[admin@MikroTik] > /export
compact file hide-sensitive terse verbose
[admin@MikroTik] > /export hide-sensitive
# jul/29/2020 20:29:29 by RouterOS 6.45.7
# software id = 6U84-YLGL
#
# model = 2011UiAS-2HnD
# serial number = 444A0453C792
/interface bridge
add admin-mac=4C:5E:0C:22:02:85 auto-mac=no comment=defconf name=bridge
/interface ethernet
set [ find default-name=ether1 ] speed=100Mbps
set [ find default-name=ether2 ] name=ether2-master speed=100Mbps
set [ find default-name=ether3 ] speed=100Mbps
set [ find default-name=ether4 ] speed=100Mbps
set [ find default-name=ether5 ] speed=100Mbps
set [ find default-name=ether6 ] advertise=\
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full name=\
ether6-master
set [ find default-name=ether7 ] advertise=\
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
set [ find default-name=ether8 ] advertise=\
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
set [ find default-name=ether9 ] advertise=\
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
set [ find default-name=ether10 ] advertise=\
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g/n channel-width=20/40mhz-Ce \
disabled=no distance=indoors frequency=auto mode=ap-bridge ssid=\
"Racunarski Centar" wireless-protocol=802.11
/interface list
add comment=defconf name=WAN
add comment=defconf name=LAN
add exclude=dynamic name=discover
add name=mactel
add name=mac-winbox
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa2-psk mode=dynamic-keys \
supplicant-identity=MikroTik
/ip pool
add name=dhcp ranges=192.168.88.10-192.168.88.254
/ip dhcp-server
add address-pool=dhcp disabled=no interface=bridge name=defconf
/interface bridge port
add bridge=bridge comment=defconf interface=ether2-master
add bridge=bridge comment=defconf interface=ether6-master
add bridge=bridge comment=defconf hw=no interface=sfp1
add bridge=bridge comment=defconf interface=wlan1
add bridge=bridge interface=ether3
add bridge=bridge interface=ether4
add bridge=bridge interface=ether5
add bridge=bridge interface=ether7
add bridge=bridge interface=ether8
add bridge=bridge interface=ether9
add bridge=bridge interface=ether10
/ip neighbor discovery-settings
set discover-interface-list=discover
/interface list member
add comment=defconf interface=bridge list=LAN
add comment=defconf interface=ether1 list=WAN
add interface=sfp1 list=discover
add interface=ether2-master list=discover
add interface=ether3 list=discover
add interface=ether4 list=discover
add interface=ether5 list=discover
add interface=ether6-master list=discover
add interface=ether7 list=discover
add interface=ether8 list=discover
add interface=ether9 list=discover
add interface=ether10 list=discover
add interface=wlan1 list=discover
add interface=bridge list=discover
add interface=bridge list=mactel
add interface=bridge list=mac-winbox
/ip address
add address=192.168.88.1/24 comment=defconf interface=bridge network=\
192.168.88.0
/ip arp
add address=192.168.88.54 interface=bridge mac-address=E0:D5:5E:01:E0:8A
add address=192.168.88.58 interface=bridge mac-address=E0:D5:5E:00:1D:C9
add address=192.168.88.31 interface=bridge mac-address=B8:97:5A:42:7F:C7
add address=192.168.2.1 interface=ether1 mac-address=8C:68:C8:8D:99:24
add address=192.168.88.153 interface=bridge mac-address=E0:D5:5E:3D:99:98
add address=192.168.88.107 interface=bridge mac-address=70:85:C2:38:95:CF
add address=192.168.3.57 interface=bridge mac-address=E0:D5:5E:00:26:46
/ip dhcp-client
add comment=defconf dhcp-options=hostname,clientid disabled=no interface=ether1
/ip dhcp-server alert
add interface=bridge
add disabled=no interface=bridge valid-server=4C:5E:0C:22:02:85
/ip dhcp-server lease
add address=192.168.88.100 client-id=1:0:1f:2b:ee:58:3b mac-address=\
E0:D5:5E:00:26:46 server=defconf
add address=192.168.88.51 client-id=1:e0:d5:5e:0:1e:80 mac-address=\
E0:D5:5E:00:1E:80 server=defconf
add address=192.168.88.201 client-id=1:d0:50:99:49:6a:36 mac-address=\
D0:50:99:49:6A:36 server=defconf
add address=192.168.88.246 mac-address=E0:D5:5E:3D:1C:2A server=defconf
add address=192.168.88.242 client-id=1:d0:50:99:49:6a:a9 mac-address=\
D0:50:99:49:6A:A9 server=defconf
add address=192.168.88.204 client-id=1:d0:50:99:ad:f1:8d mac-address=\
D0:50:99:AD:F1:8D server=defconf
add address=192.168.88.55 client-id=1:e0:d5:5e:0:1e:8c mac-address=\
E0:D5:5E:00:1E:8C server=defconf
add address=192.168.88.56 client-id=1:e0:d5:5e:1:df:e6 mac-address=\
E0:D5:5E:01:DF:E6 server=defconf
add address=192.168.88.205 client-id=1:70:85:c2:2c:c2:3b mac-address=\
70:85:C2:2C:C2:3B server=defconf
add address=192.168.88.107 client-id=1:70:85:c2:38:95:cf mac-address=\
70:85:C2:38:95:CF server=defconf
add address=192.168.88.241 client-id=1:d0:50:99:49:6a:62 mac-address=\
D0:50:99:49:6A:62 server=defconf
add address=192.168.88.104 client-id=1:e0:d5:5e:0:26:bc mac-address=\
E0:D5:5E:00:26:BC server=defconf
add address=192.168.88.240 client-id=1:0:18:15:1c:92:1e mac-address=\
00:18:15:1C:92:1E server=defconf
add address=192.168.88.108 client-id=1:1c:1b:d:5f:62:2d mac-address=\
1C:1B:0D:5F:62:2D server=defconf
add address=192.168.88.109 client-id=1:1c:1b:d:5f:4f:ed mac-address=\
1C:1B:0D:5F:4F:ED server=defconf
add address=192.168.88.103 client-id=1:e0:d5:5e:0:1e:6a mac-address=\
E0:D5:5E:00:1E:6A server=defconf
add address=192.168.88.244 client-id=1:d0:50:99:49:69:f3 mac-address=\
D0:50:99:49:69:F3 server=defconf
add address=192.168.88.106 client-id=1:70:85:c2:31:81:a7 mac-address=\
70:85:C2:31:81:A7 server=defconf
add address=192.168.88.200 client-id=1:e0:d5:5e:0:1b:55 mac-address=\
E0:D5:5E:00:1B:55 server=defconf
add address=192.168.88.57 client-id=1:e0:d5:5e:1:e0:5 mac-address=\
E0:D5:5E:01:E0:05 server=defconf
add address=192.168.88.52 client-id=1:e0:d5:5e:0:1e:29 mac-address=\
E0:D5:5E:00:1E:29 server=defconf
add address=192.168.88.102 client-id=1:e0:d5:5e:0:26:8f mac-address=\
E0:D5:5E:00:26:8F server=defconf
add address=192.168.88.101 client-id=1:e0:d5:5e:0:26:43 mac-address=\
E0:D5:5E:00:26:43 server=defconf
add address=192.168.88.105 client-id=1:e0:d5:5e:1:e0:cc mac-address=\
E0:D5:5E:01:E0:CC server=defconf use-src-mac=yes
add address=192.168.88.53 client-id=1:e0:d5:5e:1:df:e7 mac-address=\
E0:D5:5E:01:DF:E7 server=defconf
add address=192.168.88.206 client-id=1:e0:d5:5e:0:1d:c6 mac-address=\
E0:D5:5E:00:1D:C6 server=defconf
add address=192.168.88.58 client-id=1:e0:d5:5e:0:1d:c9 mac-address=\
E0:D5:5E:00:1D:C9 server=defconf
add address=192.168.88.207 client-id=1:1c:1b:d:59:60:cd mac-address=\
1C:1B:0D:59:60:CD server=defconf
add address=192.168.88.152 client-id=1:e0:d5:5e:3d:99:96 mac-address=\
E0:D5:5E:3D:99:96 server=defconf
add address=192.168.88.209 client-id=1:e0:d5:5e:0:3:ae mac-address=\
E0:D5:5E:00:03:AE server=defconf
add address=192.168.88.208 client-id=1:d0:50:99:3:9c:52 mac-address=\
D0:50:99:03:9C:52 server=defconf
add address=192.168.88.150 client-id=1:e0:d5:5e:0:3:b0 mac-address=\
E0:D5:5E:00:03:B0 server=defconf
add address=192.168.88.151 client-id=1:e0:d5:5e:0:1c:8 mac-address=\
E0:D5:5E:00:1C:08 server=defconf
add address=192.168.88.75 mac-address=F8:16:54:00:74:EA server=defconf
add address=192.168.88.243 client-id=1:d0:50:99:49:6a:58 mac-address=\
D0:50:99:49:6A:58 server=defconf
add address=192.168.88.245 client-id=1:d0:50:99:49:69:ff mac-address=\
D0:50:99:49:69:FF server=defconf
add address=192.168.88.36 mac-address=34:EA:34:75:A1:72 server=defconf
add address=192.168.88.46 mac-address=34:EA:34:75:C2:6B server=defconf
add address=192.168.88.45 mac-address=34:EA:34:75:B8:38 server=defconf
add address=192.168.88.44 mac-address=34:EA:34:9D:2E:14 server=defconf
add address=192.168.88.43 mac-address=34:EA:34:9D:35:A1 server=defconf
add address=192.168.88.42 mac-address=34:EA:34:75:C3:89 server=defconf
add address=192.168.88.40 mac-address=34:EA:34:79:6D:AB server=defconf
add address=192.168.88.39 mac-address=34:EA:34:9D:31:BA server=defconf
add address=192.168.88.38 mac-address=34:EA:34:9D:2F:29 server=defconf
add address=192.168.88.37 mac-address=34:EA:34:75:BE:A8 server=defconf
add address=192.168.88.199 client-id=1:48:ee:c:7c:6e:55 mac-address=\
48:EE:0C:7C:6E:55 server=defconf
add address=192.168.88.33 client-id=1:ec:8:6b:ea:d1:17 mac-address=\
EC:08:6B:EA:D1:17 server=defconf
add address=192.168.88.30 mac-address=90:02:A9:12:B4:A1 server=defconf
add address=192.168.88.210 mac-address=D0:50:99:49:6A:9A server=defconf
add address=192.168.88.211 mac-address=D0:50:99:49:6A:96 server=defconf
add address=192.168.88.123 client-id=1:b8:97:5a:42:89:6a mac-address=\
B8:97:5A:42:89:6A server=defconf
add address=192.168.88.32 client-id=1:e0:d5:5e:3d:a2:10 mac-address=\
E0:D5:5E:3D:A2:10 server=defconf
add address=192.168.88.54 mac-address=E0:D5:5E:01:E0:8A server=defconf
add address=192.168.88.31 mac-address=B8:97:5A:42:7F:C7 server=defconf
/ip dhcp-server network
add address=192.168.88.0/24 comment=defconf gateway=192.168.88.1 netmask=30
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=192.168.88.1 name=router.lan
/ip firewall filter
add action=accept chain=input dst-port=8291 protocol=tcp
add action=accept chain=input comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked
add action=drop chain=input comment="defconf: drop invalid" connection-state=\
invalid
add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
add action=drop chain=input comment="defconf: drop all not coming from LAN" \
in-interface-list=!LAN
add action=accept chain=forward comment="defconf: accept in ipsec policy" \
ipsec-policy=in,ipsec
add action=accept chain=forward comment="defconf: accept out ipsec policy" \
ipsec-policy=out,ipsec
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
connection-state=established,related
add action=accept chain=forward comment=\
"defconf: accept established,related, untracked" connection-state=\
established,related,untracked
add action=drop chain=forward comment="defconf: drop invalid" connection-state=\
invalid
add action=drop chain=forward comment=\
"defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
connection-state=new in-interface-list=WAN
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=\
out,none out-interface-list=WAN
add action=dst-nat chain=dstnat dst-port=2000 protocol=tcp to-addresses=\
192.168.88.208 to-ports=2000
add action=dst-nat chain=dstnat dst-port=2001 protocol=tcp to-addresses=\
192.168.88.51 to-ports=2001
add action=dst-nat chain=dstnat dst-port=2002 protocol=tcp to-addresses=\
192.168.88.52 to-ports=2002
add action=dst-nat chain=dstnat dst-port=2003 protocol=tcp to-addresses=\
192.168.88.53 to-ports=2003
add action=dst-nat chain=dstnat dst-port=2004 protocol=tcp to-addresses=\
192.168.88.54 to-ports=2004
add action=dst-nat chain=dstnat dst-port=2005 protocol=tcp to-addresses=\
192.168.88.55 to-ports=2005
add action=dst-nat chain=dstnat dst-port=2006 protocol=tcp to-addresses=\
192.168.88.56 to-ports=2006
add action=dst-nat chain=dstnat dst-port=2007 protocol=tcp to-addresses=\
192.168.88.57 to-ports=2007
add action=dst-nat chain=dstnat dst-port=2008 protocol=tcp to-addresses=\
192.168.88.58 to-ports=2008
add action=dst-nat chain=dstnat dst-port=1000 protocol=tcp to-addresses=\
192.168.3.57 to-ports=1000
add action=dst-nat chain=dstnat dst-port=1001 protocol=tcp to-addresses=\
192.168.88.107 to-ports=22
add action=dst-nat chain=dstnat dst-port=1002 protocol=tcp to-addresses=\
192.168.88.102 to-ports=1002
add action=dst-nat chain=dstnat dst-port=1003 protocol=tcp to-addresses=\
192.168.88.103 to-ports=1003
add action=dst-nat chain=dstnat dst-port=1004 protocol=tcp to-addresses=\
192.168.88.104 to-ports=1004
add action=dst-nat chain=dstnat dst-port=1005 protocol=tcp to-addresses=\
192.168.88.105 to-ports=1005
add action=dst-nat chain=dstnat dst-port=1006 protocol=tcp to-addresses=\
192.168.88.106 to-ports=1006
add action=dst-nat chain=dstnat dst-port=1007 protocol=tcp to-addresses=\
192.168.88.107 to-ports=1007
add action=dst-nat chain=dstnat dst-port=1008 protocol=tcp to-addresses=\
192.168.88.108 to-ports=1008
add action=dst-nat chain=dstnat dst-port=1009 protocol=tcp to-addresses=\
192.168.88.109 to-ports=1009
add action=dst-nat chain=dstnat dst-port=5000 protocol=tcp to-addresses=\
192.168.88.150 to-ports=5000
add action=dst-nat chain=dstnat dst-port=5001 protocol=tcp to-addresses=\
192.168.88.151 to-ports=5001
add action=dst-nat chain=dstnat dst-port=5002 protocol=tcp to-addresses=\
192.168.88.152 to-ports=5002
add action=dst-nat chain=dstnat dst-port=5003 protocol=tcp to-addresses=\
192.168.88.153 to-ports=5003
add action=dst-nat chain=dstnat dst-port=5004 protocol=tcp to-addresses=\
192.168.3.4 to-ports=5004
add action=dst-nat chain=dstnat dst-port=6000 protocol=tcp to-addresses=\
192.168.88.240 to-ports=6000
add action=dst-nat chain=dstnat dst-port=6001 protocol=tcp to-addresses=\
192.168.88.241 to-ports=6001
add action=dst-nat chain=dstnat dst-port=6002 protocol=tcp to-addresses=\
192.168.88.242 to-ports=6002
add action=dst-nat chain=dstnat dst-port=6003 protocol=tcp to-addresses=\
192.168.88.243 to-ports=6003
add action=dst-nat chain=dstnat dst-port=6004 protocol=tcp to-addresses=\
192.168.88.244 to-ports=6004
add action=dst-nat chain=dstnat dst-port=6005 protocol=tcp to-addresses=\
192.168.88.245 to-ports=6005
add action=dst-nat chain=dstnat dst-port=6006 protocol=tcp to-addresses=\
192.168.88.246 to-ports=6006
add action=dst-nat chain=dstnat dst-port=4003 protocol=tcp to-addresses=\
192.168.88.200 to-ports=4003
add action=dst-nat chain=dstnat dst-port=3009 protocol=tcp to-addresses=\
192.168.88.201 to-ports=3009
add action=dst-nat chain=dstnat dst-port=4001 protocol=tcp to-addresses=\
192.168.88.32 to-ports=4001
add action=dst-nat chain=dstnat dst-port=4002 protocol=tcp to-addresses=\
192.168.88.206 to-ports=4002
add action=dst-nat chain=dstnat dst-port=4004 protocol=tcp to-addresses=\
192.168.88.204 to-ports=4004
add action=dst-nat chain=dstnat dst-port=4000 protocol=tcp to-addresses=\
192.168.88.205 to-ports=4000
add action=dst-nat chain=dstnat dst-port=3303 protocol=tcp to-addresses=\
192.168.88.206 to-ports=3303
add action=dst-nat chain=dstnat dst-port=2009 protocol=tcp to-addresses=\
192.168.88.207 to-ports=2009
add action=dst-nat chain=dstnat dst-port=4005 protocol=tcp to-addresses=\
192.168.88.208 to-ports=4005
add action=dst-nat chain=dstnat dst-port=4006 protocol=tcp to-addresses=\
192.168.88.209 to-ports=4006
add action=dst-nat chain=dstnat dst-port=8080 protocol=tcp to-addresses=\
192.168.88.33 to-ports=8080
add action=dst-nat chain=dstnat dst-port=9000 protocol=tcp to-addresses=\
192.168.88.30 to-ports=9000
add action=dst-nat chain=dstnat dst-port=9001 protocol=tcp to-addresses=\
192.168.88.30 to-ports=9001
add action=dst-nat chain=dstnat dst-port=6011 protocol=tcp src-address-list="" \
to-addresses=192.168.88.245 to-ports=22
add action=dst-nat chain=dstnat dst-port=6010 protocol=tcp to-addresses=\
192.168.88.244 to-ports=22
add action=dst-nat chain=dstnat dst-port=6012 protocol=tcp to-addresses=\
192.168.88.246 to-ports=22
add action=dst-nat chain=dstnat dst-port=4005 protocol=tcp src-port="" \
to-addresses=192.168.88.208 to-ports=4005
add action=dst-nat chain=dstnat dst-port=4006 protocol=tcp src-address-list="" \
to-addresses=192.168.88.209 to-ports=4006
add action=dst-nat chain=dstnat dst-address-list="" dst-port=4007 protocol=tcp \
to-addresses=192.168.88.210 to-ports=4007
add action=dst-nat chain=dstnat dst-port=4008 protocol=tcp to-addresses=\
192.168.88.211 to-ports=4008
add action=dst-nat chain=dstnat dst-port=4009 protocol=tcp to-addresses=\
192.168.88.210 to-ports=22
add action=dst-nat chain=dstnat dst-port=4010 protocol=tcp to-addresses=\
192.168.88.211 to-ports=22
add action=dst-nat chain=dstnat dst-port=4011 protocol=tcp src-port="" \
to-addresses=192.168.88.31 to-ports=4011
add action=dst-nat chain=dstnat dst-port=4012 protocol=tcp src-port="" \
to-addresses=192.168.3.123 to-ports=4012
add action=dst-nat chain=dstnat dst-port=7003 protocol=tcp to-addresses=\
192.168.88.53 to-ports=22
add action=dst-nat chain=dstnat dst-port=7001 protocol=tcp to-addresses=\
192.168.88.51 to-ports=22
add action=dst-nat chain=dstnat dst-port=7000 protocol=tcp to-addresses=\
192.168.88.208 to-ports=22
add action=dst-nat chain=dstnat dst-port=7002 protocol=tcp to-addresses=\
192.168.88.52 to-ports=22
add action=dst-nat chain=dstnat dst-port=7005 protocol=tcp to-addresses=\
192.168.88.55 to-ports=22
add action=dst-nat chain=dstnat dst-port=7007 protocol=tcp to-addresses=\
192.168.88.57 to-ports=22
add action=dst-nat chain=dstnat dst-port=7004 protocol=tcp to-addresses=\
192.168.88.54 to-ports=22
add action=dst-nat chain=dstnat dst-port=7006 protocol=tcp to-addresses=\
192.168.88.56 to-ports=22
add action=dst-nat chain=dstnat dst-port=7008 protocol=tcp to-addresses=\
192.168.88.58 to-ports=22
add action=dst-nat chain=dstnat dst-port=8006 protocol=tcp to-addresses=\
192.168.88.108 to-ports=22
add action=dst-nat chain=dstnat dst-port=8007 protocol=tcp to-addresses=\
192.168.88.109 to-ports=22
add action=dst-nat chain=dstnat dst-port=8001 protocol=tcp to-addresses=\
192.168.88.101 to-ports=22
add action=dst-nat chain=dstnat dst-port=8002 protocol=tcp to-addresses=\
192.168.88.102 to-ports=22
add action=dst-nat chain=dstnat dst-port=8003 protocol=tcp to-addresses=\
192.168.88.103 to-ports=22
add action=dst-nat chain=dstnat dst-port=8004 protocol=tcp to-addresses=\
192.168.88.104 to-ports=22
add action=dst-nat chain=dstnat dst-port=8005 protocol=tcp to-addresses=\
192.168.88.105 to-ports=22
add action=dst-nat chain=dstnat dst-port=9013 protocol=tcp to-addresses=\
192.168.88.153 to-ports=22
add action=dst-nat chain=dstnat dst-port=9010 protocol=tcp to-addresses=\
192.168.88.150 to-ports=22
add action=dst-nat chain=dstnat dst-port=9011 protocol=tcp to-addresses=\
192.168.88.151 to-ports=22
add action=dst-nat chain=dstnat dst-port=9012 protocol=tcp to-addresses=\
192.168.88.152 to-ports=22
add action=dst-nat chain=dstnat dst-port=9017 protocol=tcp to-addresses=\
192.168.88.107 to-ports=22
add action=dst-nat chain=dstnat dst-port=9014 protocol=tcp to-addresses=\
192.168.3.4 to-ports=22
add action=dst-nat chain=dstnat dst-port=8000 protocol=tcp to-addresses=\
192.168.3.57 to-ports=22
/ip service
set www-ssl disabled=no
/lcd
set time-interval=hour
/system clock
set time-zone-name=Europe/Belgrade
/tool mac-server
set allowed-interface-list=mactel
/tool mac-server mac-winbox
set allowed-interface-list=mac-winbox
[admin@MikroTik] >
@k6ccc