# routerboard: yes # model: CCR1036-8G-2S+ # revision: r2 # serial-number: 968E0B2D23B0 # firmware-type: tilegx # factory-firmware: 6.45.1 # current-firmware: 6.45.1 # upgrade-firmware: 6.45.1 # # channel: stable # installed-version: 6.45.1 # # Flags: U - undoable, R - redoable, F - floating-undo # ACTION BY POLICY # U address changed admin write # U address changed admin write # U route changed admin write # U route changed admin write # U route changed admin write # U item added admin write # U item added admin write # U bgp network 45.182.132.0/24 changed admin write # U bgp network 45.182.133.0/24 changed admin write # U bgp network 45.182.132.0/22 changed admin write # U bgp network 45.182.132.0/22 changed admin write # U bgp network 45.182.133.0/24 changed admin write # U bgp network 45.182.132.0/24 changed admin write # U bgp network 45.182.132.0/24 changed admin write # U bgp network 45.182.133.0/24 changed admin write # U bgp network 45.182.132.0/23 changed admin write # U bgp network 45.182.133.0/25 added admin write # U item changed admin write # U bgp network 45.182.132.128/25 added admin write # U bgp network 45.182.132.0/25 added admin write # U bgp peer BGP changed admin write # U bgp instance asn-dbug added admin write # # software id = MMH8-DBAU # # model = CCR1036-8G-2S+ # serial number = 968E0B2D23B0 /interface bridge add name=GERENCIA_DCN protocol-mode=none add name=PPPoE-NE40 protocol-mode=none add name=TRANSPORTE-UPINTERNET protocol-mode=none add name=bridge1 protocol-mode=none add name=bridge_1101 protocol-mode=none add name=bridge_1102 protocol-mode=none add name=bridge_1103 protocol-mode=none add name=bridge_1104 protocol-mode=none add name=bridge_1105 protocol-mode=none add name=bridge_1106 protocol-mode=none add name=bridge_1107 protocol-mode=none add name=bridge_1108 protocol-mode=none add name=bridge_1109 protocol-mode=none add name=bridge_1110 protocol-mode=none add name=bridge_1111 protocol-mode=none add name=bridge_1112 protocol-mode=none add name=bridge_1113 protocol-mode=none add name=bridge_1114 protocol-mode=none add name=bridge_1115 protocol-mode=none add name=bridge_1116 protocol-mode=none add name=bridge_1201 protocol-mode=none add name=bridge_1202 protocol-mode=none add name=bridge_1203 protocol-mode=none add name=bridge_1204 protocol-mode=none add name=bridge_1205 protocol-mode=none add name=bridge_1206 protocol-mode=none add name=bridge_1207 protocol-mode=none add name=bridge_1208 protocol-mode=none add name=bridge_1209 protocol-mode=none add name=bridge_1210 protocol-mode=none add name=bridge_1211 protocol-mode=none add name=bridge_1212 protocol-mode=none add name=bridge_1213 protocol-mode=none add name=bridge_1214 protocol-mode=none add name=bridge_1215 protocol-mode=none add name=bridge_1216 protocol-mode=none add name=bridge_vlan123 protocol-mode=none /interface ethernet set [ find default-name=ether2 ] comment=GERENCIA-PADTECDCN set [ find default-name=sfp-sfpplus1 ] comment="UPLINK: PR-TBO-A001-BKB-001" set [ find default-name=sfp-sfpplus2 ] comment="UPLINK: PR-CE-ORTIGUEIRA" /interface vlan add interface=sfp-sfpplus2 name=prov_vlan123 vlan-id=123 add interface=sfp-sfpplus2 name=prov_vlan1101 vlan-id=1101 add interface=sfp-sfpplus2 name=prov_vlan1102 vlan-id=1102 add interface=sfp-sfpplus2 name=prov_vlan1103 vlan-id=1103 add interface=sfp-sfpplus2 name=prov_vlan1104 vlan-id=1104 add interface=sfp-sfpplus2 name=prov_vlan1105 vlan-id=1105 add interface=sfp-sfpplus2 name=prov_vlan1106 