# model: CRS326-24G-2S+ # serial-number: DA720DB812AD # firmware-type: dx3230L # current-firmware: 6.45.9 # installed-version: 7.15.3 # Flags: U - UNDOABLE # Columns: ACTION, BY, POLICY, TIME # ACTION BY POLICY TIME # U ip service changed bruna.noc write 2024-09-10 08:10:01 # U ip service changed bruna.noc write 2024-09-10 08:10:01 # U ip service changed bruna.noc write 2024-09-10 08:10:01 # U ip service changed bruna.noc write 2024-09-10 08:10:01 # U user oxidized added bruna.noc write 2024-09-10 08:10:01 # policy # U user luan.noc added bruna.noc write 2024-09-10 08:10:01 # policy # U user marcos.noc added bruna.noc write 2024-09-10 08:10:01 # policy # U user marcos.noc removed bruna.noc write 2024-09-10 08:09:55 # policy # U user jose.noc removed bruna.noc write 2024-09-10 08:09:54 # policy # U user scripts.noc removed bruna.noc write 2024-09-10 08:09:43 # policy # U user oxidized removed bruna.noc write 2024-09-10 08:09:42 # policy # # 2024-09-28 20:53:11 by RouterOS 7.15.3 # software id = SXGB-CQPU # # model = CRS326-24G-2S+ # serial number = DA720DB812AD /interface bridge add ingress-filtering=no name=VLAN port-cost-mode=short vlan-filtering=yes add name=loopback port-cost-mode=short /interface ethernet set [ find default-name=ether1 ] comment=PTP-77-ABV-SBR set [ find default-name=ether2 ] comment=SE77E-NRPS-SBR-N set [ find default-name=ether3 ] comment=SE77E-NRPS-SBR-L set [ find default-name=ether4 ] comment=77-LINK-ICA set [ find default-name=ether5 ] comment=77-LINK-YMBL set [ find default-name=ether6 ] comment=SE77E-NRPS-SBR-S set [ find default-name=ether7 ] comment=77-LINK-VGP set [ find default-name=ether9 ] comment=CLIENTE-TORRE-AMELIA set [ find default-name=ether23 ] comment=220V-NRPS set [ find default-name=ether24 ] comment=CAMERA set [ find default-name=sfp-sfpplus1 ] comment=TRUNK-NRPS /interface vlan add interface=VLAN name=VLAN-90-GR-SW vlan-id=90 add interface=VLAN name=VLAN-300-CLIENTES vlan-id=300 add interface=VLAN name=VLAN-509-SW-L3 vlan-id=509 /interface ethernet switch port set 6 l3-hw-offloading=no set 7 l3-hw-offloading=no set 8 l3-hw-offloading=no set 9 l3-hw-offloading=no set 10 l3-hw-offloading=no set 11 l3-hw-offloading=no set 12 l3-hw-offloading=no set 13 l3-hw-offloading=no set 14 l3-hw-offloading=no set 15 l3-hw-offloading=no set 16 l3-hw-offloading=no set 17 l3-hw-offloading=no set 18 l3-hw-offloading=no set 19 l3-hw-offloading=no set 20 l3-hw-offloading=no set 21 l3-hw-offloading=no set 22 l3-hw-offloading=no /ip smb users set [ find default=yes ] disabled=yes /port set 0 name=serial0 /routing ospf instance add disabled=no name=default-v2 router-id=10.255.255.30 /routing ospf area add disabled=no instance=default-v2 name=backbone-v2 /snmp community set [ find default=yes ] addresses=143.0.252.0/22,2804:2994::/32 name=SnmP_Se77E /system logging action add name=RSYSLOG remote=143.0.252.53 src-address=10.255.255.30 target=remote /interface bridge port add bridge=VLAN frame-types=admit-only-vlan-tagged interface=ether1 internal-path-cost=10 path-cost=10 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether2 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether5 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether6 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether24 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether23 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-vlan-tagged interface=sfp-sfpplus1 internal-path-cost=10 path-cost=10 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether3 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether4 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether7 internal-path-cost=10 path-cost=10 pvid=300 add bridge=VLAN frame-types=admit-only-untagged-and-priority-tagged interface=ether9 internal-path-cost=10 path-cost=10 pvid=300 /ip firewall connection tracking set udp-timeout=10s /interface bridge vlan # ether8,ether18 not a bridge port add bridge=VLAN comment=VLAN-300-CLIENTES tagged=sfp-sfpplus1,VLAN,ether1 untagged=ether3,ether4,ether5,ether6,ether7,ether8,ether23,ether9,ether18,ether24 vlan-ids=300 add bridge=VLAN comment=VLAN-509-SW-L3 tagged=VLAN,sfp-sfpplus1 vlan-ids=509 add bridge=VLAN comment=VLAN-3000-IGN tagged=ether1,sfp-sfpplus1 vlan-ids=3000 add bridge=VLAN comment=VLAN-90-GR-SW tagged=VLAN,ether1 vlan-ids=90 /interface ethernet switch set 0 l3-hw-offloading=yes /ip address add address=10.0.77.186/30 comment=VLAN-509-SW-L3 interface=VLAN-509-SW-L3 network=10.0.77.184 add address=10.255.255.30 interface=loopback network=10.255.255.30 add address=10.77.38.1/24 comment=GR-TORRE interface=VLAN-300-CLIENTES network=10.77.38.0 add address=10.0.20.33/29 comment=VLAN-90-GR-SW interface=VLAN-90-GR-SW network=10.0.20.32 add address=192.168.1.100/24 interface=VLAN-300-CLIENTES network=192.168.1.0 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set ssh address=205.164.78.0/23,143.0.252.0/22,143.0.252.58/32 port=2277 set api disabled=yes set winbox address=143.0.252.0/22,205.164.78.0/23 set api-ssl disabled=yes /ip smb shares set [ find default=yes ] directory=/flash/pub /radius add address=10.7.7.103 require-message-auth=no secret=77acesso service=login src-address=10.255.255.30 /routing ospf interface-template add area=backbone-v2 comment=VLAN-509-SW-L3 cost=10 disabled=no interfaces=VLAN-509-SW-L3 networks=10.0.77.184/30 type=ptp add area=backbone-v2 disabled=no interfaces=loopback passive add area=backbone-v2 disabled=no interfaces=VLAN-300-CLIENTES networks=10.77.38.0/24 add area=backbone-v2 comment=VLAN-90-GR-SW disabled=no interfaces=VLAN-90-GR-SW networks=10.0.20.32/29 /snmp set enabled=yes trap-version=2 /system clock set time-zone-name=America/Sao_Paulo /system identity set name=SE77E-SW-MK-NRPS-TORRE /system logging add action=RSYSLOG topics=info add action=RSYSLOG topics=warning add action=RSYSLOG topics=error add action=RSYSLOG topics=critical /system note set show-at-login=no /system ntp client set enabled=yes /system ntp client servers add address=143.0.252.51 /system routerboard settings set boot-os=router-os /tool romon set enabled=yes secrets=@a7net@#