Connect and Disconnect

I don’t know if this is the same problem that has been posted about quite a lot.

Any suggestions as to what is going on?

The 70:xx:xx:xx:xx:xx device is a Beelink Mini PC less than 50 feet from the ax3.

.
Screenshot 2024-11-08 162312.png
.

Here is my config:

# 2024-11-08 16:18:18 by RouterOS 7.16.1
# software id = 5NRD-V1QF
#
# model = C53UiG+5HPaxD2HPaxD
# serial number = HDG0
/interface bridge add admin-mac=48:A9:8A:0F:04:8F auto-mac=no comment=defconf name=bridge port-cost-mode=short
/interface bridge add admin-mac=4A:A9:8A:0F:04:94 auto-mac=no name=bridge-guestwifi
/interface ethernet set [ find default-name=ether1 ] comment="To RB5009" poe-out=off
/interface ethernet set [ find default-name=ether3 ] comment=TV
/interface ethernet set [ find default-name=ether4 ] comment=TV
/interface wifi set [ find default-name=wifi1 ] channel.band=5ghz-ax .frequency=5250-5330 .skip-dfs-channels=all .width=20/40/80mhz configuration.antenna-gain=0 .country=Russia .mode=ap .ssid=Upstairs5g-0F0493 .tx-power=16 disabled=no security.authentication-types=wpa2-psk .disable-pmkid=yes .ft=yes .ft-over-ds=yes .management-protection=disabled
/interface wifi set [ find default-name=wifi2 ] channel.band=2ghz-g .skip-dfs-channels=disabled .width=20mhz configuration.country="United States" .mode=ap .ssid=Upstairs-2G-0F0494 disabled=no security.authentication-types=wpa2-psk .disable-pmkid=yes .ft=yes .ft-over-ds=yes .management-protection=disabled
/interface eoip add disabled=yes mac-address=02:88:47:EE:7A:47 name=eoip-tunnel-to-212-rb5009 remote-address=XXXXXXnnel-id=101
/interface wifi add configuration.mode=ap .ssid=2point4 disabled=no mac-address=4A:A9:8A:0F:04:93 master-interface=wifi2 mtu=1500 name=2point4 security.authentication-types=wpa2-psk .disable-pmkid=yes .ft=yes .ft-over-ds=yes
/interface list add comment=defconf name=WAN
/interface list add comment=defconf name=LAN
/interface list add include=all name=TRUSTED
/interface wifi configuration add datapath.client-isolation=yes disabled=no name=guestcfg security.authentication-types=wpa2-psk .disable-pmkid=yes .ft=yes .ft-over-ds=yes ssid=GuestWifi
/interface wifi add configuration=guestcfg configuration.mode=ap mac-address=4A:A9:8A:0F:04:94 master-interface=wifi2 name=Guest2g security.management-protection=disabled
/interface wifi add configuration=guestcfg configuration.mode=ap disabled=no mac-address=4A:A9:8A:0F:04:95 master-interface=wifi1 name=Guest5g security.management-protection=disabled
/ip pool add name=pool-guest ranges=10.0.0.10-10.0.0.252
/ip smb users set [ find default=yes ] disabled=yes
/queue type add fq-codel-interval=60ms fq-codel-limit=800 kind=fq-codel name=fq
/system logging action set 3 remote=192.168.0.13 syslog-severity=emergency
/system logging action add name=logserver remote=192.168.0.112 remote-port=51400 target=remote
/system logging action add name=Graylog remote=192.168.0.147 syslog-severity=emergency target=remote
/interface bridge port add bridge=bridge comment=defconf interface=ether2 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf interface=ether3 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf interface=ether4 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf interface=ether5 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf interface=*6 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf interface=wifi2 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge interface=ether1 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge interface=2point4 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge interface=wifi1
/interface bridge port add bridge=bridge-guestwifi interface=Guest2g
/interface bridge port add bridge=bridge-guestwifi interface=Guest5g
/ip firewall connection tracking set udp-timeout=10s
/ip neighbor discovery-settings set discover-interface-list=TRUSTED
/interface bridge vlan add bridge=bridge disabled=yes vlan-ids=100
/interface list member add comment=defconf interface=bridge list=LAN
/interface list member add comment=defconf interface=ether1 list=WAN
/interface list member add interface=bridge list=TRUSTED
/interface list member add interface=ether1 list=TRUSTED
/interface list member add interface=*6 list=TRUSTED
/interface list member add interface=wifi2 list=TRUSTED
/interface wifi access-list add action=accept comment=HarmonyHub disabled=no mac-address=00:04:20:F9:31:D2
/interface wifi access-list add action=accept comment=MFC-L3770 disabled=no mac-address=30:C9:AB:17:71:59
/interface wifi access-list add action=accept comment="JRS iPhone" disabled=no mac-address=FC:AA:81:2A:1F:B4
/interface wifi access-list add action=accept comment="\?\?\?" disabled=no mac-address=96:4E:A5:1A:A9:74
/interface wifi access-list add action=accept comment="\?\?\?" disabled=no mac-address=52:DA:D4:46:23:5B
/interface wifi access-list add action=accept comment="Thomas iPhone" disabled=no mac-address=46:B4:96:5E:1A:1B
/interface wifi access-list add action=accept comment="SRN iPhone" disabled=no mac-address=4A:11:46:2B:5B:78
/interface wifi access-list add action=accept comment="\?\?\?" disabled=no mac-address=02:2A:61:8A:88:A7
/interface wifi access-list add action=accept comment="SRN iPad" disabled=no mac-address=16:31:50:11:6B:CF
/interface wifi access-list add action=accept comment=DCP-L2550DW disabled=no mac-address=2C:6F:C9:5F:BC:EB
/interface wifi access-list add action=accept comment=Laptop-JRS-AN51 disabled=no mac-address=94:E7:0B:29:30:E7
/interface wifi access-list add action=accept comment="Tasmota switch" disabled=no mac-address=C4:5B:BE:E3:76:77
/interface wifi access-list add action=accept comment="JRS Laptop 2023" disabled=no mac-address=64:49:7D:61:AE:2C
/interface wifi access-list add action=accept comment="Living room (TV maybe)" disabled=no mac-address=D4:90:9C:D8:66:99
/interface wifi access-list add action=accept comment="49TCLRokuTV - Thomas" disabled=no mac-address=0C:62:A6:1E:8B:18
/interface wifi access-list add action=accept comment="SRN MS laptop" disabled=no mac-address=24:EE:9A:54:9A:E8
/interface wifi access-list add action=accept comment=MFC-L2550 disabled=no mac-address=B2:38:0C:90:FE:04
/interface wifi access-list add action=accept comment="THR316 Thomas BR" disabled=no mac-address=C8:F0:9E:E8:8A:E4
/interface wifi access-list add action=accept comment="SRN iPhone" disabled=no mac-address=EA:C1:05:82:99:7C
/interface wifi access-list add action=accept comment="THS Acer Laptop" disabled=no mac-address=54:6C:EB:7B:A2:C3
/interface wifi access-list add action=accept comment="Screek Human Sensor 2A 16 LR" disabled=no mac-address=EC:DA:3B:D1:92:3C
/interface wifi access-list add action=accept comment="Shelly Button1 15 AV Equip" disabled=no mac-address=48:55:19:F0:73:12
/interface wifi access-list add action=accept comment="Beelink 212 DR" disabled=no mac-address=70:D8:C2:4C:54:64
/ip address add address=192.168.2.5/24 comment=defconf interface=bridge network=192.168.2.0
/ip address add address=10.10.10.5/24 disabled=yes interface=bridge network=10.10.10.0
/ip address add address=172.16.0.1/24 disabled=yes interface=*C network=172.16.0.0
/ip address add address=10.0.0.1/24 interface=bridge-guestwifi network=10.0.0.0
/ip address add address=10.0.0.1/24 disabled=yes interface=Guest5g network=10.0.0.0
/ip cloud set ddns-enabled=yes
/ip dhcp-server add address-pool=pool-guest interface=bridge-guestwifi name=dhcp-guestwifi
/ip dhcp-server add address-pool=pool-guest disabled=yes interface=Guest5g name=dhcp-guest5g
/ip dhcp-server network add address=10.0.0.0/24 dns-server=1.1.1.1 gateway=10.0.0.1
/ip dns set allow-remote-requests=yes cache-max-ttl=4w cache-size=32768KiB query-server-timeout=5s servers=1.1.1.1,8.8.8.8,9.9.9.9,8.8.4.4
/ip dns static add address=192.168.2.5 comment=defconf name=hapax3.212.local type=A
/ip dns static add address=10.0.0.1 comment=defconf name=router.lan type=A
/ip firewall address-list add address=10.0.0.2-10.0.0.254 list="Guest WiFi"
/ip firewall filter add action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untracked
/ip firewall filter add action=drop chain=input comment="defconf: drop invalid" connection-state=invalid
/ip firewall filter add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
/ip firewall filter add action=accept chain=input comment="allow 67 68 to 10.0.0.1" dst-address=10.0.0.1 dst-port=67,68 log-prefix="allow 67 68  to 10.0.0.1" protocol=udp
/ip firewall filter add action=drop chain=input comment="drop all to 10.0.0.1" dst-address=10.0.0.1 in-interface=!lo log=yes log-prefix="drop all to 10.0.0.1"
/ip firewall filter add action=accept chain=input
/ip firewall filter add action=drop chain=forward comment="drop all 10.0.0.0/24 to not-WAN" disabled=yes log=yes log-prefix=drop-all-10-0-0-0-24-to-not-WAN out-interface-list=!WAN src-address=10.0.0.0/24
/ip firewall filter add action=drop chain=forward comment="drop guest to 192.168.0.0/16" dst-address=192.168.0.0/16 dst-port=!53,68,68 log=yes log-prefix=drop-guest-to-192-168-0-0-16 protocol=udp src-address-list="Guest WiFi"
/ip firewall filter add action=accept chain=forward
/ip firewall filter add action=accept chain=input disabled=yes
/ip firewall filter add action=accept chain=input comment="defconf: accept to local loopback (for CAPsMAN)" disabled=yes dst-address=127.0.0.1
/ip firewall filter add action=drop chain=input comment="defconf: drop all not coming from LAN" disabled=yes in-interface-list=!LAN
/ip firewall filter add action=accept chain=forward disabled=yes in-interface-list=LAN log=yes
/ip firewall filter add action=accept chain=forward comment="defconf: accept out ipsec policy" disabled=yes ipsec-policy=out,ipsec
/ip firewall filter add action=fasttrack-connection chain=forward comment="defconf: fasttrack" connection-state=established,related disabled=yes hw-offload=yes
/ip firewall filter add action=accept chain=forward comment="defconf: accept established,related, untracked" connection-state=established,related,untracked disabled=yes
/ip firewall filter add action=drop chain=forward comment="defconf: drop invalid" connection-state=invalid disabled=yes
/ip firewall filter add action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat connection-state=new disabled=yes in-interface-list=WAN
/ip firewall nat add action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=out,none out-interface-list=WAN
/ip ipsec profile set [ find default=yes ] dpd-interval=2m dpd-maximum-failures=5
/ip kid-control add fri=0s-1d mon=0s-1d name=Monitor sat=0s-1d sun=0s-1d thu=0s-1d tue=0s-1d wed=0s-1d
/ip route add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=192.168.2.2 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
/ip service set www-ssl disabled=no
/ip smb shares set [ find default=yes ] directory=/pub
/snmp set enabled=yes trap-version=2
/system clock set time-zone-name=America/New_York
/system identity set name=212hAP-Ax3
/system logging add topics=wireless
/system logging add action=logserver prefix="XXXXXC MikroTik" topics=hotspot
/system logging add action=logserver prefix="XXXXXC MikroTik" topics=!debug,!packet,!snmp
/system logging add topics=account
/system logging add action=remote prefix="192.168.2.5 " topics=info
/system logging add disabled=yes topics=dhcp
/system logging add action=Graylog topics=debug,packet,wireless,dns,netwatch,dhcp
/system note set show-at-login=no
/system ntp client set enabled=yes
/system ntp client servers add address=192.168.2.2
/system ntp client servers add address=3.pool.ntp.org
/system ntp client servers add address=0.north-america.pool.ntp.org
/system scheduler add interval=4d name=export-download on-event=export-download policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2023-02-01 start-time=16:44:58
/system scheduler add interval=2w name=dynamic-data-rextended on-event=dynamic-data-rextended policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2023-09-30 start-time=02:58:29
/system scheduler add disabled=yes interval=5m name=Data_to_Splunk on-event=Data_to_Splunk_using_Syslog policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2024-09-08 start-time=06:53:02
/system script add dont-require-permissions=no name=export-download owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="\r\
    \n\r\
    \n/system\r\
    \n:local cdate [clock get date] \r\
    \n:local yyyy  [:pick \$cdate 0  4]\r\
    \n:local MM    [:pick \$cdate 5  7]\r\
    \n:local dd    [:pick \$cdate 8 10]\r\
    \n:local identitydate \"\$[identity get name]_\$yyyy-\$MM-\$dd\"\r\
    \n/export show-sensitive file=\"\$identitydate\"\r\
    \n\r\
    \n/tool fetch upload=yes mode=ftp ascii=no src-path=\"/\$[\$identitydate].rsc\" dst-path=\"/mikrotik-backups/\$[\$identitydate].rsc\" address=192.168.2.22 port=21 user=mikrotik password=XXXXX\r\
    \n\r\
    \n/file remove \"\$[\$identitydate]\"\r\
    \n\r\
    \n:log info (\"Uploaded rsc backup to 192.168.2.22 as \".\$identitydate)\r\
    \n\r\
    \n"
/system script add dont-require-permissions=yes name=dynamic-data-rextended owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="/system\r\
    \n:local identitydate \"\$[identity get name]_\$[clock get date]\"\r\
    \n:local stringexec   \"/system iden print; :put \\\"\\\\r\\\\n\\\"; /ip cloud pri; :put \\\"\\\\r\\\\n\\\";  /ip dhcp-server lease pri det; :put \\\"\\\\r\\\\n\\\"; /int bridge host pri det\"\r\
    \n\r\
    \n:if ([:len [/system package find where name=\"wifiwave2\"]] > 1) do={\r\
    \n    :set stringexec \"\$stringexec; :put \\\"\\\\r\\\\n\\\" /int wifiwave2 reg pri det\"\r\
    \n} \r\
    \n\r\
    \n:if ([:len [/system package find where name=\"wifiwave2\"]] > 1) do={\r\
    \n    :set stringexec \"\$stringexec; :put \\\"\\\\r\\\\n\\\" /int wireless reg pri det\"\r\
    \n}\r\
    \n\r\
    \n\r\
    \n/file remove [find where name=tmpresults.txt]\r\
    \n:delay 1s\r\
    \n:execute \$stringexec file=tmpresults.txt\r\
    \n:delay 2s\r\
    \n\r\
    \n/tool fetch upload=yes mode=ftp ascii=no address=192.168.2.22 port=21 user=mikrotik password=XXXXX  src-path=tmpresults.txt dst-path=\"/mikrotik-backups/\$identitydate-dynamicdata.txt\"\r\
    \n\r\
    \n/file remove [find where name=tmpresults.txt]"
/system script add dont-require-permissions=no name=Data_to_Splunk_using_Syslog owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="# Collect information from Mikrotik RouterOS\r\
    \n# Jotne 2024\r\
    \n# Script name=Data_to_Splunk_using_Syslog\r\
    \n:log info message=\"script=version ver=5.6\"\r\
    \n# ----------------------------------\r\
    \n\r\
    \n# Auto update syslog server. 5.3-5.4.\r\
    \n# Change <your syslog dns name> to the dns of your syslog server.\r\
    \n# The update is disabled by default.  Remove the # from the two next line to use it.\r\
    \n\r\
    \n#:local mySyslog [resolve <your syslog dns name>]\r\
    \n#/system/logging/action/set [find where name=\"logserver\"] remote=\$mySyslog\r\
    \n\r\
    \n\r\
    \n# What data to collect.  Set to false to skip the section \r\
    \n# ----------------------------------\r\
    \n:local SystemResource true\r\
    \n:local SystemInformation true\r\
    \n:local SystemHealth true\r\
    \n:local TrafficData true\r\
    \n:local AccountData true\r\
    \n:local uPnP true\r\
    \n:local Wireless true\r\
    \n:local AddressLists true\r\
    \n:local DHCP true\r\
    \n:local Neighbor true\r\
    \n:local InterfaceData true\r\
    \n:local CmdHistory true\r\
    \n:local CAPsMANN false\r\
    \n\r\
    \n:local Routing true\r\
    \n:local OSPF false\r\
    \n:local BGP false\r\
    \n\r\
    \n:local PPP true\r\
    \n:local IPSEC true\r\
    \n\r\
    \n# Get RouterOS main version (used to run different script on different version)\r\
    \n:local train [:tonum [:pick [/system resource get version] 0 1]] \r\
    \n\r\
    \n# Collect system resource\r\
    \n# ----------------------------------\r\
    \n:if (\$SystemResource) do={\r\
    \n\t/system resource\r\
    \n\t:local cpuload [get cpu-load]\r\
    \n\t:local freemem ([get free-memory]/1048576)\r\
    \n\t:local totmem ([get total-memory]/1048576)\r\
    \n\t:local freehddspace ([get free-hdd-space]/1048576)\r\
    \n\t:local totalhddspace ([get total-hdd-space]/1048576)\r\
    \n\t:local up [get uptime]\r\
    \n\t:local sector [get write-sect-total]\r\
    \n\t:log info message=\"script=resource free_memory=\$freemem MB total_memory=\$totmem MB free_hdd_space=\$freehddspace MB total_hdd_space=\$totalhddspace MB cpu_load=\$cpuload uptime=\$up write-sect-total=\$sector\"\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Make some part only run every hours\r\
    \n# ----------------------------------\r\
    \n:global Hour\r\
    \n:local run false\r\
    \n:local hour [:pick [/system clock get time] 0 2]\r\
    \n:if (\$Hour != \$hour) do={\r\
    \n\t:global Hour \$hour\r\
    \n\t:set run true\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Get NTP status\r\
    \n# ----------------------------------\r\
    \n:local ntpstatus \"\"\r\
    \n:if ([:len [/system package find where !disabled and name=ntp]] > 0 or [:tonum [:pick [/system resource get version] 0 1]] > 6) do={\r\
    \n    :set ntpstatus [/system ntp client get status]\r\
    \n} else={\r\
    \n    :if ([:typeof [/system ntp client get last-update-from]] = \"nil\") do={\r\
    \n        :set ntpstatus \"using-local-clock\"\r\
    \n    } else={\r\
    \n        :set ntpstatus \"synchronized\"\r\
    \n    }\r\
    \n}\r\
    \n:log info message=\"script=ntp status=\$ntpstatus\" \r\
    \n\r\
    \n\r\
    \n# Get interface traffic data for all interface\r\
    \n# ----------------------------------\r\
    \n:if (\$TrafficData) do={\r\
    \n\t:foreach id in=[/interface find] do={\r\
    \n\t\t:local output \"\$[/interface print stats as-value where .id=\$id]\"\r\
    \n\t\t:set ( \"\$output\"->\"script\" ) \"if_traffic\"\r\
    \n\t\t:log info message=\"\$output\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Get traffic data v2 (Kid Control)\r\
    \n# ----------------------------------\r\
    \n:if (\$AccountData) do={\r\
    \n\t:foreach logline in=[/ip kid-control device find] do={\r\
    \n\t\t:local output \"\$[/ip kid-control device get \$logline]\"\r\
    \n\t\t:set ( \"\$output\"->\"script\" ) \"kids\"\r\
    \n\t\t:log info message=\"\$output\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Finding dynmaic lines used in uPnP\r\
    \n# ----------------------------------\r\
    \n:if (\$uPnP) do={\r\
    \n\t:foreach logline in=[/ip firewall nat find where dynamic=yes and comment~\"^upnp \"] do={\r\
    \n\t\t:local output \"\$[/ip firewall nat print as-value from=\$logline]\"\r\
    \n\t\t:set ( \"\$output\"->\"script\" ) \"upnp\"\r\
    \n\t\t:log info message=\"\$output\" \r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Collect system information 5.5 added ID for non routerBoard 5.6 Remvoed serial\r\
    \n# ----------------------------------\r\
    \n:local model na\r\
    \n:local ffirmware na\r\
    \n:local cfirmware na\r\
    \n:local ufirmware na\r\
    \n:if (\$SystemInformation and \$run) do={\r\
    \n\t:local version ([/system resource get version])\r\
    \n\t:local board ([/system resource get board-name])\r\
    \n\t:local identity ([/system identity get name])\r\
    \n\t:do {\r\
    \n\t\t:if (\$board!=\"CHR\" OR \$board!=\"x86\") do={\r\
    \n\t\t\t/system routerboard\r\
    \n\t\t\t:set model ([get model])\r\
    \n\t\t\t:set ffirmware ([get factory-firmware])\r\
    \n\t\t\t:set cfirmware ([get current-firmware])\r\
    \n\t\t\t:set ufirmware ([get upgrade-firmware])\r\
    \n\t\t}\r\
    \n\t} on-error={}\r\
    \n\t:log info message=\"script=sysinfo version=\\\"\$version\\\" board-name=\\\"\$board\\\" model=\\\"\$model\\\" identity=\\\"\$identity\\\" factory-firmware=\\\"\$ffirmware\\\" current-firmware=\\\"\$cfirmware\\\" upgrade-firmware=\\\"\$ufirmware\\\"\"\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Collect system health\r\
    \n# ----------------------------------\r\
    \n:if (\$train > 6 and \$SystemHealth) do={\r\
    \n\t# New version (RouterOS >6)\r\
    \n\t:foreach id in=[/system health find] do={\r\
    \n\t\t:local health \"\$[/system health get \$id]\"\r\
    \n\t\t:set ( \"\$health\"->\"script\" ) \"health\"\r\
    \n\t\t:log info message=\"\$health\"\r\
    \n\t}\r\
    \n} else={\r\
    \n\t# Old version (RouterOS 6 or older)\r\
    \n\t:if (!([/system health get]~\"(state=disabled|^\\\$)\")) do={\r\
    \n\t\t:local health \"\$[/system health get]\"\r\
    \n\t\t:set ( \"\$health\"->\"script\" ) \"health\"\r\
    \n\t\t:log info message=\"\$health\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n\r\
    \n# Sends wireless client data to log server \r\
    \n# ----------------------------------\r\
    \n:if (\$Wireless && [:len [/int find where type=wlan]]>0) do={\r\
    \n\t/interface wireless registration-table\r\
    \n\t:foreach i in=[find] do={\r\
    \n\t\t:log info message=\".id=\$i;ap=\$([get \$i ap]);interface=\$([get \$i interface]);mac-address=\$([get \$i mac-address]);signal-strength=\$([get \$i signal-strength]);tx-rate=\$([get \$i tx-rate]);uptime=\$([get \$i uptime]);script=wifi\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Count IP in address-lists\r\
    \n#----------------------------------\r\
    \n:if (\$AddressLists) do={\r\
    \n\t:local array [ :toarray \"\" ]\r\
    \n\t:local addrcntdyn [:toarray \"\"] \r\
    \n\t:local addrcntstat [:toarray \"\"] \r\
    \n\t:local test\r\
    \n\t:foreach id in=[/ip firewall address-list find] do={\r\
    \n\t\t:local rec [/ip firewall address-list get \$id]\r\
    \n\t\t:local listname (\$rec->\"list\")\r\
    \n\t\t:local listdynamic (\$rec->\"dynamic\")\r\
    \n\t\t:if (!(\$array ~ \$listname)) do={ :set array (\$array , \$listname) }\r\
    \n\t\t:if (\$listdynamic = true) do={\r\
    \n\t\t\t:set (\$addrcntdyn->\$listname) (\$addrcntdyn->\$listname+1)\r\
    \n\t\t} else={\r\
    \n\t\t\t:set (\$addrcntstat->\$listname) (\$addrcntstat->\$listname+1)}\r\
    \n\t}\r\
    \n\t:foreach k in=\$array do={\r\
    \n\t\t:log info message=(\"script=address_lists list=\$k dynamic=\".((\$addrcntdyn->\$k)+0).\" static=\".((\$addrcntstat->\$k)+0))}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Get MNDP (CDP) Neighbors\r\
    \n# ----------------------------------\r\
    \n:if (\$Neighbor and \$run) do={\r\
    \n\t:foreach neighborID in=[/ip neighbor find] do={\r\
    \n\t\t:local nb [/ip neighbor get \$neighborID]\r\
    \n\t\t:local id [:pick (\"\$nb\"->\".id\") 1 99]\r\
    \n\t\t:foreach key,value in=\$nb do={\r\
    \n\t\t\t:local newline [:find \$value \"\\n\"]\r\
    \n\t\t\t:if ([\$newline]>0) do={\r\
    \n\t\t\t\t:set value [:pick \$value 0 \$newline]\r\
    \n\t\t\t}\r\
    \n\t\t\t:log info message=\"script=neighbor nid=\$id \$key=\\\"\$value\\\"\"\r\
    \n\t\t}\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Collect DHCP Pool information\r\
    \n# ----------------------------------\r\
    \n:if (\$DHCP and \$run) do={\r\
    \n\t/ip pool {\r\
    \n\t\t:local poolname\r\
    \n\t\t:local pooladdresses\r\
    \n\t\t:local poolused\r\
    \n\t\t:local minaddress\r\
    \n\t\t:local maxaddress\r\
    \n\t\t:local findindex\r\
    \n\r\
    \n# Iterate through IP Pools\r\
    \n\t\t:foreach pool in=[find] do={\r\
    \n\t\t\t:set poolname [get \$pool name]\r\
    \n\t\t\t:set pooladdresses 0\r\
    \n\t\t\t:set poolused 0\r\
    \n\r\
    \n# Iterate through current pool's IP ranges\r\
    \n\t\t\t:foreach range in=[:toarray [get \$pool range]] do={\r\
    \n\r\
    \n# Get min and max addresses\r\
    \n\t\t\t\t:set findindex [:find [:tostr \$range] \"-\"]\r\
    \n\t\t\t\t:if ([:len \$findindex] > 0) do={\r\
    \n\t\t\t\t\t:set minaddress [:pick [:tostr \$range] 0 \$findindex]\r\
    \n\t\t\t\t\t:set maxaddress [:pick [:tostr \$range] (\$findindex + 1) [:len [:tostr \$range]]]\r\
    \n\t\t\t\t} else={\r\
    \n\t\t\t\t\t:set minaddress [:tostr \$range]\r\
    \n\t\t\t\t\t:set maxaddress [:tostr \$range]\r\
    \n\t\t\t\t}\r\
    \n\r\
    \n# Calculate number of ip in one range\r\
    \n\t\t\t\t:set pooladdresses (\$maxaddress - \$minaddress)\r\
    \n\r\
    \n# /foreach range\r\
    \n\t\t\t}\r\
    \n\r\
    \n# Test if pools is used in DHCP or VPN and show leases used\r\
    \n\t\t\t:local dname [/ip dhcp-server find where address-pool=\$poolname]\r\
    \n\t\t\t:if ([:len \$dname] = 0) do={\r\
    \n# No DHCP server found, assume VPN\r\
    \n\t\t\t\t:set poolused [:len [used find pool=[:tostr \$poolname]]]\r\
