# version: 7.18.2 (stable) # factory-software: 7.8 # total-memory: 1024.0MiB # cpu: ARM64 # cpu-count: 4 # total-hdd-space: 1024.0MiB # architecture-name: arm64 # board-name: RB5009UG+S+ # platform: MikroTik # installed-version: 7.18.2 # # software id = J354-DBUD # # model = RB5009UG+S+ # serial number = HKC0AK0RT3P /interface bridge add name=BR-LAN /interface ethernet set [ find default-name=ether3 ] name="ether3 -LAN CLIENTE" set [ find default-name=sfp-sfpplus1 ] name="sfp-sfpplus1-WAN IXTLAHUACA" /ip pool add name=dhcp_pool0 ranges=192.168.11.20-192.168.11.254 add name=dhcp_pool1 ranges=192.168.11.20-192.168.11.254 /snmp community add addresses=::/0 name=SNMP-SOMNET /system logging action add name=GrafanaLoki remote=172.20.0.254 remote-log-format=syslog remote-port=1514 src-address=172.20.1.45 target=remote /interface bridge port add bridge=BR-LAN interface="ether3 -LAN CLIENTE" add bridge=BR-LAN interface="sfp-sfpplus1-WAN IXTLAHUACA" /ip address add address=172.20.1.45/16 interface=BR-LAN network=172.20.0.0 /ip dhcp-server network add address=192.168.11.0/24 gateway=192.168.11.1 /ip dns set servers=1.1.1.2,1.0.0.2 /ip firewall nat # in/out-interface matcher not possible when interface (sfp-sfpplus1-WAN IXTLAHUACA) is slave - use master instead (BR-LAN) add action=masquerade chain=srcnat out-interface="sfp-sfpplus1-WAN IXTLAHUACA" /ip route add check-gateway=ping disabled=no dst-address=0.0.0.0/0 gateway=172.20.1.1 routing-table=main suppress-hw-offload=no /ip service set telnet disabled=yes set ftp disabled=yes set www port=8080 set ssh port=46825 set api disabled=yes set api-ssl disabled=yes /radius add address=172.20.6.1 secret=Fr3eR4d!u5 service=login src-address=172.20.1.45 /snmp set enabled=yes trap-community=SNMP-SOMNET /system clock set time-zone-name=America/Mexico_City /system identity set name=SW-MIGUELMATEO-TOXICO /system logging add action=GrafanaLoki prefix=172.20.1.45 topics=critical add action=GrafanaLoki prefix=172.20.1.45 topics=error add action=GrafanaLoki prefix=172.20.1.45 topics=warning add action=GrafanaLoki prefix=172.20.1.45 topics=info /system note set show-at-login=no /system ntp client set enabled=yes /system ntp client servers add address=0.mx.pool.ntp.or add address=1.mx.pool.ntp.or /tool graphing interface add /tool graphing resource add /user aaa set default-group=full use-radius=yes