Thu May 12, 2011 3:42 am
Thanks For your suggestion...
Im new here...
This is the information i get:
Terminal vt102 detected, using multiline input mode
[admin@MikroTik] > /ip address print detail
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; added by setup
address=190.120.X.X/30 network=190.120.X.X broadcast=190.120.X.X
interface=WAN actual-interface=WAN
1 address=192.168.0.1/24 network=192.168.0.0 broadcast=192.168.0.255
interface=LAN_IGO actual-interface=LAN_IGO
2 address=192.168.1.1/24 network=192.168.1.0 broadcast=192.168.1.255
interface=LAN_SM actual-interface=LAN_SM
[admin@MikroTik] > /ip route print detail
Flags: X - disabled, A - active, D - dynamic,
C - connect, S - static, r - rip, b - bgp, o - ospf
0 ADC dst-address=190.120.X.X/30 pref-src=190.120.X.X interface=WAN
scope=10 target-scope=0
1 ADC dst-address=192.168.0.0/24 pref-src=192.168.0.1 interface=LAN_IGO
scope=10 target-scope=0
2 ADC dst-address=192.168.1.0/24 pref-src=192.168.1.1 interface=LAN_SM
scope=10 target-scope=0
3 A S ;;; added by setup
dst-address=0.0.0.0/0 gateway=190.120.X.X interface=WAN
gateway-state=reachable scope=255 target-scope=10
[admin@MikroTik] > /interface print
Flags: X - disabled, D - dynamic, R - running
# NAME TYPE RX-RATE TX-RATE MTU
0 R LAN_SM ether 0 0 1500
1 R WAN ether 0 0 1500
2 R LAN_IGO ether 0 0 1500
[admin@MikroTik] > /ip firewall export
/ ip firewall mangle
add chain=prerouting src-address-list=sm action=mark-connection \
new-connection-mark=sm_cnn passthrough=yes comment="" disabled=no
add chain=forward connection-mark=sm_cnn action=mark-packet \
new-packet-mark=sm_traffic passthrough=no comment="" disabled=no
/ ip firewall nat
add chain=srcnat out-interface=LAN_IGO action=masquerade comment="" \
disabled=yes
/ ip firewall connection tracking
set enabled=yes tcp-syn-sent-timeout=5s tcp-syn-received-timeout=5s \
tcp-established-timeout=1d tcp-fin-wait-timeout=10s \
tcp-close-wait-timeout=10s tcp-last-ack-timeout=10s \
tcp-time-wait-timeout=10s tcp-close-timeout=10s udp-timeout=10s \
udp-stream-timeout=3m icmp-timeout=10s generic-timeout=10m \
tcp-syncookie=no
/ ip firewall address-list
add list=sm address=192.168.1.0/24 comment="" disabled=no
/ ip firewall service-port
set ftp ports=21 disabled=no
set tftp ports=69 disabled=no
set irc ports=6667 disabled=no
set h323 disabled=yes
set quake3 disabled=no
set gre disabled=yes
set pptp disabled=yes
Thanks
You do not have the required permissions to view the files attached to this post.