vlan-id=1106 add interface=sfp-sfpplus2 name=prov_vlan1107 vlan-id=1107 add interface=sfp-sfpplus2 name=prov_vlan1108 vlan-id=1108 add interface=sfp-sfpplus2 name=prov_vlan1109 vlan-id=1109 add interface=sfp-sfpplus2 name=prov_vlan1110 vlan-id=1110 add interface=sfp-sfpplus2 name=prov_vlan1111 vlan-id=1111 add interface=sfp-sfpplus2 name=prov_vlan1112 vlan-id=1112 add interface=sfp-sfpplus2 name=prov_vlan1113 vlan-id=1113 add interface=sfp-sfpplus2 name=prov_vlan1114 vlan-id=1114 add interface=sfp-sfpplus2 name=prov_vlan1115 vlan-id=1115 add interface=sfp-sfpplus2 name=prov_vlan1116 vlan-id=1116 add interface=sfp-sfpplus2 name=prov_vlan1201 vlan-id=1201 add interface=sfp-sfpplus2 name=prov_vlan1202 vlan-id=1202 add interface=sfp-sfpplus2 name=prov_vlan1203 vlan-id=1203 add interface=sfp-sfpplus2 name=prov_vlan1204 vlan-id=1204 add interface=sfp-sfpplus2 name=prov_vlan1205 vlan-id=1205 add interface=sfp-sfpplus2 name=prov_vlan1206 vlan-id=1206 add interface=sfp-sfpplus2 name=prov_vlan1207 vlan-id=1207 add interface=sfp-sfpplus2 name=prov_vlan1208 vlan-id=1208 add interface=sfp-sfpplus2 name=prov_vlan1209 vlan-id=1209 add interface=sfp-sfpplus2 name=prov_vlan1210 vlan-id=1210 add interface=sfp-sfpplus2 name=prov_vlan1211 vlan-id=1211 add interface=sfp-sfpplus2 name=prov_vlan1212 vlan-id=1212 add interface=sfp-sfpplus2 name=prov_vlan1213 vlan-id=1213 add interface=sfp-sfpplus2 name=prov_vlan1214 vlan-id=1214 add interface=sfp-sfpplus2 name=prov_vlan1215 vlan-id=1215 add interface=sfp-sfpplus2 name=prov_vlan1216 vlan-id=1216 add comment="link dedicado - plantar" interface=sfp-sfpplus1 name=vlan5 vlan-id=5 add comment="link-dedicado - luis-henrique" interface=sfp-sfpplus1 name=vlan10-luis-henrique vlan-id=10 add interface=sfp-sfpplus1 name=vlan55 vlan-id=55 add interface=sfp-sfpplus1 name=vlan123 vlan-id=123 add interface=sfp-sfpplus1 name=vlan203 vlan-id=203 add interface=sfp-sfpplus1 name=vlan498 vlan-id=498 add interface=sfp-sfpplus2 name=vlan498-2 vlan-id=498 add comment=Sicredi_ORTIGUEIRA interface=sfp-sfpplus1 name=vlan597 vlan-id=597 add comment="CACHE: ONNET" interface=sfp-sfpplus1 name=vlan804 vlan-id=804 add comment="link dedicado - plantar" interface=sfp-sfpplus1 name=vlan903 vlan-id=903 add comment=LINK-DEDICADO-IVAI interface=sfp-sfpplus1 name=vlan994 vlan-id=994 add interface=sfp-sfpplus1 name=vlan1101 vlan-id=1101 add interface=sfp-sfpplus1 name=vlan1102 vlan-id=1102 add interface=sfp-sfpplus1 name=vlan1103 vlan-id=1103 add interface=sfp-sfpplus1 name=vlan1104 vlan-id=1104 add interface=sfp-sfpplus1 name=vlan1105 vlan-id=1105 add interface=sfp-sfpplus1 name=vlan1106 vlan-id=1106 add interface=sfp-sfpplus1 name=vlan1107 vlan-id=1107 add interface=sfp-sfpplus1 name=vlan1108 vlan-id=1108 add interface=sfp-sfpplus1 name=vlan1109 vlan-id=1109 add interface=sfp-sfpplus1 name=vlan1110 vlan-id=1110 add interface=sfp-sfpplus1 name=vlan1111 vlan-id=1111 add interface=sfp-sfpplus1 name=vlan1112 vlan-id=1112 add interface=sfp-sfpplus1 name=vlan1113 vlan-id=1113 add interface=sfp-sfpplus1 name=vlan1114 vlan-id=1114 add interface=sfp-sfpplus1 name=vlan1115 vlan-id=1115 add interface=sfp-sfpplus1 name=vlan1116 vlan-id=1116 add interface=sfp-sfpplus1 name=vlan1201 vlan-id=1201 add interface=sfp-sfpplus1 name=vlan1202 vlan-id=1202 add interface=sfp-sfpplus1 name=vlan1203 vlan-id=1203 add interface=sfp-sfpplus1 name=vlan1204 vlan-id=1204 add interface=sfp-sfpplus1 name=vlan1205 vlan-id=1205 add interface=sfp-sfpplus1 name=vlan1206 vlan-id=1206 add interface=sfp-sfpplus1 name=vlan1207 vlan-id=1207 add interface=sfp-sfpplus1 name=vlan1208 vlan-id=1208 add interface=sfp-sfpplus1 name=vlan1209 vlan-id=1209 add interface=sfp-sfpplus1 name=vlan1210 vlan-id=1210 add interface=sfp-sfpplus1 name=vlan1211 vlan-id=1211 add interface=sfp-sfpplus1 name=vlan1212 vlan-id=1212 add interface=sfp-sfpplus1 name=vlan1213 vlan-id=1213 add interface=sfp-sfpplus1 name=vlan1214 vlan-id=1214 add interface=sfp-sfpplus1 name=vlan1215 vlan-id=1215 add interface=sfp-sfpplus1 name=vlan1216 vlan-id=1216 add interface=sfp-sfpplus2 name=vlan1801-CE vlan-id=1801 add interface=sfp-sfpplus1 name=vlan1801-SWITCH vlan-id=1801 add comment="LINKIP: ONNET" interface=sfp-sfpplus1 name=vlan3101 vlan-id=3101 add comment="LINKIP: DBUG" interface=sfp-sfpplus1 name=vlan3102 vlan-id=3102 add interface=sfp-sfpplus1 name=vlan3105 vlan-id=3105 add comment="link dedicado - plantar" interface=vlan903 name=vlan1 use-service-tag=yes vlan-id=102 add comment="link dedicado - plantar" interface=vlan903 name=vlan2 vlan-id=103 add comment="link dedicado - plantar" interface=vlan903 name=vlan3 vlan-id=104 add comment="link dedicado - plantar" interface=vlan903 name=vlan4 vlan-id=105 add comment="link dedicado - plantar" interface=vlan903 name=vlan6 vlan-id=106 add comment="link dedicado - plantar" interface=vlan903 name=vlan7 vlan-id=107 add comment="link dedicado - plantar" interface=vlan903 name=vlan8 vlan-id=108 add comment="link dedicado - plantar" interface=vlan903 name=vlan101 vlan-id=101 /ip pool add name=pool ranges=100.100.148.0/22 /ppp profile set *0 dns-server=177.10.56.3 local-address=192.168.40.1 remote-address=pool /routing bgp instance set default as=269232 router-id=45.182.132.1 add as=262847 name=asn-dbug router-id=45.182.132.0 /routing ospf instance set [ find default=yes ] distribute-default=always-as-type-1 redistribute-connected=as-type-1 redistribute-static=as-type-1 router-id=45.225.66.10 /snmp community set [ find default=yes ] addresses=45.225.64.0/22,172.16.20.0/24,10.0.0.0/8,35.237.63.30/32,172.16.21.50/32 name=onnet@2017 /interface bridge port add bridge=TRANSPORTE-UPINTERNET interface=vlan498 add bridge=TRANSPORTE-UPINTERNET interface=vlan498-2 add bridge=PPPoE-NE40 interface=vlan1801-CE add bridge=PPPoE-NE40 interface=vlan1801-SWITCH add bridge=bridge_1101 interface=prov_vlan1101 add bridge=bridge_1101 interface=vlan1101 add bridge=bridge_1102 interface=vlan1102 add bridge=bridge_1103 interface=vlan1103 add bridge=bridge_1104 interface=vlan1104 add bridge=bridge_1105 interface=vlan1105 add bridge=bridge_1106 interface=vlan1106 add bridge=bridge_1107 interface=vlan1107 add bridge=bridge_1108 interface=vlan1108 add bridge=bridge_1109 interface=vlan1109 add bridge=bridge_1110 interface=vlan1110 add bridge=bridge_1111 interface=vlan1111 add bridge=bridge_1112 interface=vlan1112 add bridge=bridge_1113 interface=vlan1113 add bridge=bridge_1114 interface=vlan1114 add bridge=bridge_1115 interface=vlan1115 add bridge=bridge_1116 interface=vlan1116 add bridge=bridge_1201 interface=vlan1201 add bridge=bridge_1202 interface=vlan1202 add bridge=bridge_1203 interface=vlan1203 add bridge=bridge_1204 interface=vlan1204 add bridge=bridge_1205 interface=vlan1205 add bridge=bridge_1206 interface=vlan1206 add bridge=bridge_1207 interface=vlan1207 add bridge=bridge_1208 interface=vlan1208 add bridge=bridge_1209 interface=vlan1209 add bridge=bridge_1210 interface=vlan1210 add bridge=bridge_1211 interface=vlan1211 add bridge=bridge_1212 interface=vlan1212 add bridge=bridge_1213 interface=vlan1213 add bridge=bridge_1214 interface=vlan1214 add bridge=bridge_1215 interface=vlan1215 add bridge=bridge_1216 interface=vlan1216 add bridge=bridge_1102 interface=prov_vlan1102 add bridge=bridge_1103 interface=prov_vlan1103 add bridge=bridge_1104 interface=prov_vlan1104 add bridge=bridge_1105 interface=prov_vlan1105 add bridge=bridge_1106 interface=prov_vlan1106 add bridge=bridge_1107 interface=prov_vlan1107 add bridge=bridge_1108 interface=prov_vlan1108 add bridge=bridge_1109 interface=prov_vlan1109 add bridge=bridge_1110 interface=prov_vlan1110 add bridge=bridge_1111 interface=prov_vlan1111 add bridge=bridge_1112 interface=prov_vlan1112 add bridge=bridge_1113 interface=prov_vlan1113 add bridge=bridge_1114 interface=prov_vlan1114 add bridge=bridge_1115 interface=prov_vlan1115 add bridge=bridge_1116 interface=prov_vlan1116 add bridge=bridge_1201 interface=prov_vlan1201 add bridge=bridge_1202 interface=prov_vlan1202 add bridge=bridge_1203 interface=prov_vlan1203 add bridge=bridge_1204 interface=prov_vlan1204 add bridge=bridge_1205 interface=prov_vlan1205 add bridge=bridge_1206 interface=prov_vlan1206 add bridge=bridge_1207 interface=prov_vlan1207 add bridge=bridge_1208 interface=prov_vlan1208 add bridge=bridge_1209 interface=prov_vlan1209 add bridge=bridge_1210 interface=prov_vlan1210 add bridge=bridge_1211 interface=prov_vlan1211 add bridge=bridge_1212 interface=prov_vlan1212 add bridge=bridge_1213 interface=prov_vlan1213 add bridge=bridge_1214 interface=prov_vlan1214 add bridge=bridge_1215 interface=prov_vlan1215 add bridge=bridge_1216 interface=prov_vlan1216 add bridge=bridge_vlan123 interface=vlan123 add bridge=bridge_vlan123 interface=prov_vlan123 add bridge=GERENCIA_DCN interface=ether2 add bridge=GERENCIA_DCN interface=vlan203 /interface pppoe-server server add interface=vlan101 max-mtu=1480 service-name=service1 add authentication=pap interface=vlan1 max-mtu=1480 add authentication=pap interface=vlan2 max-mtu=1480 add authentication=pap interface=vlan3 max-mtu=1480 add interface=vlan4 max-mtu=1480 add authentication=pap interface=vlan5 max-mtu=1480 add interface=vlan7 add interface=vlan8 /ip address add address=10.10.0.114/30 interface=sfp-sfpplus1 network=10.10.0.112 add address=45.225.66.10 interface=bridge1 network=45.225.66.10 add address=10.10.0.117/30 comment=defconf interface=sfp-sfpplus2 network=10.10.0.116 add address=10.10.20.2/30 interface=vlan3105 network=10.10.20.0 add address=45.182.132.1 interface=vlan3105 network=45.182.132.1 add address=10.1.1.3/24 interface=TRANSPORTE-UPINTERNET network=10.1.1.0 add address=192.168.88.2/24 interface=vlan55 network=192.168.88.0 add address=192.168.0.1/24 interface=ether3 network=192.168.0.0 add address=45.182.132.13/30 comment="Link Dedicado (TB IP 45.182.132.8/30)" disabled=yes interface=vlan5 network=45.182.132.12 add address=169.254.251.1/30 interface=vlan994 network=169.254.251.0 add address=10.10.20.6/30 interface=vlan3101 network=10.10.20.4 add address=169.254.250.18/30 interface=vlan804 network=169.254.250.16 add address=169.254.251.98/30 interface=vlan3102 network=169.254.251.96 add address=179.125.34.108 interface=bridge1 network=45.225.66.10 add address=10.10.10.1/30 disabled=yes interface=vlan597 network=10.10.10.0 /ip firewall nat add action=dst-nat chain=dstnat dst-port=53 protocol=udp to-addresses=8.8.8.8 to-ports=53 add action=src-nat chain=srcnat dst-address=100.100.144.0/21 to-addresses=45.182.132.1 /ip firewall raw add action=accept chain=prerouting dst-address=45.182.132.1 dst-port=161 protocol=udp src-address=45.225.64.12 /ip route add distance=1 dst-address=45.182.132.0/22 type=blackhole add disabled=yes distance=1 dst-address=45.182.132.8/30 gateway=45.182.132.14 add disabled=yes distance=1 dst-address=45.182.132.16/30 gateway=45.182.132.14 add disabled=yes distance=1 dst-address=45.182.132.28/30 gateway=10.10.10.2 add disabled=yes distance=1 dst-address=45.182.132.32/29 gateway=169.254.251.2 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes port=25080 set ssh address=45.225.65.10/32 port=2222 set api disabled=yes set winbox port=25000 set api-ssl disabled=yes /ip socks access add dst-address=45.182.132.1 dst-port=1080 /lcd set time-interval=weekly /ppp aaa set use-radius=yes /radius add address=167.172.106.53 secret=testing123 service=ppp,hotspot src-address=45.182.132.1 timeout=3s /routing bgp network add disabled=yes network=45.182.132.0/24 synchronize=no add disabled=yes network=45.182.133.0/24 synchronize=no add disabled=yes network=45.182.132.0/22 synchronize=no add disabled=yes network=45.182.132.0/23 synchronize=no add network=172.16.98.5/32 synchronize=no add disabled=yes network=45.182.134.0/23 synchronize=no add disabled=yes network=45.182.134.0/24 synchronize=no add disabled=yes network=45.182.135.0/24 synchronize=no add network=45.182.132.0/25 synchronize=no add network=45.182.132.128/25 synchronize=no add network=45.182.133.0/25 synchronize=no /routing bgp peer add disabled=yes name=BGP out-filter=ONNET-CDN-OUT remote-address=169.254.250.17 remote-as=267018 ttl=default add disabled=yes name=BGP out-filter=ONNET-OUT remote-address=10.10.20.5 remote-as=267018 ttl=default add in-filter=IN-IPV4-DBUG name=DBUG nexthop-choice=force-self out-filter=OUT-IPV4-DBUG remote-address=169.254.251.97 remote-as=262847 update-source=169.254.251.98 /routing filter add action=accept chain=ONNET-OUT prefix=45.182.132.0/22 prefix-length=22-24 add action=accept chain=ONNET-OUT prefix=45.182.132.0/24 add action=accept chain=ONNET-OUT prefix=45.182.133.0/24 add action=discard chain=ONNET-OUT add action=accept chain=ONNET-CDN-OUT prefix=45.182.132.0/22 prefix-length=22-24 add action=accept chain=ONNET-CDN-OUT prefix=45.182.132.0/24 add action=accept chain=ONNET-CDN-OUT prefix=45.182.133.0/24 add action=discard chain=ONNET-CDN-OUT add action=accept chain=IN-IPV4-DBUG prefix=0.0.0.0/0 set-bgp-local-pref=1000 add action=accept chain=IN-IPV4-RR-DBUG prefix=0.0.0.0/0 set-bgp-local-pref=900 add action=discard chain=IN-IPV4-DBUG add action=discard chain=IN-IPV4-RR-DBUG add action=accept chain=OUT-IPV4-DBUG prefix=172.16.98.5 prefix-length=32 add action=accept chain=OUT-IPV4-DBUG prefix=45.182.132.0/22 prefix-length=22-25 add action=discard chain=OUT-IPV4-DBUG /routing ospf interface add disabled=yes passive=yes add interface=sfp-sfpplus2 network-type=broadcast /routing ospf network add area=backbone disabled=yes network=10.10.0.112/30 add area=backbone network=10.10.0.116/30 /snmp set contact="Rodrigo " enabled=yes location=Ortigueira/PR trap-version=2 /system clock manual set time-zone=-03:00 /system identity set name=PR-RO-CORE-ORTIGUEIRA /system ntp client set enabled=yes primary-ntp=200.160.0.8 secondary-ntp=91.189.91.157 /system scheduler add interval=52w1d name=update_packages on-event="/system reboot" policy=reboot,read,write,policy,test,password start-date=jul/20/2020 start-time=05:00:00 /tool romon set enabled=yes