# jun/13/2017 16:18:19 by RouterOS 6.39rc72 # software id = xxxx-xxxx # /caps-man channel add band=2ghz-g/n control-channel-width=20mhz extension-channel=Ce name=\ 2,4GHz reselect-interval=24m save-selected=yes add band=5ghz-a/n/ac control-channel-width=20mhz extension-channel=Ce name=\ 5GHz reselect-interval=24m save-selected=yes skip-dfs-channels=yes /interface bridge add disabled=yes fast-forward=no name=bridge-01 add fast-forward=no name=bridge-02 add fast-forward=no name=bridge-03 add fast-forward=no name=bridge-04 add fast-forward=no name=bridge-pysical add fast-forward=no name=bridge-05 add fast-forward=no name=bridge-06 add fast-forward=no name=bridge-07 add disabled=yes fast-forward=no name=bridge-vlan /interface ethernet set [ find default-name=ether1 ] name=ether1 set [ find default-name=ether2 ] name=ether2 set [ find default-name=ether3 ] name=ether3 set [ find default-name=ether4 ] name=ether4 set [ find default-name=ether5 ] name=ether5 set [ find default-name=ether6 ] name=ether6 set [ find default-name=ether7 ] name=ether7 set [ find default-name=ether8 ] name=ether8 /ip neighbor discovery set sfp-sfpplus1 discover=no set sfp1 discover=no set bridge-01 set bridge-02 set bridge-03 set bridge-04 set bridge-05 set bridge-06 set bridge-07 /interface vlan add interface=ether1 name=ether01 add interface=ether1 name=ether02 add interface=ether2 name=ether03 /caps-man rates add basic=6Mbps ht-basic-mcs=mcs-0 ht-supported-mcs="mcs-0,mcs-1,mcs-2,mcs-3,m\ cs-4,mcs-5,mcs-6,mcs-7,mcs-8,mcs-9,mcs-10,mcs-11,mcs-12,mcs-13,mcs-14,mcs-\ 15,mcs-16,mcs-17,mcs-18,mcs-19,mcs-20,mcs-21,mcs-22,mcs-23" name=default \ supported=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \ vht-basic-mcs=none,mcs0-7 vht-supported-mcs=none,mcs0-7,mcs0-8,mcs0-9 /caps-man security add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm \ name=xxxxx passphrase="xxxxxxxxx" add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm \ name=xxxxxxxx passphrase="xxxxxxxxxxx" add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm \ name=pysical passphrase="xxxxxxxxxxxxxxxxxx" /caps-man configuration add channel=2,4GHz country=germany datapath=pysical hide-ssid=yes mode=ap \ name=physical-2,4GHz rx-chains=0,1,2 security=pysical ssid=pysical \ tx-chains=0,1,2 add country=germany datapath=path01 mode=ap name=\ path01 rates=default security=security1 ssid=\ path01 add country=germany datapath=path02 mode=ap name=path02 rates=default \ security=path02 ssid=path02 /caps-man interface add configuration=physical-2,4GHz disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00:00 master-interface=none name=\ 4-67370665861D-1 radio-mac=00:00:00:00:00:00 add configuration=path01 disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00:00 master-interface=4-67370665861D-1 name=\ 4-67370665861D-1-1 radio-mac=00:00:00:00:00:00 add configuration=physical-2,4GHz disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00: master-interface=none name=673706ADC0EA-1 \ radio-mac=00:00:00:00:00:00 add configuration=path03 disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00:00 master-interface=673706ADC0EA-1 name=\ 673706ADC0EA-1-1 radio-mac=00:00:00:00:00:00 add configuration=path05 disabled=yes mac-address=00:00:00:00:00:00 \ master-interface=673706ADC0EA-1 name=\ 673706ADC0EA-1-10 radio-mac=00:00:00:00:00:00 add configuration=physical-5GHz disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00: master-interface=none name=684306CDD0EA-1 \ radio-mac=00:00:00:00:00:00 add configuration=path06 disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00:00 master-interface=625726ADC0DA-1 name=\ 625726ADC0DA-1-1 radio-mac=00:00:00:00:00:00 add configuration=physical-5GHz disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00:00 master-interface=none name=673706ADC0EA-2 \ radio-mac=00:00:00:00:00:00 add configuration=physical-2,4GHz disabled=no l2mtu=1600 mac-address=\ 00:00:00:00:00:00F