Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- /system reset-configuration no-defaults=yes
- /interface bridge add name=LAN
- /interface ethernet
- set [ find default-name=ether2 ] name=ether2-master-computer
- set [ find default-name=ether3 ] name=ether3-phone
- set [ find default-name=ether4 ] name=ether4-printer
- /interface wireless
- set [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-Ce \
- disabled=no distance=indoors frequency=auto mode=ap-bridge name=wlan1-2G \
- ssid=TSGx wireless-protocol=802.11
- set [ find default-name=wlan2 ] band=5ghz-a/n/ac channel-width=\
- 20/40/80mhz-Ceee disabled=no distance=indoors frequency=auto mode=\
- ap-bridge name=wlan2-5G ssid=TSGx wireless-protocol=802.11
- /interface wireless security-profiles
- set [ find default=yes ] authentication-types=wpa2-psk eap-methods="" mode=\
- dynamic-keys supplicant-identity=MikroTik wpa2-pre-shared-key=12monkeys
- add authentication-types=wpa2-eap eap-methods=eap-ttls-mschapv2 mode=\
- dynamic-keys mschapv2-password=norgren1 mschapv2-username=norgren1 name=\
- norgren supplicant-identity=MikroTik wpa2-pre-shared-key=12monkeys
- /ip dhcp-server option
- add code=66 name="PBX Option 66" value=\
- "'ftp://polycom:A6T31iF589g4i42@phone.terrasvc.com'"
- add code=160 name="PBX Option 160" value=\
- "'ftp://polycom:A6T31iF589g4i42@phone.terrasvc.com'"
- /ip dhcp-server option sets
- add name=default options="PBX Option 66,PBX Option 160"
- /ip hotspot profile
- set [ find default=yes ] html-directory=flash/hotspot
- /ip pool
- add name=default ranges=10.1.51.100-10.1.51.200
- /ip dhcp-server
- add address-pool=default disabled=no interface=LAN lease-time=3d name=default
- /interface bridge port
- add bridge=LAN comment=defconf interface=ether2-master-computer
- add bridge=LAN comment=defconf interface=wlan1-2G
- add bridge=LAN comment=defconf interface=wlan2-5G
- add bridge=LAN interface=ether3-phone
- add bridge=LAN interface=ether4-printer
- add bridge=LAN interface=ether5
- /interface list member
- add interface=ether2-master-computer list=discover
- add interface=ether3-phone list=discover
- add interface=ether4-printer list=discover
- add interface=ether5 list=discover
- add interface=wlan1-2G list=discover
- add interface=wlan2-5G list=discover
- add interface=LAN list=discover
- add interface=LAN list=mactel
- add interface=LAN list=mac-winbox
- /ip address
- add address=10.1.51.1/24 interface=LAN network=10.1.51.0
- /ip dhcp-client
- add comment=defconf dhcp-options=hostname,clientid disabled=no interface=\
- ether1 use-peer-dns=no
- /ip dhcp-server network
- add address=10.1.51.0/24 dhcp-option-set=default dns-server=\
- 10.1.51.1,10.1.0.4,10.1.1.90 domain=terrasvc.com gateway=10.1.51.1 \
- ntp-server=10.1.0.5
- /ip dns
- set allow-remote-requests=yes servers=10.1.0.4
- /ip dns static
- add address=10.1.51.1 name=router
- /ip firewall filter
- add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
- add action=accept chain=input comment="defconf: accept established,related" \
- connection-state=established,related
- add action=drop chain=input comment="defconf: drop all from WAN" \
- in-interface=ether1
- add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
- connection-state=established,related
- add action=accept chain=forward comment="defconf: accept established,related" \
- connection-state=established,related
- add action=drop chain=forward comment="defconf: drop invalid" \
- connection-state=invalid
- add action=drop chain=forward comment=\
- "defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
- connection-state=new in-interface=ether1
- /ip firewall nat
- add action=masquerade chain=srcnat comment="defconf: masquerade" \
- out-interface=ether1
- /ip route
- add distance=1 dst-address=10.0.0.0/8 gateway=10.1.0.1
- add distance=1 dst-address=10.1.1.0/24 gateway=10.1.200.1
- /system clock
- set time-zone-name=America/Los_Angeles
- /system routerboard settings
- set silent-boot=no
- /tool mac-server
- set allowed-interface-list=mactel
- /tool mac-server mac-winbox
- set allowed-interface-list=mac-winbox
- /interface ovpn-client
- add cipher=aes256 connect-to=216.243.2.74 name=\
- ovpn-Everett-Wave password=yUWuJap6mac8Ezaf profile=default-encryption \
- user=suddath
- add cipher=aes256 connect-to=174.127.185.34 \
- name=ovpn-Westin-Wave password=yUWuJap6mac8Ezaf profile=\
- default-encryption user=suddath
- /system reboot
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement