Advertisement
Guest User

Untitled

a guest
Mar 29th, 2019
125
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.59 KB | None | 0 0
  1. # mar/29/2019 23:03:06 by RouterOS 6.44.1
  2. # software id = 786J-1D9H
  3. #
  4. # model = 2011UiAS-2HnD
  5. # serial number = 91E209D9B851
  6. /caps-man channel
  7. add band=2ghz-onlyn control-channel-width=20mhz frequency=2412 name=ch1_2412 tx-power=19
  8. add band=2ghz-onlyn control-channel-width=20mhz frequency=2437 name=ch6_2437 tx-power=19
  9. add band=2ghz-onlyn control-channel-width=20mhz frequency=2462 name=ch11_2462 tx-power=19
  10. add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5180 name=ch36_5180 tx-power=19
  11. add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5200 name=ch40_5200 tx-power=19
  12. add band=5ghz-a/n/ac control-channel-width=20mhz frequency=5220 name=ch44_5220 tx-power=19
  13. /interface bridge
  14. add admin-mac=B8:69:F4:DF:C0:B2 auto-mac=no comment=defconf name=bridge
  15. /interface pppoe-client
  16. add ac-name=a-tt add-default-route=yes allow=chap,mschap1,mschap2 disabled=no interface=sfp1 name=pppoe-out1 password=No5vidTo7v service-name=a-tt use-peer-dns=yes user=k040346
  17. /interface wireless
  18. set [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-XX disabled=no distance=indoors frequency=auto mode=ap-bridge ssid=MikroTik-DFC0BB wireless-protocol=\
  19. 802.11
  20. /caps-man datapath
  21. add bridge=bridge local-forwarding=yes name=datapath1
  22. /caps-man security
  23. add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm name=security1 passphrase=12345678
  24. /caps-man configuration
  25. add channel=ch1_2412 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch1 rx-chains=0,1,2,3 \
  26. security=security1 ssid=m2 tx-chains=0,1,2,3
  27. add channel=ch6_2437 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch6 rx-chains=0,1,2,3 \
  28. security=security1 ssid=m2 tx-chains=0,1,2,3
  29. add channel=ch11_2462 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch11 rx-chains=0,1,2,3 \
  30. security=security1 ssid=m2 tx-chains=0,1,2,3
  31. add channel=ch36_5180 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch36 rx-chains=0,1,2,3 \
  32. security=security1 ssid=m5 tx-chains=0,1,2,3
  33. add channel=ch40_5200 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch40 rx-chains=0,1,2,3 \
  34. security=security1 ssid=m5 tx-chains=0,1,2,3
  35. add channel=ch44_5220 country=russia3 datapath=datapath1 distance=indoors guard-interval=long max-sta-count=20 mode=ap multicast-helper=full name=cfg_ch44 rx-chains=0,1,2,3 \
  36. security=security1 ssid=m5 tx-chains=0,1,2,3
  37. /interface list
  38. add comment=defconf name=WAN
  39. add comment=defconf name=LAN
  40. /interface wireless security-profiles
  41. set [ find default=yes ] supplicant-identity=MikroTik
  42. /ip pool
  43. add name=dhcp ranges=192.168.88.10-192.168.88.254
  44. /ip dhcp-server
  45. add address-pool=dhcp disabled=no interface=bridge name=defconf
  46. /caps-man access-list
  47. add action=reject allow-signal-out-of-range=10s disabled=yes interface=any signal-range=-120..-85 ssid-regexp="" time=0s-1d,sun,mon,tue,wed,thu,fri,sat
  48. /caps-man manager
  49. set enabled=yes
  50. /caps-man provisioning
  51. add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=0AP0 master-configuration=cfg_ch36 name-format=prefix-identity
  52. add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=0AP0 master-configuration=cfg_ch1 name-format=prefix-identity
  53. add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=0AP1 master-configuration=cfg_ch6 name-format=prefix-identity
  54. add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=0AP2 master-configuration=cfg_ch11 name-format=prefix-identity
  55. add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=0AP1 master-configuration=cfg_ch40 name-format=prefix-identity
  56. add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=0AP2 master-configuration=cfg_ch44 name-format=prefix-identity
  57. add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=1AP0 master-configuration=cfg_ch6 name-format=prefix-identity
  58. add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=1AP0 master-configuration=cfg_ch40 name-format=prefix-identity
  59. add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=1AP1 master-configuration=cfg_ch1 name-format=prefix-identity
  60. add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=1AP1 master-configuration=cfg_ch36 name-format=prefix-identity
  61. add action=create-dynamic-enabled hw-supported-modes=gn identity-regexp=2AP0 master-configuration=cfg_ch11 name-format=prefix-identity
  62. add action=create-dynamic-enabled hw-supported-modes=ac identity-regexp=2AP0 master-configuration=cfg_ch44 name-format=prefix-identity
  63. /interface bridge port
  64. add bridge=bridge comment=defconf interface=ether2
  65. add bridge=bridge comment=defconf interface=ether3
  66. add bridge=bridge comment=defconf interface=ether4
  67. add bridge=bridge comment=defconf interface=ether5
  68. add bridge=bridge comment=defconf interface=ether6
  69. add bridge=bridge comment=defconf interface=ether7
  70. add bridge=bridge comment=defconf interface=ether8
  71. add bridge=bridge comment=defconf interface=ether9
  72. add bridge=bridge comment=defconf interface=ether10
  73. add bridge=bridge comment=defconf disabled=yes interface=sfp1
  74. add bridge=bridge comment=defconf interface=wlan1
  75. add bridge=bridge interface=ether1
  76. /ip neighbor discovery-settings
  77. set discover-interface-list=LAN
  78. /interface list member
  79. add comment=defconf interface=bridge list=LAN
  80. add interface=pppoe-out1 list=WAN
  81. /ip address
  82. add address=192.168.88.1/24 comment=defconf interface=ether1 network=192.168.88.0
  83. /ip dhcp-client
  84. add comment=defconf dhcp-options=hostname,clientid interface=sfp1
  85. /ip dhcp-server network
  86. add address=192.168.88.0/24 comment=defconf gateway=192.168.88.1
  87. /ip dns
  88. set allow-remote-requests=yes
  89. /ip dns static
  90. add address=192.168.88.1 name=router.lan
  91. /ip firewall filter
  92. add action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untracked disabled=yes
  93. add action=drop chain=input comment="defconf: drop invalid" connection-state=invalid disabled=yes
  94. add action=accept chain=input comment="defconf: accept ICMP" disabled=yes protocol=icmp
  95. add action=drop chain=input comment="defconf: drop all not coming from LAN" disabled=yes in-interface-list=!LAN
  96. add action=accept chain=forward comment="defconf: accept in ipsec policy" disabled=yes ipsec-policy=in,ipsec
  97. add action=accept chain=forward comment="defconf: accept out ipsec policy" disabled=yes ipsec-policy=out,ipsec
  98. add action=fasttrack-connection chain=forward comment="defconf: fasttrack" connection-state=established,related disabled=yes
  99. add action=accept chain=forward comment="defconf: accept established,related, untracked" connection-state=established,related,untracked disabled=yes
  100. add action=drop chain=forward comment="defconf: drop invalid" connection-state=invalid disabled=yes
  101. add action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat connection-state=new disabled=yes in-interface-list=WAN
  102. /ip firewall nat
  103. add action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=out,none out-interface-list=WAN
  104. /lcd interface pages
  105. set 0 interfaces=wlan1
  106. /system clock
  107. set time-zone-name=Asia/Krasnoyarsk
  108. /system routerboard settings
  109. set silent-boot=yes
  110. /tool mac-server
  111. set allowed-interface-list=LAN
  112. /tool mac-server mac-winbox
  113. set allowed-interface-list=LAN
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement