# routerboard: yes # model: RB3011UiAS # serial-number: B8950BFAC892 # firmware-type: ipq8060 # factory-firmware: 6.44.5 # current-firmware: 6.46.8 # upgrade-firmware: 6.47.9 # # channel: long-term # installed-version: 6.47.9 # # Flags: U - undoable, R - redoable, F - floating-undo # ACTION BY POLICY # U ip service changed nzm write # U ip service changed nzm write # U RADIUS client changed nzm write # U RADIUS client removed nzm write # U RADIUS client moved nzm write # U RADIUS client moved nzm write # U RADIUS client added nzm write # U OSPFv2 interface changed nzm write # U device changed protek write # U device changed protek write # U OSPFv2 interface changed protek write # U address removed protek write # U device changed protek write # U OSPFv2 interface changed protek write # U device changed protek write # U device changed protek write # U device changed protek write # U address changed protek write # U address changed protek write # U address changed protek write # U route changed nzm write # U OSPFv2 interface changed nzm write # U OSPFv2 interface changed protek write # U OSPFv2 interface changed protek write # U device changed protek write # U device changed protek write # U OSPFv2 interface changed protek write # U OSPFv2 interface changed protek write # U device changed protek write # U OSPFv2 interface changed protek write # U device changed protek write # U device changed protek write # U device changed protek write # U device changed protek write # U device changed protek write # U device changed protek write # U device changed protek write # # software id = 57LY-XIF1 # # model = RB3011UiAS # serial number = B8950BFAC892 /interface bridge add name=PTK-GRD-SINVAL add name=PTK-OMINI-VLR_5.8 add name=PTK-RKT-VLR-01 add name=PTK-RKT-VLR-02 add name=PTK-RKT-VLR-03 add name=loopbridge /interface ethernet set [ find default-name=ether2 ] comment="==> Link Jefinho Muller ( mimosa)" set [ find default-name=ether3 ] comment="==> Link Ceu Azul" set [ find default-name=ether4 ] comment=PTK-RKT-VLR-01 set [ find default-name=ether5 ] comment=PTK-RKT-VLR-02 set [ find default-name=ether6 ] comment=PTK-RKT-VLR-03 set [ find default-name=ether7 ] advertise=10M-full auto-negotiation=no full-duplex=no speed=10Mbps set [ find default-name=ether8 ] comment=PTK-GRD-SINVAL set [ find default-name=ether9 ] comment="==> Link Jefinho Muller UBNT" /ip pool add name=pool1 ranges=100.65.10.2-100.65.10.254 /ppp profile add bridge=PTK-RKT-VLR-01 dns-server=45.236.84.18,45.236.84.19 local-address=192.168.36.1 name=PTK-RKT-VLR-01 remote-address=pool1 add bridge=PTK-RKT-VLR-02 dns-server=45.236.84.18,45.236.84.19 local-address=192.168.36.1 name=PTK-RKT-VLR-02 remote-address=pool1 add bridge=PTK-RKT-VLR-03 dns-server=45.236.84.18,45.236.84.19 local-address=192.168.36.1 name=PTK-RKT-VLR-03 remote-address=pool1 add bridge=PTK-OMINI-VLR_5.8 dns-server=45.236.84.18,45.236.84.19 local-address=192.168.36.1 name=GC-OMINI-02 remote-address=pool1 add bridge=PTK-GRD-SINVAL dns-server=45.236.84.18,45.236.84.19 local-address=192.168.36.1 name=Uplink_Sinval remote-address=pool1 add change-tcp-mss=yes dns-server=45.236.84.18 local-address=192.168.36.1 name=profile10mb rate-limit=11m/11m remote-address=pool1 use-compression=no use-ipv6=no use-mpls=no use-upnp=no wins-server=45.236.84.19 /interface l2tp-client add connect-to=s82.eeongous.com name=lvpn password=pass4982562 profile=default user=user4982562 /routing ospf area add area-id=0.0.0.1 default-cost=1 inject-summary-lsas=no name=area1 type=stub /routing ospf instance set [ find default=yes ] redistribute-connected=as-type-1 redistribute-static=as-type-1 router-id=192.168.200.5 /routing ospf-v3 instance set [ find default=yes ] redistribute-connected=as-type-1 redistribute-static=as-type-1 router-id=192.168.200.5 /snmp community set [ find default=yes ] addresses=0.0.0.0/0 name=public-noway write-access=yes /user group set full policy="local,telnet,ssh,ftp,reboot,read,write,policy,test,winbox,password,web,sniff,sensitive,api,romon,dude,tikapp" /interface bridge port add bridge=PTK-RKT-VLR-01 interface=ether4 add bridge=PTK-RKT-VLR-02 interface=ether5 add bridge=PTK-RKT-VLR-03 interface=ether6 add bridge=PTK-OMINI-VLR_5.8 interface=ether7 add bridge=PTK-GRD-SINVAL interface=ether8 /ip neighbor discovery-settings set discover-interface-list=!dynamic /ip settings set rp-filter=loose tcp-syncookies=yes /interface pppoe-server server add default-profile=PTK-RKT-VLR-02 disabled=no interface=PTK-RKT-VLR-02 service-name=PTK-RKT-VLR-02 add default-profile=PTK-RKT-VLR-02 disabled=no interface=PTK-RKT-VLR-03 service-name=PTK-RKT-VLR-03 add default-profile=PTK-RKT-VLR-02 disabled=no interface=PTK-RKT-VLR-01 service-name=PTK-RKT-VLR-01 add default-profile=PTK-RKT-VLR-02 disabled=no interface=PTK-OMINI-VLR_5.8 service-name=GC-OMINI-02 add default-profile=Uplink_Sinval disabled=no interface=PTK-GRD-SINVAL service-name=Uplink_Sinval add default-profile=Uplink_Sinval interface=ether9 service-name=service2 /ip address add address=192.168.200.5 interface=loopbridge network=192.168.200.5 add address=192.168.100.13/30 interface=PTK-RKT-VLR-01 network=192.168.100.12 add address=192.168.100.21/30 interface=PTK-RKT-VLR-02 network=192.168.100.20 add address=192.168.100.25/30 interface=PTK-RKT-VLR-03 network=192.168.100.24 add address=192.168.100.49/30 interface=PTK-OMINI-VLR_5.8 network=192.168.100.48 add address=10.0.0.97/28 interface=PTK-GRD-SINVAL network=10.0.0.96 add address=192.168.99.188/29 interface=ether3 network=192.168.99.184 add address=192.168.254.73/29 interface=ether2 network=192.168.254.72 /ip dns set servers=45.236.84.18,45.236.84.19 /ip firewall nat add action=masquerade chain=srcnat disabled=yes dst-address=192.168.254.74 out-interface=ether2 /ip route add distance=200 gateway=192.168.99.185 /ip service set telnet disabled=yes set ftp address=192.168.0.0/16,45.236.84.0/22 port=10021 set www address=192.168.0.0/16,45.236.84.0/22 port=10080 set ssh address="45.236.84.0/22,189.127.168.0/22,192.168.0.0/16,100.64.0.0/10,45.187.80.0/22,177.10.56.0/22" port=10022 set api address=45.236.84.24/32,45.236.84.25/32,45.236.87.255/32 set winbox address="45.236.84.0/22,189.127.168.0/22,192.168.0.0/16,100.64.0.0/10,45.187.80.0/22,177.10.56.0/22" port=25000 set api-ssl address=45.236.84.24/32,45.236.84.25/32,45.236.87.255/32 /ip smb set allow-guests=no interfaces=loopbridge /ip socks access add src-address=77.238.240.0/24 add src-address=178.239.168.0/24 add src-address=77.238.228.0/24 add src-address=94.243.168.0/24 add src-address=213.33.214.0/24 add src-address=31.172.128.45 add src-address=31.172.128.25 add src-address=10.0.0.0/8 add src-address=185.137.233.251 add src-address=5.9.163.16/29 add src-address=176.9.65.8 add src-address=82.202.248.5 add src-address=95.213.193.133 add src-address=136.243.238.211 add src-address=178.238.114.6 add src-address=46.148.232.205 add src-address=138.201.170.176/29 add src-address=178.63.52.200/29 add src-address=136.243.90.80/29 add src-address=136.243.21.232/29 add src-address=95.213.221.0/24 add src-address=159.255.24.0/24 add src-address=31.184.210.0/24 add src-address=188.187.119.0/24 add src-address=188.233.1.0/24 add src-address=188.233.5.0/24 add src-address=188.233.13.0/24 add src-address=188.232.101.0/24 add src-address=188.232.105.0/24 add src-address=188.232.109.0/24 add src-address=176.212.165.0/24 add src-address=176.212.169.0/24 add src-address=176.212.173.0/24 add src-address=176.213.161.0/24 add src-address=176.213.165.0/24 add src-address=176.213.169.0/24 add src-address=5.3.113.0/24 add src-address=5.3.117.0/24 add src-address=5.3.121.0/24 add src-address=5.3.145.0/24 add src-address=5.3.149.0/24 add src-address=5.3.153.0/24 add src-address=5.167.9.0/24 add src-address=5.167.13.0/24 add src-address=5.167.17.0/24 add src-address=94.180.1.0/24 add src-address=94.180.5.0/24 add src-address=94.180.9.0/24 add src-address=217.119.22.83 add src-address=192.243.53.0/24 add src-address=176.9.65.8 add src-address=135.181.15.102 add src-address=198.18.0.0/15 add src-address=139.99.94.160/29 add src-address=5.188.119.191 add src-address=178.63.52.202 add src-address=136.243.21.233 add src-address=136.243.90.81 add src-address=94.130.223.9 add action=deny src-address=0.0.0.0/0 /ipv6 address add address=2804:4de8:1000::13/128 advertise=no interface=loopbridge add address=2804:4de8:1002:8::2 advertise=no interface=ether3 add address=2804:4de8:1002:c::2 advertise=no interface=ether2 /ppp aaa set use-radius=yes /ppp secret add name=catarina password=gnt58wifi profile=Uplink_Sinval service=pppoe add name=teste password=Ac4c10 profile=profile10mb service=pppoe /radius add address=45.236.87.255 secret=proinfo25. service=ppp src-address=192.168.200.5 /routing ospf area range add area=area1 range=100.65.10.0/24 /routing ospf interface add interface=ether3 network-type=point-to-point add add cost=80 interface=ether2 network-type=broadcast add cost=30 interface=ether9 network-type=broadcast /routing ospf network add area=backbone network=192.168.99.184/29 add area=area1 network=100.65.10.0/24 add area=area1 network=192.168.200.5/32 add area=backbone network=192.168.254.48/29 add area=backbone network=10.0.0.96/28 add area=backbone network=192.168.254.72/29 /routing ospf-v3 interface add area=backbone interface=ether3 add area=backbone interface=ether2 /snmp set contact="Acacio Correa " enabled=yes location="General Carneiro/PR" trap-version=2 /system clock set time-zone-name=America/Sao_Paulo /system identity set name="Protek - Vila Rural" /system ntp client set enabled=yes primary-ntp=45.236.84.23 secondary-ntp=200.189.40.8 /system package update set channel=long-term /system scheduler add disabled=yes name=upgrade_packages on-event=" /system reboot" policy=reboot,read,write,policy,test,password start-date=feb/17/2021 start-time=05:00:00 add disabled=yes name=upgrade_firmware on-event="/system routerboard update\r\n/system reboot" policy=reboot,read,write,policy,test,password start-date=feb/17/2021 start-time=05:05:00 /tool romon set enabled=yes secrets=protek-info-12