Wed Apr 30, 2025 7:31 pm
I will restrict this to one board type.
I'm not sure what you mean by "post between code tags by using the </> button" but I'll try.
Seen by both capsman's
/
# 2025-04-30 10:10:03 by RouterOS 7.19rc1
# software id = GFDB-9JEH
#
# model = RB962UiGS-5HacT2HnT
# serial number = xxxxx
/interface bridge
add admin-mac=CC:2D:E0:3F:2C:9B auto-mac=no name=bridge port-cost-mode=short \
priority=0x9000
/interface wireless
# managed by CAPsMAN
# channel: 2412/20-Ce/gn(28dBm), SSID: xxxxx, local forwarding
set [ find default-name=wlan1 ] band=2ghz-b/g/n disabled=no mode=ap-bridge \
ssid=KGLAN station-roaming=enabled wireless-protocol=802.11 wps-mode=\
disabled
# managed by CAPsMAN
# channel: 5180/20-Ceee/ac(27dBm), SSID: KGLAN, local forwarding
set [ find default-name=wlan2 ] band=5ghz-onlyac channel-width=20/40mhz-Ce \
disabled=no mode=ap-bridge ssid=xxxx station-roaming=enabled \
wireless-protocol=802.11 wps-mode=disabled
/interface ethernet
set [ find default-name=sfp1 ] advertise=\
10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full
/interface list
add name=WAN
add name=LAN
/interface lte apn
set [ find default=yes ] ip-type=ipv4 use-network-apn=no
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa2-psk mode=dynamic-keys \
supplicant-identity=MikroTik
/ip smb users
set [ find default=yes ] disabled=yes
/routing table
add fib name=""
/interface bridge port
add bridge=bridge ingress-filtering=no interface=ether2 internal-path-cost=10 \
path-cost=10
add bridge=bridge ingress-filtering=no interface=ether3 internal-path-cost=10 \
path-cost=10
add bridge=bridge ingress-filtering=no interface=ether4 internal-path-cost=10 \
path-cost=10
add bridge=bridge ingress-filtering=no interface=ether5 internal-path-cost=10 \
path-cost=10
add bridge=bridge ingress-filtering=no interface=sfp1 internal-path-cost=10 \
path-cost=10
add bridge=bridge ingress-filtering=no interface=ether1 internal-path-cost=10 \
path-cost=10
add bridge=bridge interface=wlan2
add bridge=bridge interface=wlan1
/ip firewall connection tracking
set udp-timeout=10s
/ip neighbor discovery-settings
set discover-interface-list=!dynamic
/ip settings
set max-neighbor-entries=8192
/ipv6 settings
set accept-router-advertisements=yes max-neighbor-entries=8192
/interface list member
add interface=ether1 list=WAN
add interface=bridge list=LAN
/interface ovpn-server server
add auth=sha1,md5 mac-address=FE:39:05:63:8E:F9 name=ovpn-server1
/interface wifi cap
set discovery-interfaces=all enabled=yes
/interface wireless cap
#
set bridge=bridge discovery-interfaces=ether1 enabled=yes interfaces=\
wlan1,wlan2
/ip address
add address=192.168.1.17/24 interface=bridge network=192.168.1.0
/ip dhcp-client
# DHCP client can not run on slave or passthrough interface!
add interface=ether1
/ip ipsec profile
set [ find default=yes ] dpd-interval=2m dpd-maximum-failures=5
/ip smb shares
set [ find default=yes ] directory=/flash/pub
/ipv6 nd
set [ find default=yes ] advertise-dns=no
/system clock
set time-zone-name=America/Denver
/system identity
set name=MTAP-SHP
/system package update
set channel=testing
/system routerboard settings
# Firmware upgraded successfully, please reboot for changes to take effect!
set auto-upgrade=yes boot-device=nand-only
/tool bandwidth-server
set authenticate=no
/
Seen by one capsman (wireless)
# 2025-04-30 10:07:12 by RouterOS 7.19rc1
# software id = YKQF-RKBK
#
# model = RB962UiGS-5HacT2HnT
# serial number = xxxxx
/interface bridge
add admin-mac=CC:2D:E0:32:9B:E7 auto-mac=no comment=defconf name=bridgeLocal \
port-cost-mode=short
/interface wireless
# managed by CAPsMAN
# channel: 2442/20-Ce/gn(28dBm), SSID: xxxxx, local forwarding
set [ find default-name=wlan1 ] band=2ghz-g/n disabled=no mode=ap-bridge \
ssid=KGLAN station-roaming=enabled wireless-protocol=802.11 wps-mode=\
disabled
# managed by CAPsMAN
# channel: 5805/20-eeeC/ac(27dBm), SSID: xxxxx, local forwarding
set [ find default-name=wlan2 ] band=5ghz-onlyac channel-width=20/40mhz-Ce \
disabled=no mode=ap-bridge ssid=xxxxx station-roaming=enabled \
wireless-protocol=802.11 wps-mode=disabled
/interface ethernet
set [ find default-name=sfp1 ] advertise=\
10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full
/interface ethernet switch
set 0 cpu-flow-control=no
/interface list
add name=WAN
add name=LAN
/interface lte apn
set [ find default=yes ] ip-type=ipv4 use-network-apn=no
/interface wireless security-profiles
set [ find default=yes ] authentication-types=\
wpa-psk,wpa2-psk,wpa-eap,wpa2-eap group-ciphers=tkip,aes-ccm \
group-key-update=30m mode=dynamic-keys supplicant-identity=MikroTik \
unicast-ciphers=tkip,aes-ccm
/ip smb users
set [ find default=yes ] disabled=yes
/interface bridge port
add bridge=bridgeLocal comment=defconf ingress-filtering=no interface=ether1 \
internal-path-cost=10 path-cost=10
add bridge=bridgeLocal comment=defconf ingress-filtering=no interface=ether2 \
internal-path-cost=10 path-cost=10
add bridge=bridgeLocal comment=defconf ingress-filtering=no interface=ether3 \
internal-path-cost=10 path-cost=10
add bridge=bridgeLocal comment=defconf ingress-filtering=no interface=ether4 \
internal-path-cost=10 path-cost=10
add bridge=bridgeLocal comment=defconf ingress-filtering=no interface=ether5 \
internal-path-cost=10 path-cost=10
add bridge=bridgeLocal comment=defconf ingress-filtering=no interface=sfp1 \
internal-path-cost=10 path-cost=10
add bridge=bridgeLocal interface=wlan2
add bridge=bridgeLocal interface=wlan1
/ip firewall connection tracking
set udp-timeout=10s
/ip neighbor discovery-settings
set discover-interface-list=!dynamic
/ip settings
set max-neighbor-entries=8192
/ipv6 settings
set accept-router-advertisements=yes max-neighbor-entries=8192
/interface list member
add interface=ether1 list=WAN
add interface=bridgeLocal list=LAN
/interface ovpn-server server
add auth=sha1,md5 mac-address=FE:5C:D5:EB:7E:38 name=ovpn-server1
/interface wireless cap
#
set bridge=bridgeLocal discovery-interfaces=bridgeLocal enabled=yes \
interfaces=wlan1,wlan2
/ip address
add address=192.168.1.12/24 interface=bridgeLocal network=192.168.1.0
/ip dhcp-client
# Interface not active
add comment=defconf interface=ether1
/ip ipsec profile
set [ find default=yes ] dpd-interval=2m dpd-maximum-failures=5
/ip smb shares
set [ find default=yes ] directory=/flash/pub
/ipv6 firewall filter
add action=drop chain=forward disabled=yes in-bridge-port=ether3 log=yes \
log-prefix=Polisy protocol=tcp
add action=drop chain=forward disabled=yes log=yes log-prefix=Polisy \
out-bridge-port=ether3 protocol=tcp
/system clock
set time-zone-name=America/Denver
/system identity
set name=MTAP-GC
/system package local-update mirror
set enabled=yes primary-server=192.168.1.1 user=admintjk
/system package local-update update-package-source
add address=192.168.1.1 user=xxxxx
/system package update
set channel=testing
/system routerboard settings
# Firmware upgraded successfully, please reboot for changes to take effect!
set auto-upgrade=yes
/tool bandwidth-server
set authenticate=no
/tool sniffer
set file-name=Roku filter-mac-address="34:97:F6:B6:D4:CE/FF:FF:FF:FF:FF:FF,AC:\
AE:19:EE:2D:31/FF:FF:FF:FF:FF:FF,C8:3A:6B:F6:89:85/FF:FF:FF:FF:FF:FF" \
memory-limit=1000KiB
/