# model: CRS326-24G-2S+ # serial-number: DA720D86E37F # firmware-type: dx3230L # current-firmware: 7.2.3 # installed-version: 7.12.1 # Flags: U - UNDOABLE, R - REDOABLE # Columns: ACTION, BY, POLICY, TIME # ACTION BY POLICY TIME # R bandwidth-server changed bruna.noc write 2024-07-19 11:47:35 # U ip service changed bruna.noc write 2024-04-04 15:46:15 # # 2024-08-26 02:07:20 by RouterOS 7.12.1 # software id = 71EB-1DNH # # model = CRS326-24G-2S+ # serial number = DA720D86E37F /interface bridge add ingress-filtering=no name=VLAN vlan-filtering=yes add name=loopback-ospf /interface ethernet set [ find default-name=ether1 ] comment=ROTEADOR-PLA mac-address=08:55:31:71:8D:CA set [ find default-name=ether2 ] mac-address=08:55:31:71:8D:CB set [ find default-name=ether3 ] mac-address=08:55:31:71:8D:CC set [ find default-name=ether4 ] mac-address=08:55:31:71:8D:CD set [ find default-name=ether5 ] mac-address=08:55:31:71:8D:CE set [ find default-name=ether6 ] comment=SE77E-PLA-N mac-address=08:55:31:71:8D:CF set [ find default-name=ether7 ] comment=SE77E-PLA-L mac-address=08:55:31:71:8D:D0 set [ find default-name=ether8 ] mac-address=08:55:31:71:8D:D1 set [ find default-name=ether9 ] comment=PTP-77-PLA-COR mac-address=08:55:31:71:8D:D2 set [ find default-name=ether10 ] mac-address=08:55:31:71:8D:D3 set [ find default-name=ether11 ] mac-address=08:55:31:71:8D:D4 set [ find default-name=ether12 ] mac-address=08:55:31:71:8D:D5 set [ find default-name=ether13 ] mac-address=08:55:31:71:8D:D6 set [ find default-name=ether14 ] mac-address=08:55:31:71:8D:D7 set [ find default-name=ether15 ] mac-address=08:55:31:71:8D:D8 set [ find default-name=ether16 ] mac-address=08:55:31:71:8D:D9 set [ find default-name=ether17 ] comment=SE77E-PLA-S mac-address=08:55:31:71:8D:DA set [ find default-name=ether18 ] mac-address=08:55:31:71:8D:DB set [ find default-name=ether19 ] comment=CAM-PLA-PADRAO mac-address=08:55:31:71:8D:DC set [ find default-name=ether20 ] comment=CAM-PLA-TORRE-1 mac-address=08:55:31:71:8D:DD set [ find default-name=ether21 ] comment=CAM-PLA-CONTEINER mac-address=08:55:31:71:8D:DE set [ find default-name=ether22 ] comment=CAM-PLA-TORRE-2 mac-address=08:55:31:71:8D:DF set [ find default-name=ether23 ] mac-address=08:55:31:71:8D:E0 set [ find default-name=ether24 ] comment=220V-PLA mac-address=08:55:31:71:8D:E1 set [ find default-name=sfp-sfpplus1 ] comment=TRUNK-SW-MK-1 set [ find default-name=sfp-sfpplus2 ] mac-address=08:55:31:3E:5E:02 /interface vlan add interface=VLAN name=VLAN-90-SW-GR vlan-id=90 add interface=VLAN name=VLAN-300-CLIENTES vlan-id=300 add interface=VLAN name=VLAN-350-PTP-GR vlan-id=350 add interface=VLAN name=VLAN-800-SW-L3 vlan-id=800 /interface ethernet switch set 0 l3-hw-offloading=yes /interface lte apn set [ find default=yes ] ip-type=ipv4 use-network-apn=no /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /port set 0 name=serial0 /routing bgp template set default disabled=no output.network=bgp-networks /routing ospf instance add disabled=no name=default-v2 router-id=10.255.255.23 add disabled=no name=default-v3 router-id=10.255.255.23 version=3 /routing ospf area add disabled=no instance=default-v2 name=backbone-v2 add disabled=no instance=default-v3 name=backbone-v3 /snmp community set [ find default=yes ] addresses=143.0.252.0/22,2804:2994::/32 name=SnmP_Se77E /system logging action add name=RSYSLOG remote=143.0.252.53 src-address=10.255.255.23 target=remote /interface bridge port add bridge=VLAN frame-types=admit-only-vlan-tagged interface=sfp-sfpplus1 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether6 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether17 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether7 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether24 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether22 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether21 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether20 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether19 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether1 pvid=300 add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether9 /ip firewall connection tracking set enabled=no /ip neighbor discovery-settings set discover-interface-list=!dynamic /ip settings set max-neighbor-entries=8192 /ipv6 settings set disable-ipv6=yes /interface bridge vlan add bridge=VLAN comment=VLAN-98-GR tagged=VLAN,sfp-sfpplus1 vlan-ids=98 add bridge=VLAN comment=VLAN-300-CLIENTES tagged=sfp-sfpplus1,VLAN,ether9 untagged=ether17,ether19,ether21,ether1 vlan-ids=300 add bridge=VLAN comment=VLAN-800-SW-L3 tagged=VLAN,sfp-sfpplus1 vlan-ids=800 add bridge=VLAN comment=VLAN-350-PTP-GR tagged=VLAN,ether9 vlan-ids=350 add bridge=VLAN comment=VLAN-90-SW-GR tagged=VLAN,ether9 vlan-ids=90 /interface l2tp-server server set ipsec-secret=123 /interface ovpn-server server set auth=sha1,md5 /ip address add address=10.77.60.1/24 comment=VLAN-300-CLIENTES interface=VLAN-300-CLIENTES network=10.77.60.0 add address=10.255.255.23 interface=loopback-ospf network=10.255.255.23 add address=10.0.77.86/30 interface=VLAN-800-SW-L3 network=10.0.77.84 add address=10.0.77.113/29 comment=PTP-77-PLA-COR interface=VLAN-350-PTP-GR network=10.0.77.112 add address=10.0.20.17/30 comment=VLAN-90-SW-GR interface=VLAN-90-SW-GR network=10.0.20.16 add address=10.77.75.1/24 comment=VLAN-300-CLIENTES interface=VLAN-300-CLIENTES network=10.77.75.0 add address=192.168.1.100/24 comment=UBNT interface=ether17 network=192.168.1.0 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set ssh address=143.0.252.0/22,10.7.7.99/32,205.164.78.0/23 port=2277 set api disabled=yes set winbox address=143.0.252.0/22,10.7.7.99/32,205.164.78.0/23 set api-ssl disabled=yes /radius add address=10.7.7.103 secret=77acesso service=login src-address=10.255.255.23 /routing ospf interface-template add area=backbone-v2 disabled=no interfaces=loopback-ospf add area=backbone-v2 comment=SE77E-SW-MK-PLA-1 disabled=no interfaces=VLAN-800-SW-L3 networks=10.0.77.84/30 type=ptp add area=backbone-v2 comment=PTP-77-PLA-COR disabled=no interfaces=VLAN-350-PTP-GR networks=10.0.77.112/29 add area=backbone-v2 comment=VLAN-90-SW-GR disabled=no interfaces=VLAN-90-SW-GR networks=10.0.20.16/30 add area=backbone-v2 comment=VLAN-300-CLIENTES disabled=no interfaces=VLAN-300-CLIENTES networks=10.77.60.0/24,10.77.75.0/24 /snmp set enabled=yes trap-version=2 /system clock set time-zone-autodetect=no time-zone-name=America/Sao_Paulo /system identity set name=SE77E-SW-MK-PLA-2 /system logging add action=RSYSLOG topics=critical add action=RSYSLOG topics=error add action=RSYSLOG topics=info add action=RSYSLOG topics=warning /system note set show-at-login=no /system ntp client set enabled=yes /system ntp server set manycast=yes /system ntp client servers add address=10.7.7.103 /system routerboard settings set boot-os=router-os /system watchdog set automatic-supout=no watchdog-timer=no /tool romon set enabled=yes secrets=@a7net@#