Thu Dec 08, 2011 6:26 pm
[admin@MikroTik] > ip add pr det
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; default configuration
address=192.168.88.1/24 network=192.168.88.0 interface=ether1-local actual-interface=ether1-local
1 address=74.113.211.8/27 network=74.113.211.0 interface=wlan1-gateway actual-interface=wlan1-gateway
[admin@MikroTik] > ip rou pr det
Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme,
B - blackhole, U - unreachable, P - prohibit
0 A S dst-address=0.0.0.0/0 gateway=74.113.211.30 gateway-status=74.113.211.30 reachable wlan1-gateway distance=1 scope=30
target-scope=10
1 ADC dst-address=74.113.211.0/27 pref-src=74.113.211.8 gateway=wlan1-gateway gateway-status=wlan1-gateway reachable
distance=0 scope=10
2 ADC dst-address=192.168.88.0/24 pref-src=192.168.88.1 gateway=ether1-local gateway-status=ether1-local reachable
distance=0 scope=10
[admin@MikroTik] > int pr det
Flags: D - dynamic, X - disabled, R - running, S - slave
0 R name="wlan1-gateway" type="wlan" mtu=1500 l2mtu=2290
1 R name="ether1-local" type="ether" mtu=1500 l2mtu=1598 max-l2mtu=2030
[admin@MikroTik] > ip ser pr det
Flags: X - disabled, I - invalid
0 name="telnet" port=23
1 name="ftp" port=21
2 name="www" port=80
3 name="ssh" port=22
4 X name="www-ssl" port=443 certificate=none
5 X name="api" port=8728
6 name="winbox" port=8291
[admin@MikroTik] > ip fire exp
# dec/08/2011 10:07:26 by RouterOS 5.6
# software id = 3AH7-DP72
#
/ip firewall connection tracking
set enabled=yes generic-timeout=10m icmp-timeout=10s tcp-close-timeout=10s tcp-close-wait-timeout=10s \
tcp-established-timeout=1d tcp-fin-wait-timeout=10s tcp-last-ack-timeout=10s tcp-syn-received-timeout=5s \
tcp-syn-sent-timeout=5s tcp-syncookie=no tcp-time-wait-timeout=10s udp-stream-timeout=3m udp-timeout=10s
/ip firewall filter
add action=accept chain=input comment="default configuration" disabled=no protocol=icmp
add action=accept chain=input comment="default configuration" connection-state=established disabled=no
add action=accept chain=input comment="default configuration" connection-state=related disabled=no
add action=drop chain=input comment="default configuration" disabled=no in-interface=wlan1-gateway
/ip firewall nat
add action=masquerade chain=srcnat comment="default configuration" disabled=no out-interface=wlan1-gateway
/ip firewall service-port
set ftp disabled=no ports=21
set tftp disabled=no ports=69
set irc disabled=no ports=6667
[admin
@Mikro
Tik] >
[admin@MikroTik] >
I have this one on my test bench connect to my Mikrotik AP here at the office. it's real address is shown so you can try to winbox or telnet in. 74.113.211.8 admin and no password