Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # jan/02/1970 02:44:17 by RouterOS 6.46.3
- # software id = NHXT-8UUY
- #
- # model = RouterBOARD 952Ui-5ac2nD
- # serial number = 7C3008EB9CDD
- /interface bridge
- add name=bridge_LAN
- add name=bridge_loopback
- /interface ethernet
- set [ find default-name=ether1 ] comment="to ISP1"
- set [ find default-name=ether2 ] comment="to ISP2"
- set [ find default-name=ether3 ] comment="to LAN1"
- set [ find default-name=ether4 ] comment="to LAN1"
- set [ find default-name=ether5 ] comment="to LAN2"
- /interface list
- add comment="For Internet" name=WAN
- add comment="For Local Area" name=LAN
- /interface wireless security-profiles
- set [ find default=yes ] supplicant-identity=MikroTik
- add authentication-types=wpa-psk,wpa2-psk eap-methods="" \
- management-protection=allowed mode=dynamic-keys name=HomeWIFI \
- supplicant-identity="" wpa-pre-shared-key=12345678 \
- wpa2-pre-shared-key=12345678
- /interface wireless
- set [ find default-name=wlan2 ] antenna-gain=0 band=5ghz-a/n/ac \
- channel-width=20/40/80mhz-XXXX comment=Wireless country=no_country_set \
- disabled=no distance=indoors frequency=auto frequency-mode=manual-txpower \
- installation=indoor mode=ap-bridge name=wifi security-profile=HomeWIFI \
- ssid=MikroTik wireless-protocol=802.11
- set [ find default-name=wlan1 ] antenna-gain=0 band=2ghz-b/g/n channel-width=\
- 20/40mhz-XX country=no_country_set disabled=no distance=indoors \
- frequency=auto frequency-mode=manual-txpower installation=indoor mode=\
- ap-bridge name=wifi2g security-profile=HomeWIFI ssid=MikroTik_2G \
- wireless-protocol=802.11
- /interface wireless nstreme
- set wifi comment=Wireless
- /interface wireless manual-tx-power-table
- set wifi comment=Wireless
- /ip hotspot profile
- set [ find default=yes ] html-directory=flash/hotspot
- /ip pool
- add name=dhcp_pool0 ranges=192.168.1.2-192.168.1.150
- /ip dhcp-server
- add address-pool=dhcp_pool0 disabled=no interface=bridge_LAN lease-time=1d \
- name=dhcp1
- /ppp profile
- add comment="for PPPoE to ISP2" interface-list=WAN name=isp2_client
- add comment="for PPPoE to ISP1" interface-list=WAN name=isp1_client
- /interface pppoe-client
- add allow=mschap2 comment="to ISP1" disabled=no interface=ether1 name=\
- pppoe-isp1 password=isp1_pass profile=isp1_client user=isp1_user
- add allow=mschap2 comment="to ISP2" disabled=no interface=ether2 name=\
- pppoe-isp2 password=isp2_pass profile=isp2_client user=isp2_user
- /interface bridge port
- add bridge=bridge_LAN interface=wifi2g
- add bridge=bridge_LAN interface=wifi
- add bridge=bridge_LAN interface=ether3
- add bridge=bridge_LAN interface=ether4
- /interface list member
- add comment=ISP1 interface=ether1 list=WAN
- add comment=ISP2 interface=ether2 list=WAN
- add comment=LAN1 interface=ether3 list=LAN
- add comment=LAN1 interface=ether4 list=LAN
- add interface=wifi2g list=LAN
- add interface=wifi list=LAN
- add comment=LAN2 interface=ether5 list=LAN
- add interface=pppoe-isp2 list=WAN
- /ip address
- add address=192.168.1.1/24 comment="WIFI IP" interface=bridge_LAN network=\
- 192.168.1.0
- /ip dhcp-server network
- add address=192.168.1.0/24 gateway=192.168.1.1
- /ip dns
- set servers=1.1.1.1,8.8.8.8,8.8.4.4
- /ip firewall mangle
- add action=mark-routing chain=prerouting dst-port=443 in-interface=bridge_LAN \
- new-routing-mark=table_1 passthrough=no per-connection-classifier=\
- src-address:2/0 protocol=tcp
- add action=mark-routing chain=prerouting dst-port=443 in-interface=bridge_LAN \
- new-routing-mark=table_2 passthrough=no per-connection-classifier=\
- src-address:2/1 protocol=tcp
- add action=mark-routing chain=prerouting in-interface=bridge_LAN \
- new-routing-mark=table_1 passthrough=no per-connection-classifier=\
- both-addresses:2/0
- add action=mark-routing chain=prerouting in-interface=bridge_LAN \
- new-routing-mark=table_2 passthrough=no per-connection-classifier=\
- both-addresses:2/1
- add action=mark-routing chain=output new-routing-mark=table_1 passthrough=no
- add action=mark-routing chain=output new-routing-mark=table_2 passthrough=no
- add action=mark-routing chain=output dst-address=8.8.4.4 new-routing-mark=\
- icmp_table_1 passthrough=no
- add action=mark-routing chain=output dst-address=8.8.8.8 new-routing-mark=\
- icmp_table_2 passthrough=no
- /ip route
- add distance=1 dst-address=192.168.1.0/24 gateway=bridge_LAN routing-mark=\
- table_1
- add distance=1 dst-address=192.168.1.0/24 gateway=bridge_LAN routing-mark=\
- table_2
- add distance=1 gateway=bridge_loopback
- /ip route rule
- add disabled=yes routing-mark=table_1 table=table_1
- add routing-mark=table_1 table=table_2
- add disabled=yes routing-mark=table_2 table=table_2
- add routing-mark=table_2 table=table_1
- add action=lookup-only-in-table routing-mark=icmp_table_1 table=table_1
- add action=lookup-only-in-table routing-mark=icmp_table_2 table=table_2
- /ip route vrf
- add interfaces=pppoe-isp1 routing-mark=table_1
- add interfaces=pppoe-isp2 routing-mark=table_2
- /system ntp client
- set enabled=yes server-dns-names=0.pool.ntp.org,1.pool.ntp.org,2.pool.ntp.org
- /tool netwatch
- add down-script="ip route rule set disabled=yes numbers=2" host=8.8.8.8 \
- interval=20s up-script="ip route rule set disabled=no numbers=2"
- add down-script="ip route rule set disabled=yes numbers=0" host=8.8.4.4 \
- interval=20s up-script="ip route rule set disabled=no numbers=0"
Add Comment
Please, Sign In to add comment