br_vlan50 interface=br_wlan_vlan50
add bridge=br_vlan51 interface=br_wlan_vlan51
add bridge=br_vlan52 interface=br_wlan_vlan52
add bridge=br_vlan99 interface=br_wlan_vlan99
add bridge=br_vlan99 interface=vlan99
/interface wireless cap
#
set bridge=br_wlan caps-man-addresses=172.24.1.97 enabled=yes interfaces=\