    \n\t\t\t} else={\r\
    \n# DHCP server found, count leases\r\
    \n\t\t\t\t:local dname [/ip dhcp-server get [find where address-pool=\$poolname] name]\r\
    \n\t\t\t\t:set poolused [:len [/ip dhcp-server lease find where server=\$dname]]}\r\
    \n\r\
    \n# Send data\r\
    \n\t\t\t:log info message=(\"script=pool pool=\$poolname used=\$poolused total=\$pooladdresses\")\r\
    \n\r\
    \n# /foreach pool\r\
    \n\t\t}\r\
    \n# /ip pool\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Get detailed command history RouterOS >= v7\r\
    \n# ----------------------------------\r\
    \n:if (\$train > 6 and \$CmdHistory) do={\r\
    \n\t:global cmd\r\
    \n\t:local f 0\r\
    \n\t:foreach i in=[/system history find] do={\r\
    \n\t\t:if (\$i = \$cmd) do={ :set f 1 }\r\
    \n\t\t:if (\$f != 1) do={\r\
    \n\t\t\t:log info message=\"StartCMD\"\r\
    \n\t\t\t:log info message=[/system history get \$i]\r\
    \n\t\t\t:log info message=\"EndCMD\"\r\
    \n\t\t}\r\
    \n\t}\r\
    \n\t:global cmd  [:pick [/system history find] 0]\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Test if CAPsMANN is installed and run script 5.5\r\
    \n# ----------------------------------\r\
    \n:if ( ([:len [/interface find where type=\"cap\"]] > 0) and \$CAPsMANN) do={ \r\
    \n\t/system script run CAPsMANN\r\
    \n}\r\
    \n\r\
    \n\r\
    \n\r\
    \n# Collect routing information\r\
    \n# ----------------------------------\r\
    \n:if (\$Routing) do={\r\
    \n\t/ip route\r\
    \n\t:foreach id in=[find] do={\r\
    \n\t\t:local route \"\$[get \$id]\"\r\
    \n\t\t:set ( \"\$route\"->\"script\" ) \"route\"\r\
    \n\t\t:log info message=\"\$route\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n:if (\$OSPF) do={\r\
    \n\t/routing ospf neighbor\r\
    \n\t:foreach id in=[find] do={\r\
    \n\t\t:local ospf \"\$[get \$id]\"\r\
    \n\t\t:set ( \"\$ospf\"->\"script\" ) \"ospf\"\r\
    \n\t\t:log info message=\"\$ospf\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n:if (\$BGP) do={\r\
    \n\t/routing bgp session\r\
    \n\t:foreach id in=[find] do={\r\
    \n\t\t:local bgp \"\$[get \$id]\"\r\
    \n\t\t:set ( \"\$bgp\"->\"script\" ) \"bgp\"\r\
    \n\t\t:log info message=\"\$bgp\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n\r\
    \n# Collect PPP/IPSEC\r\
    \n# ----------------------------------\r\
    \n:if (\$PPP) do={\r\
    \n\t/ppp active\r\
    \n\t:foreach id in=[find] do={\r\
    \n\t\t:local ppp \"\$[get \$id]\"\r\
    \n\t\t:set ( \"\$ppp\"->\"script\" ) \"ppp\"\r\
    \n\t\t:log info message=\"\$ppp\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n:if (\$IPSEC) do={\r\
    \n\t/ip ipsec active-peers\r\
    \n\t:foreach id in=[find] do={\r\
    \n\t\t:local ipsec \"\$[get \$id]\"\r\
    \n\t\t:set ( \"\$ipsec\"->\"script\" ) \"ipsec\"\r\
    \n\t\t:log info message=\"\$ipsec\"\r\
    \n\t}\r\
    \n}\r\
    \n\r\
    \n# End Script\r\
    \n\r\
    \n"
/system script add dont-require-permissions=yes name=Netwatch owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="####################################\r\
    \n# Netwatch script\r\
    \n#\r\
    \n# Used as both up and down script\r\
    \n# Created Jotne 2021 v1.5\r\
    \n#\r\
    \n####################################\r\
    \n:local Host \$host\r\
    \n/tool netwatch\r\
    \n:local Status [get [find where host=\"\$Host\"] status]\r\
    \n:local Comment [get [find where host=\"\$Host\"] comment]\r\
    \n:local Interval [get [find where host=\"\$Host\"] interval]\r\
    \n:local Since [get [find where host=\"\$Host\"] since]\r\
    \n:log info \"script=netwatch watch_host=\$Host comment=\\\"\$Comment\\\" status=\$Status interval=\$Interval since=\\\"\$Since\\\"\""
/system script add dont-require-permissions=no name="System info JRS" owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="\
    \n# Collect system resource\
    \n\t/system resource\
    \n\t:local cpuload [get cpu-load]\
    \n\t:local freemem ([get free-memory]/1048576)\
    \n\t:local totmem ([get total-memory]/1048576)\
    \n\t:local freehddspace ([get free-hdd-space]/1048576)\
    \n\t:local totalhddspace ([get total-hdd-space]/1048576)\
    \n\t:local up [get uptime]\
    \n\t:local sector [get write-sect-total]\
    \n\t:log info message=\"free_memory=\$freemem MB total_memory=\$totmem MB free_hdd_space=\$freehddspace MB total_hdd_space=\$totalhddspace MB cpu_load=\$cpuload uptime=\$up write-sect-total=\$sector\"\
    \n\
    \n\
    \n\
    \n# Collect system information 5.5 added ID for non routerBoard 5.6 Remvoed serial\
    \n:local model na\
    \n:local ffirmware na\
    \n:local cfirmware na\
    \n:local ufirmware na\
    \n\
    \n\t:local version ([/system resource get version])\
    \n\t:local board ([/system resource get board-name])\
    \n\t:local identity ([/system identity get name])\
    \n\t:do {\
    \n\t\t:if (\$board!=\"CHR\" OR \$board!=\"x86\") do={\
    \n\t\t\t/system routerboard\
    \n\t\t\t:set model ([get model])\
    \n\t\t\t:set ffirmware ([get factory-firmware])\
    \n\t\t\t:set cfirmware ([get current-firmware])\
    \n\t\t\t:set ufirmware ([get upgrade-firmware])\
    \n\t\t}\
    \n\t} on-error={}\
    \n\t:log info message=\"version=\\\"\$version\\\" board-name=\\\"\$board\\\" model=\\\"\$model\\\" identity=\\\"\$identity\\\"\"\
    \n\
    \n\
    \n# Collect IP addresses\
    \n:foreach neighborID in=[/ip address find] do={\
    \n\t\t:local nb [/ip address get \$neighborID]\
    \n\t\t:local id [:pick (\"\$nb\"->\".id\") 1 99]\
    \n\t\t:foreach key,value in=\$nb do={\
    \n\t\t\t:local newline [:find \$value \"\\n\"]\
    \n\t\t\t:if ([\$newline]>0) do={\
    \n\t\t\t\t:set value [:pick \$value 0 \$newline]\
    \n\t\t\t}\
    \n\t\t\t:if (\$key~\"add\") do={\
    \n#\t\t\t:log info message=\"script=IP-ADDRESSES nid=\$id value=\$key=\\\"\$value\\\"\"\
    \n\
    \n\t\t\t:log info message=\"System IP Address \$value\"\
    \n\t\t    }\
    \n\t    }\
    \n}\
    \n\
    \n\
    \n# Collect system health\
    \n#\t:foreach id in=[/system health find] do={\
    \n#\t\t:local health \"\$[/system health get \$id]\"\
    \n#\t\t:set ( \"\$health\"->\"script\" ) \"health\"\
    \n#\t\t:log info message=\"\$health\"\
    \n#\t}\
    \n\
    \n\
    \n\
    \n\
    \n# Get MNDP (CDP) Neighbors\
    \n#\t:foreach neighborID in=[/ip neighbor find] do={\
    \n#\t\t:local nb [/ip neighbor get \$neighborID]\
    \n#\t\t:local id [:pick (\"\$nb\"->\".id\") 1 99]\
    \n#\t\t:foreach key,value in=\$nb do={\
    \n#\t\t\t:local newline [:find \$value \"\\n\"]\
    \n#\t\t\t:if ([\$newline]>0) do={\
    \n#\t\t\t\t:set value [:pick \$value 0 \$newline]\
    \n#\t\t\t}\
    \n#\t\t\t:log info message=\"script=neighbor nid=\$id \$key=\\\"\$value\\\"\"\
    \n#\t\t}\
    \n#\t}\
    \n\
    \n\
    \n\
    \n\
    \n\
    \n"
/tool graphing interface add interface=wifi2
/tool graphing interface add
/tool graphing interface add interface=bridge
/tool graphing interface add interface=ether1
/tool graphing interface add interface=ether2
/tool graphing interface add interface=ether3
/tool graphing interface add interface=ether4
/tool graphing interface add interface=ether5
/tool graphing interface add interface=*6
/tool graphing queue add
/tool graphing resource add
/tool mac-server set allowed-interface-list=TRUSTED
/tool mac-server mac-winbox set allowed-interface-list=TRUSTED
/tool netwatch add disabled=no down-script=Netwatch host=1.1.1.1 http-codes="" interval=1m name=Netwatch-1.1.1.1 test-script="" type=simple up-script=Netwatch
/tool romon set enabled=yes
/tool sniffer set file-limit=10000KiB filter-dst-port=syslog filter-interface=all memory-limit=1000KiB
/user group add name=HA policy=reboot,read,write,policy,test,api,!local,!telnet,!ssh,!ftp,!winbox,!password,!web,!sniff,!sensitive,!romon,!rest-api

Anyone have a minute to see if there’s a problem, or possible solution, in my config?

hi guyes

i have HAPAx3
when i try to connect my laptop to WIFI it connects and disconnects in 1 sec. on laptop it says “cant connetct to this network”. t happens on both wifi2 and 5.


any one knows why?