Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # mar/29/2019 23:03:06 by RouterOS 6.44.1
- # software id = 786J-1D9H
- #
- # model = 2011UiAS-2HnD
- # serial number = 91E209D9B851
- /caps-man channel
- add band=2ghz-onlyn control-channel-width=20mhz frequency=2412 name=ch1_2412 tx-power=19
- add band=2ghz-onlyn control-channel-width=20mhz frequency=2437 name=ch6_2437 tx-power=19
- add band=2ghz-onlyn control-channel-width=20mhz frequency=2462 name=ch11_2462 tx-power=19
- add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5180 name=ch36_5180 tx-power=19
- add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5200 name=ch40_5200 tx-power=19
- add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5220 name=ch44_5220 tx-power=19
- /interface bridge
- add admin-mac=B8:69:F4:DF:C0:B2 auto-mac=no comment=defconf name=bridge
- /interface pppoe-client
- add ac-name=a-tt add-default-route=yes allow=chap,mschap1,mschap2 disabled=no interface=sfp1 name=pppoe-out1 password=No5vidTo7v service-name=a-tt use-peer-dns=yes user=k040346
- /interface wireless
- set [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-XX disabled=no distance=indoors frequency=auto mode=ap-bridge ssid=MikroTik-DFC0BB wireless-protocol=\
- 802.11
- /caps-man datapath
- add bridge=bridge local-forwarding=yes name=datapath1
- /caps-man security
- add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm name=security1 passphrase=12345678
- /caps-man configuration
- add channel=ch1_2412 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch1 rx-chains=0,1,2,3 \
- security=security1 ssid=m2 tx-chains=0,1,2,3
- add channel=ch6_2437 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch6 rx-chains=0,1,2,3 \
- security=security1 ssid=m2 tx-chains=0,1,2,3
- add channel=ch11_2462 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch11 rx-chains=0,1,2,3 \
- security=security1 ssid=m2 tx-chains=0,1,2,3
- add channel=ch36_5180 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch36 rx-chains=0,1,2,3 \
- security=security1 ssid=m5 tx-chains=0,1,2,3
- add channel=ch40_5200 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch40 rx-chains=0,1,2,3 \
- security=security1 ssid=m5 tx-chains=0,1,2,3
- add channel=ch44_5220 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch44 rx-chains=0,1,2,3 \
- security=security1 ssid=m5 tx-chains=0,1,2,3
- /interface list
- add comment=defconf name=WAN
- add comment=defconf name=LAN
- /interface wireless security-profiles
- set [ find default=yes ] supplicant-identity=MikroTik
- /ip pool
- add name=dhcp ranges=192.168.88.10-192.168.88.254
- /ip dhcp-server
- add address-pool=dhcp disabled=no interface=bridge name=defconf
- /caps-man access-list
- add action=reject allow-signal-out-of-range=10s disabled=yes interface=any signal-range=-120..-85 ssid-regexp="" time=0s-1d,sun,mon,tue,wed,thu,fri,sat
- /caps-man manager
- set enabled=yes
- /caps-man provisioning
- add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=0AP0 master-configuration=cfg_ch36 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=0AP0 master-configuration=cfg_ch1 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=0AP1 master-configuration=cfg_ch6 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=0AP2 master-configuration=cfg_ch11 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=0AP1 master-configuration=cfg_ch40 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=0AP2 master-configuration=cfg_ch44 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=1AP0 master-configuration=cfg_ch6 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=1AP0 master-configuration=cfg_ch40 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=1AP1 master-configuration=cfg_ch1 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=1AP1 master-configuration=cfg_ch36 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=2AP0 master-configuration=cfg_ch11 name-format=prefix-identity
- add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=2AP0 master-configuration=cfg_ch44 name-format=prefix-identity
- /interface bridge port
- add bridge=bridge comment=defconf interface=ether2
- add bridge=bridge comment=defconf interface=ether3
- add bridge=bridge comment=defconf interface=ether4
- add bridge=bridge comment=defconf interface=ether5
- add bridge=bridge comment=defconf interface=ether6
- add bridge=bridge comment=defconf interface=ether7
- add bridge=bridge comment=defconf interface=ether8
- add bridge=bridge comment=defconf interface=ether9
- add bridge=bridge comment=defconf interface=ether10
- add bridge=bridge comment=defconf disabled=yes interface=sfp1
- add bridge=bridge comment=defconf interface=wlan1
- add bridge=bridge interface=ether1
- /ip neighbor discovery-settings
- set discover-interface-list=LAN
- /interface list member
- add comment=defconf interface=bridge list=LAN
- add interface=pppoe-out1 list=WAN
- /ip address
- add address=192.168.88.1/24 comment=defconf interface=ether1 network=192.168.88.0
- /ip dhcp-client
- add comment=defconf dhcp-options=hostname,clientid interface=sfp1
- /ip dhcp-server network
- add address=192.168.88.0/24 comment=defconf gateway=192.168.88.1
- /ip dns
- set allow-remote-requests=yes
- /ip dns static
- add address=192.168.88.1 name=router.lan
- /ip firewall filter
- add action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untracked disabled=yes
- add action=drop chain=input comment="defconf: drop invalid" connection-state=invalid disabled=yes
- add action=accept chain=input comment="defconf: accept ICMP" disabled=yes protocol=icmp
- add action=drop chain=input comment="defconf: drop all not coming from LAN" disabled=yes in-interface-list=!LAN
- add action=accept chain=forward comment="defconf: accept in ipsec policy" disabled=yes ipsec-policy=in,ipsec
- add action=accept chain=forward comment="defconf: accept out ipsec policy" disabled=yes ipsec-policy=out,ipsec
- add action=fasttrack-connection chain=forward comment="defconf: fasttrack" connection-state=established,related disabled=yes
- add action=accept chain=forward comment="defconf: accept established,related, untracked" connection-state=established,related,untracked disabled=yes
- add action=drop chain=forward comment="defconf: drop invalid" connection-state=invalid disabled=yes
- add action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat connection-state=new disabled=yes in-interface-list=WAN
- /ip firewall nat
- add action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=out,none out-interface-list=WAN
- /lcd interface pages
- set 0 interfaces=wlan1
- /system clock
- set time-zone-name=Asia/Krasnoyarsk
- /system routerboard settings
- set silent-boot=yes
- /tool mac-server
- set allowed-interface-list=LAN
- /tool mac-server mac-winbox
- set allowed-interface-list=LAN
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement