I have just purchaced a CCR-1009-7G-1C-1s mikrotik router.
I want to configure the following:
2 trunk ports that will allow vlans 10,20,30 (one as uplik to my cisco switch and one as uplink to my Access Point)
1 wan port
3 access ports (one for each vlan)
3 DHCP servers -one for each vlan
Till now i have created the three vlans, one trunk port,the three access ports and the dhcp servers.
But i cat fid out how to create a second truk port that will allow the 3 vlans.
Code: Select all
/interface bridge
add name=bridge_Vlan10
add name=bridge_Vlan20
add name=bridge_Vlan30
/interface ethernet
set [ find default-name=ether1 ] name=ether1-Switch_Trunk
set [ find default-name=ether7 ] name=ether7-Trunk_Wifi
/interface vlan
add interface=ether1-Switch_Trunk name=Guest_Vlan vlan-id=20
add interface=ether7-Trunk_Wifi name=Guest_Vlan2 vlan-id=20
add interface=ether1-Switch_Trunk name=Home_Vlan vlan-id=10
add interface=ether7-Trunk_Wifi name=Home_Vlan2 vlan-id=10
add interface=ether1-Switch_Trunk name=Security_Vlan vlan-id=30
add interface=ether7-Trunk_Wifi name=Security_Vlan2 vlan-id=30
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip pool
add name=dhcp_pool0 ranges=10.10.85.20-10.10.85.254
add name=dhcp_pool1 ranges=10.20.85.20-10.20.85.254
add name=dhcp_pool2 ranges=10.30.85.20-10.30.85.254
/ip dhcp-server
add address-pool=dhcp_pool0 disabled=no interface=bridge_Vlan10 name=dhcp1
add address-pool=dhcp_pool1 disabled=no interface=bridge_Vlan20 name=dhcp2
add address-pool=dhcp_pool2 disabled=no interface=bridge_Vlan30 name=dhcp3
/interface bridge port
add bridge=bridge_Vlan10 interface=ether2 trusted=yes
add bridge=bridge_Vlan10 interface=Home_Vlan
add bridge=bridge_Vlan20 interface=ether3 pvid=20 trusted=yes
add bridge=bridge_Vlan20 interface=Guest_Vlan
add bridge=bridge_Vlan30 interface=ether4
add bridge=bridge_Vlan30 interface=Security_Vlan
add bridge=bridge_Vlan10 interface=ether5
/ip address
add address=10.10.85.1/24 interface=Home_Vlan network=10.10.85.0
add address=10.20.85.1/24 interface=Guest_Vlan network=10.20.85.0
add address=10.30.85.1/24 interface=Security_Vlan network=10.30.85.0
/ip dhcp-server network
add address=10.10.85.0/24 dns-server=8.8.8.8,4.4.4.4 domain=dtzs.local \
gateway=10.10.85.1
add address=10.20.85.0/24 dns-server=8.8.8.8,4.4.4.4 domain=dtzs_guest.local \
gateway=10.20.85.1
add address=10.30.85.0/24 dns-server=8.8.8.8,4.4.4.4 domain=dtzs_security \
gateway=10.30.85.1
/ip dns
set servers=8.8.8.8,4.4.4.4
/ip service
set telnet address=10.10.85.0/24
set ftp address=10.10.85.0/24
set www address=10.10.85.0/24
set ssh address=10.10.85.0/24
set www-ssl address=10.10.85.0/24 disabled=no
set api address=10.10.85.0/24
set winbox address=10.10.85.0/24
set api-ssl address=10.10.85.0/24