# model: CRS326-24G-2S+ # serial-number: DA720DE52140 # firmware-type: dx3230L # current-firmware: 7.1.1 # installed-version: 7.1.1 # # software id = LRBH-PH9H # # model = CRS326-24G-2S+ # serial number = DA720DE52140 /interface bridge add ingress-filtering=no name=VLAN vlan-filtering=yes /interface ethernet set [ find default-name=ether2 ] comment=VENDAS-3 set [ find default-name=ether3 ] comment=OP-TEC-SUP set [ find default-name=ether4 ] comment=VENDAS-1 set [ find default-name=ether5 ] comment=IMPRESSORA-RH set [ find default-name=ether6 ] comment=COBR-01 set [ find default-name=ether7 ] comment=COBR-02 set [ find default-name=ether8 ] comment=COBR-03 set [ find default-name=ether9 ] comment=SAC-23 set [ find default-name=ether10 ] comment=SAC-26 set [ find default-name=ether11 ] comment=VENDAS-02 set [ find default-name=ether12 ] comment=TESTE-RB set [ find default-name=ether13 ] comment=COBR-PC set [ find default-name=ether14 ] comment=OP-TEC-1 set [ find default-name=ether15 ] comment=VENDAS set [ find default-name=ether16 ] comment=OP-TEC-2 set [ find default-name=ether17 ] comment=FECHADURA-1-ANDAR set [ find default-name=ether18 ] comment="REL\D3GIO-DE-PONTO" set [ find default-name=ether19 ] comment=PC-Cobranca set [ find default-name=ether20 ] comment=UNIFI-4 set [ find default-name=ether21 ] comment=UNIFI-5 set [ find default-name=ether22 ] comment=UNIFI-REUNIAO set [ find default-name=ether23 ] comment=SW-TPLINK set [ find default-name=ether24 ] comment=LINK /interface vlan add interface=VLAN name=VLAN-98-GR vlan-id=98 /interface lte apn set [ find default=yes ] ip-type=ipv4 /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /port set 0 name=serial0 /routing bgp template set default as=65530 disabled=no name=default output.network=bgp-networks /user group set full policy="local,telnet,ssh,ftp,reboot,read,write,policy,test,winbox,password,web,sniff,sensitive,api,romon,dude,tikapp,rest-api" /interface bridge port add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether24 add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether21 add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether20 multicast-router=disabled add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether3 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether4 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether5 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether9 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether6 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether7 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether8 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether11 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether2 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether12 pvid=70 add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether23 add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether22 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether13 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether19 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether18 pvid=600 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether17 pvid=400 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether14 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether16 pvid=300 /ip neighbor discovery-settings set discover-interface-list=!dynamic /ip settings set max-neighbor-entries=8192 /interface bridge vlan add bridge=VLAN tagged=ether24,VLAN,ether23 vlan-ids=98 add bridge=VLAN comment=VLAN-150-CAMERAS tagged=ether24,ether23 vlan-ids=150 add bridge=VLAN comment=VLAN-300-REDE-INTERNA tagged=ether24,ether23,ether20,ether21,ether22 untagged="ether2,ether3,ether4,ether5,ether6,ether7,ether8,ether9,ether10,ether11,ether12,ether1,ether13,ether19,ether14,ether16" vlan-ids=300 add bridge=VLAN comment=VLAN-900-WiFi tagged=ether20,ether21,ether22,ether24 vlan-ids=900 add bridge=VLAN comment=TESTE-PPPoE tagged=ether24 untagged=ether12 vlan-ids=70 add bridge=VLAN comment=VLAN-600-RELOGIO-PONTO tagged=ether24,ether23 untagged=ether18 vlan-ids=600 add bridge=VLAN comment=VLAN-400-NOC tagged=ether24 untagged=ether17 vlan-ids=400 /ip address add address=10.10.1.103/24 interface=VLAN-98-GR network=10.10.1.0 /ip route add disabled=no dst-address=0.0.0.0/0 gateway=10.10.1.1 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set ssh address=205.164.78.0/23,143.0.252.0/22,143.0.252.58/32 port=2277 set api disabled=yes set winbox address=10.7.7.99/32,205.164.78.0/23,143.0.252.0/22 set api-ssl disabled=yes /system identity set name=SE77E-SW-MK-SEDE-5 /system routerboard settings set boot-os=router-os /tool romon set enabled=yes secrets=@a7net@#