Advertisement
korpo53

Untitled

Apr 24th, 2024
10
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.56 KB | None | 0 0
  1. /interface bridge add name=bridge1 vlan-filtering=yes
  2. /interface ethernet set [ find default-name=sfp-sfpplus1 ] auto-negotiation=no speed=10G-baseSR-LR
  3. /interface vlan add interface=bridge1 name=vlan99 vlan-id=99
  4. /interface list add name=wan
  5. /interface list add name=lan
  6. /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik
  7. /port set 0 name=serial0
  8. /port set 1 name=serial1
  9. /zerotier set zt1 comment="ZeroTier Central controller - https://my.zerotier.com/" disabled=yes disabled=yes name=zt1 port=9993
  10. /interface bridge port add bridge=bridge1 interface=sfp-sfpplus1
  11. /interface bridge port add bridge=bridge1 interface=ether1
  12. /interface bridge port add bridge=bridge1 interface=ether2
  13. /interface bridge port add bridge=bridge1 interface=ether3
  14. /interface bridge port add bridge=bridge1 interface=ether4
  15. /interface bridge port add bridge=bridge1 interface=ether5
  16. /interface bridge port add bridge=bridge1 interface=ether6
  17. /interface bridge port add bridge=bridge1 interface=ether7
  18. /interface bridge port add bridge=bridge1 interface=ether8
  19. /interface bridge port add bridge=bridge1 interface=ether9
  20. /ip neighbor discovery-settings set discover-interface-list=!dynamic
  21. /ip settings set max-neighbor-entries=6144
  22. /ipv6 settings set disable-ipv6=yes forward=no max-neighbor-entries=3072
  23. /interface bridge vlan add bridge=bridge1 tagged=sfp-sfpplus1 vlan-ids=99
  24. /interface list member add interface=vlan99 list=wan
  25. /interface list member add interface=bridge1 list=lan
  26. /ip cloud set ddns-enabled=yes ddns-update-interval=5m
  27. /ip dhcp-client add interface=vlan99 use-peer-dns=no use-peer-ntp=no
  28. /ip dns set servers=192.168.0.51
  29. (firewall rules here)
  30. /ip service set telnet disabled=yes
  31. /ip service set ftp disabled=yes
  32. /ip service set www disabled=yes
  33. /ip service set ssh address=192.168.0.0/16
  34. /ip service set api address=192.168.0.0/16
  35. /ip service set winbox address=192.168.0.0/16
  36. /ip service set api-ssl disabled=yes
  37. /ip smb set allow-guests=no
  38. /ip smb shares set [ find default=yes ] disabled=yes
  39. /system identity set name=rb4011
  40. /system note set show-at-login=no
  41. /system ntp client set enabled=yes
  42. /system ntp server set enabled=yes
  43. /system ntp client servers add address=216.239.35.0
  44. /system ntp client servers add address=216.239.35.4
  45. /system ntp client servers add address=216.239.35.8
  46. /system ntp client servers add address=216.239.35.12
  47. /system routerboard settings set auto-upgrade=yes
  48. /tool mac-server set allowed-interface-list=none
  49. /tool mac-server mac-winbox set allowed-interface-list=lan
  50. /tool mac-server ping set enabled=no
  51.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement