# version: 7.18.2 (stable) # factory-software: 7.10 # total-memory: 4096.0MiB # cpu: ARM64 # cpu-count: 4 # total-hdd-space: 128.0MiB # architecture-name: arm64 # board-name: CCR2004-16G-2S+ # platform: MikroTik # installed-version: 7.18.2 # # software id = 6KIN-MDNF # # model = CCR2004-16G-2S+ # serial number = HG909V8QHAY /interface bridge add name=BRIDGE-SOMNET add name=BRIDGE-UAEMEX /interface ethernet set [ find default-name=ether1 ] name="ether1-WAN SOMNET" set [ find default-name=ether3 ] name=ether3-LAN1 set [ find default-name=ether4 ] name=ether4-LAN2 set [ find default-name=ether16 ] name="ether16-REDUNDANCIA INALAMBRICA" /interface vxlan add dont-fragment=disabled mac-address=DE:CA:3A:28:FD:E3 mtu=1450 name=vxlan14812-DECyD vni=14812 /interface vlan add disabled=yes interface=BRIDGE-SOMNET name=vlan148 vlan-id=148 /port set 0 name=serial0 /snmp community set [ find default=yes ] authentication-password=LICITACION2026 authentication-protocol=SHA1 encryption-password=LICITACION2026 name=SNMP-SOMNET /system logging action add name=GrafanaLoki remote=172.20.0.254 remote-log-format=syslog remote-port=1514 src-address=172.20.1.234 target=remote /interface bridge port add bridge=BRIDGE-SOMNET interface="ether1-WAN SOMNET" add bridge=BRIDGE-UAEMEX interface=vlan148 add bridge=BRIDGE-UAEMEX interface=ether3-LAN1 add bridge=BRIDGE-UAEMEX interface=ether4-LAN2 add bridge=BRIDGE-UAEMEX interface=vxlan14812-DECyD /interface bridge settings set use-ip-firewall=yes /interface vxlan vteps add interface=vxlan14812-DECyD remote-ip=172.20.4.104 /ip address add address=172.20.1.234/16 interface=BRIDGE-SOMNET network=172.20.0.0 add address=172.16.10.3/27 interface=BRIDGE-UAEMEX network=172.16.10.0 add address=172.16.16.129/30 disabled=yes interface=BRIDGE-UAEMEX network=172.16.16.128 add address=172.148.148.13/24 comment="SNMP UAEM\E9x" interface=BRIDGE-UAEMEX network=172.148.148.0 /ip dns set servers=1.1.1.2,1.0.0.2 /ip firewall mangle add action=change-mss chain=forward new-mss=1400 protocol=tcp tcp-flags=syn /ip route add comment="RUTA POR DEFAULT" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=172.20.1.1 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add disabled=yes distance=1 dst-address=148.215.174.0/24 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 add disabled=yes distance=1 dst-address=148.215.173.0/24 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 add disabled=yes distance=1 dst-address=172.17.219.0/24 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 add disabled=yes distance=1 dst-address=172.17.239.0/24 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 add disabled=yes distance=1 dst-address=172.17.237.0/24 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 add disabled=yes distance=1 dst-address=10.174.0.0/21 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 add disabled=yes distance=1 dst-address=172.17.174.0/24 gateway=172.16.16.130 routing-table=main scope=30 target-scope=10 /ip service set telnet disabled=yes set ftp disabled=yes set www port=8080 set ssh port=46825 set api disabled=yes set api-ssl disabled=yes /radius add address=172.20.6.1 secret=Fr3eR4d!u5 service=login src-address=172.20.1.234 /snmp set enabled=yes trap-version=3 /system clock set time-zone-name=America/Mexico_City /system identity set name=MK-DECyD-L2L-2026 /system logging add action=GrafanaLoki prefix=172.20.1.234 topics=critical add action=GrafanaLoki prefix=172.20.1.234 topics=info add action=GrafanaLoki prefix=172.20.1.234 topics=warning add action=GrafanaLoki prefix=172.20.1.234 topics=error /system note set show-at-login=no /system ntp client set enabled=yes /system ntp client servers add address=0.mx.pool.ntp.org add address=1.mx.pool.ntp.org /system routerboard settings set enter-setup-on=delete-key /tool graphing interface add /tool graphing resource add /user aaa set default-group=full use-radius=yes