master-interface=none name=\ 4-67380665861D-1 radio-mac=00:00:00:00:00:00 /ip pool add name=dhcp_1 ranges=xx.xx.xx.xx-xx.xx.xx.xx add name=dhcp_2 ranges=xx.xx.xx.xx-xx.xx.xx.xx add name=dhcp_3 ranges=xx.xx.xx.xx-xx.xx.xx.xx add name=dhcp_4 ranges=xx.xx.xx.xx-xx.xx.xx.xx /ip dhcp-server add address-pool=dhcp_1 authoritative=after-2sec-delay disabled=no \ interface=ether8 lease-time=12h name=dhcp1 add address-pool=dhcp_2 authoritative=after-2sec-delay disabled=no \ interface=bridge1 name=dhcp2 /system logging action set 3 bsd-syslog=yes remote=xx.xx.xx.xx-xx.xx.xx.xx syslog-facility=local1 /caps-man access-list add action=accept disabled=yes interface=all signal-range=-80..120 \ ssid-regexp="" add action=reject disabled=yes interface=all signal-range=-120..-81 \ ssid-regexp="" /caps-man manager set ca-certificate=CAPsMAN-CA certificate=CAPsMAN \ enabled=yes package-path=/capupdate /caps-man provisioning add action=create-disabled hw-supported-modes=ac master-configuration=\ physical-5GHz name-format=identity slave-configurations="path01,path02 path03,path04\ add action=create-disabled hw-supported-modes=gn master-configuration=\ physical-2,4GHz name-format=identity slave-configurations="path01,path02 path03,path04 /interface bridge port add auto-isolate=yes bridge=bridge1 interface=\ ether2-sw-c24-vlan166-wlan-ggems-gast add auto-isolate=yes bridge=bridge2 interface=\ ether2-sw-c24-vlan99-MGM-Infra add auto-isolate=yes bridge=bridge1 interface=ether5 add auto-isolate=yes bridge=bridge2 interface=ether2 add auto-isolate=yes bridge=bridge3 interface=\ ether3 /interface bridge settings set allow-fast-path=no /interface l2tp-server server set caller-id-type=ip-address /ip address add address=xx.xx.xx.xx-xx.xx.xx.xx/24 interface=bridge1 network=xx.xx.xx.xx-xx.xx.xx.xx add address=xx.xx.xx.xx-xx.xx.xx.xx/24 interface=ether2 network=xx.xx.xx.xx-xx.xx.xx.xx add address=xx.xx.xx.xx./24 disabled=yes interface=bridge1 \ network=xx.xx.xx.xx-xx.xx.xx.xx /ip dhcp-client add add-default-route=no dhcp-options=hostname,clientid interface=\ bridge1 use-peer-dns=no use-peer-ntp=no add add-default-route=no dhcp-options=hostname,clientid interface=\ ether2 use-peer-dns=no use-peer-ntp=no add add-default-route=no dhcp-options=hostname,clientid interface=\ ether4 use-peer-ntp=no /ip dhcp-server lease add address=xx.xx.xx.xx-xx.xx.xx.xx client-id=xx.xx.xx.xx-xx.xx.xx.xx mac-address=\ 00:00:00:00:00:00 server=dhcp1 add address=xx.xx.xx.xx-xx.xx.xx.xx client-id=xx.xx.xx.xx-xx.xx.xx.xx mac-address=\ 00:00:00:00:00:00 server=dhcp1 /ip dhcp-server network add address=xx.xx.xx.xx/24 dns-server=xx.xx.xx.xx gateway=xx.xx.xx.xx add address=xx.xx.xx.xx/24 dns-server=xx.xx.xx.xx gateway=xx.xx.xx.xx add address=xx.xx.xx.xx/24 dns-server=xx.xx.xx.xx gateway=xx.xx.xx.xx add address=xx.xx.xx.xx/24 dns-server=xx.xx.xx.xx gateway=xx.xx.xx.xx add address=xx.xx.xx.xx/24 dns-server=xx.xx.xx.xx domain=xxxxxxxxxxxx \ gateway=xx.xx.xx.xx /ip dns set servers=xx.xx.xx.xx. /ip route add distance=1 gateway=xx.xx.xx.xx. add distance=1 dst-address=xx.xx.xx.xx./24 gateway=xx.xx.xx.xx /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set ssh disabled=yes set api disabled=yes set api-ssl disabled=yes /lcd set backlight-timeout=never color-scheme=dark default-screen=stat-slideshow \ read-only-mode=yes /lcd interface set sfp-sfpplus1 disabled=yes set sfp1 disabled=yes set ether1 disabled=yes set ether2 disabled=yes set ether3 disabled=yes set ether4 disabled=yes set ether5 disabled=yes set ether6 disabled=yes set ether7 disabled=yes /system clock set time-zone-name=Europe/Berlin /system identity set name=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx /system logging add action=remote topics=info add action=remote topics=warning add action=remote topics=error add action=remote topics=critical /tool graphing interface add interface=ether1 add interface=ether2 add interface=ether3 add interface=ether4