# routerboard: yes # model: CRS317-1G-16S+ # revision: r2 # serial-number: D7EB0EF4DB43 # firmware-type: dx3230L # factory-firmware: 6.46.8 # current-firmware: 6.46.8 # upgrade-firmware: 6.46.8 # # channel: stable # installed-version: 6.46.8 # # Flags: U - undoable, R - redoable, F - floating-undo # ACTION BY POLICY # # software id = PE9K-D7XP # # model = CRS317-1G-16S+ # serial number = D7EB0EF4DB43 /interface bridge add admin-mac=2C:C8:1B:2F:C0:2B auto-mac=no comment=defconf ingress-filtering=yes name=bridge protocol-mode=none vlan-filtering=yes /interface ethernet set [ find default-name=sfp-sfpplus1 ] comment="SW DBUG" set [ find default-name=sfp-sfpplus2 ] comment="Conex\E3o Cliente - WireSystem DISTRITO" set [ find default-name=sfp-sfpplus3 ] comment=cheziquimica set [ find default-name=sfp-sfpplus4 ] comment=TRANSGW set [ find default-name=sfp-sfpplus5 ] comment="SPM PARTICIPACOES" set [ find default-name=sfp-sfpplus6 ] comment=CHURRASCARIA set [ find default-name=sfp-sfpplus7 ] comment=AROVEL set [ find default-name=sfp-sfpplus8 ] disabled=yes set [ find default-name=sfp-sfpplus9 ] disabled=yes set [ find default-name=sfp-sfpplus10 ] disabled=yes set [ find default-name=sfp-sfpplus11 ] disabled=yes set [ find default-name=sfp-sfpplus12 ] disabled=yes set [ find default-name=sfp-sfpplus13 ] disabled=yes set [ find default-name=sfp-sfpplus14 ] disabled=yes set [ find default-name=sfp-sfpplus15 ] disabled=yes set [ find default-name=sfp-sfpplus16 ] comment="UP Internet PGO" /interface vlan add interface=bridge name=vlan770-gerencia vlan-id=770 add interface=bridge name=vlan934 vlan-id=934 add interface=bridge name=vlan4026 vlan-id=4026 /interface list add name=Permit-Neighbors /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /ip hotspot profile set [ find default=yes ] html-directory=flash/hotspot /snmp community set [ find default=yes ] addresses=172.31.255.18/32 name=mikrotik@dbug /interface bridge port add bridge=bridge comment=defconf interface=ether1 add bridge=bridge comment=defconf interface=sfp-sfpplus1 pvid=769 add bridge=bridge comment=defconf interface=sfp-sfpplus2 add bridge=bridge comment=defconf interface=sfp-sfpplus3 add bridge=bridge comment=defconf interface=sfp-sfpplus4 add bridge=bridge comment=defconf interface=sfp-sfpplus7 add bridge=bridge comment=defconf interface=sfp-sfpplus8 add bridge=bridge comment=defconf interface=sfp-sfpplus9 add bridge=bridge comment=defconf interface=sfp-sfpplus10 add bridge=bridge comment=defconf interface=sfp-sfpplus11 add bridge=bridge comment=defconf interface=sfp-sfpplus12 add bridge=bridge comment=defconf interface=sfp-sfpplus13 add bridge=bridge comment=defconf interface=sfp-sfpplus14 add bridge=bridge comment=defconf interface=sfp-sfpplus15 add bridge=bridge comment=defconf interface=sfp-sfpplus16 add bridge=bridge interface=sfp-sfpplus5 add bridge=bridge comment=defconf interface=sfp-sfpplus6 /ip neighbor discovery-settings set discover-interface-list=Permit-Neighbors /ip settings set rp-filter=loose tcp-syncookies=yes /interface bridge vlan add bridge=bridge comment="Conexao cliente" tagged=sfp-sfpplus1,sfp-sfpplus2,sfp-sfpplus16 vlan-ids=769 add bridge=bridge comment=Gerencia tagged=sfp-sfpplus1,sfp-sfpplus2,sfp-sfpplus16,bridge vlan-ids=770 add bridge=bridge comment="Cliente Cheziquimica" tagged=sfp-sfpplus1,sfp-sfpplus3,sfp-sfpplus16 vlan-ids=4025 add bridge=bridge comment="Cliente TransGW" tagged=sfp-sfpplus1,sfp-sfpplus4,sfp-sfpplus16,bridge vlan-ids=4026 add bridge=bridge tagged=bridge,sfp-sfpplus1,sfp-sfpplus5,sfp-sfpplus16 vlan-ids=712 add bridge=bridge tagged=sfp-sfpplus1,sfp-sfpplus16,bridge,sfp-sfpplus6 vlan-ids=934 add bridge=bridge tagged=sfp-sfpplus7,sfp-sfpplus1,sfp-sfpplus16 vlan-ids=968 add bridge=bridge comment="VLANs UP" tagged=sfp-sfpplus1,sfp-sfpplus16 vlan-ids=928,936,972,980,1005 /interface list member add interface=sfp-sfpplus1 list=Permit-Neighbors /ip address add address=10.80.80.22/30 comment=defconf interface=vlan770-gerencia network=10.80.80.20 add address=192.168.88.232/24 interface=bridge network=192.168.88.0 add address=172.31.255.18/30 comment=defconf interface=vlan770-gerencia network=172.31.255.16 /ip route add check-gateway=ping distance=1 gateway=172.31.255.17 add check-gateway=ping distance=2 gateway=10.80.80.21 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set ssh address=45.225.65.10/32 port=2222 set api disabled=yes set winbox port=25000 set api-ssl disabled=yes /snmp set contact=Dbug enabled=yes location=Dsitrito-PoP-UP src-address=172.31.255.18 trap-version=2 /system clock set time-zone-autodetect=no time-zone-name=America/Sao_Paulo /system identity set name="Switch Distrito Industrial" /system logging add action=disk topics=account add action=disk topics=critical add action=disk topics=event add action=disk topics=health add action=disk topics=info add action=disk topics=interface add action=disk topics=manager add action=disk topics=system /system ntp client set enabled=yes primary-ntp=200.160.0.8 secondary-ntp=200.189.40.8 server-dns-names=8.8.8.8 /system routerboard settings set boot-os=router-os /tool bandwidth-server set authenticate=no enabled=no /tool romon set enabled=yes secrets=0nn3t*8102