Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # dec/26/2017 19:30:14 by RouterOS 6.39.3
- # software id = 65DZ-MDDM
- #
- /interface bridge
- add admin-mac=64:D1:54:A1:88:7A auto-mac=no name=bridge-local
- add name=bridge-public_wifi
- /interface wireless
- set [ find default-name=wlan1 ] disabled=no mode=ap-bridge name=wlan ssid=\
- Nike-Private
- /interface ethernet
- set [ find default-name=ether2 ] name=ether2-master-local
- set [ find default-name=ether3 ] master-port=ether2-master-local name=\
- ether3-slave-local
- set [ find default-name=ether4 ] master-port=ether2-master-local name=\
- ether4-slave-local
- set [ find default-name=ether5 ] master-port=ether2-master-local name=\
- ether5-slave-local
- set [ find default-name=ether1 ] name=wan
- /interface wireless security-profiles
- set [ find default=yes ] authentication-types=wpa-psk,wpa2-psk mode=\
- dynamic-keys supplicant-identity=MikroTik wpa-pre-shared-key=MY_Pass \
- wpa2-pre-shared-key=MY_Pass
- add authentication-types=wpa-psk,wpa2-psk eap-methods="" management-protection=\
- allowed name=public_wifi supplicant-identity=""
- /interface wireless
- add disabled=no keepalive-frames=disabled mac-address=66:D1:54:A1:88:7E \
- master-interface=wlan multicast-buffering=disabled name="Nike Public" \
- security-profile=public_wifi ssid="Nike Public" wds-cost-range=0 \
- wds-default-cost=0 wps-mode=disabled
- /ip pool
- add name=lan-dhcp ranges=192.168.66.10-192.168.66.253
- add name=pool_public_wifi ranges=10.1.1.2-10.1.1.50
- /ip dhcp-server
- add address-pool=lan-dhcp disabled=no interface=bridge-local name=default
- add address-pool=pool_public_wifi authoritative=after-2sec-delay disabled=no \
- interface=bridge-public_wifi lease-time=12h name=dhcp_public_wifi
- /interface bridge port
- add bridge=bridge-local interface=ether2-master-local
- add bridge=bridge-local interface=wlan
- add bridge=bridge-public_wifi interface="Nike Public"
- /ip address
- add address=192.168.66.254/24 interface=bridge-local network=192.168.66.0
- add address=178.168.63.116/24 interface=wan network=178.168.63.0
- add address=10.1.1.1/24 interface="Nike Public" network=10.1.1.0
- /ip dhcp-server network
- add address=10.1.1.0/24 dns-server=8.8.8.8,8.8.4.4 gateway=10.1.1.1 netmask=24
- add address=192.168.66.0/24 dns-server=192.168.66.254 gateway=192.168.66.254
- /ip dns
- set allow-remote-requests=yes servers=8.8.8.8,8.8.4.4
- /ip dns static
- add address=192.168.66.254 name=router
- /ip firewall address-list
- add address=192.168.66.0/24 list=inet
- /ip firewall filter
- add action=accept chain=input comment=icmp protocol=icmp
- add action=accept chain=input comment=established connection-state=established
- add action=accept chain=input comment=related connection-state=related
- add action=accept chain=input comment=manage in-interface=bridge-local
- add action=drop chain=input comment="all other drop" in-interface=wan
- add action=drop chain=forward comment="Drop invalid connection packets" \
- connection-state=invalid
- add action=accept chain=forward comment="Allow established connections" \
- connection-state=established
- add action=accept chain=forward comment="Allow related connections" \
- connection-state=related
- add action=accept chain=forward comment="Allow acess to internet" in-interface=\
- bridge-local out-interface=wan src-address-list=inet
- add action=drop chain=forward comment="All other drop"
- /ip firewall nat
- add action=masquerade chain=srcnat out-interface=wan
- /ip route
- add comment=isp distance=2 gateway=178.168.63.254
- /system clock
- set time-zone-name=Europe/Chisinau
- /system clock manual
- set time-zone=+02:00
- /system identity
- set name="MikroTik"
- /system routerboard settings
- set init-delay=0s
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement