ive tried the following so far:
WAN: eth1 dhcp from ISP
i use the local bridge 2.0.0.x network (my network works fine)
neighbor uses onderburen bridge 192.168.0.x network (gets ip, but no connection to the internet)
config:
Code: Select all
/interface bridge
add name=local
add name=onderburen
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g/n country=netherlands disabled=\
no frequency=auto mode=ap-bridge ssid="Rob & Marcella 2.4G"
set [ find default-name=wlan2 ] band=5ghz-a/n/ac disabled=no frequency=auto \
mode=ap-bridge ssid="Rob & Marcella 5G"
/interface list
add name=listBridge
add name=list_onderburen
add name=listonderburen
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa2-psk mode=dynamic-keys \
supplicant-identity=MikroTik
/ip pool
add name=pool_local ranges=2.0.0.21-2.0.0.200
add name=pool_onderburen ranges=192.168.0.200-192.168.1.10
/ip dhcp-server
add address-pool=pool_local disabled=no interface=local name=dhcp_local
add address-pool=pool_onderburen disabled=no interface=onderburen name=\
dhcp_onderburen
/interface bridge port
add bridge=local interface=ether2
add bridge=local interface=ether3
add bridge=onderburen interface=ether4
add bridge=local interface=ether5
add bridge=local interface=wlan1
add bridge=local interface=wlan2
/ip neighbor discovery-settings
set discover-interface-list=listBridge
/interface list member
add interface=local list=listBridge
add interface=onderburen list=listonderburen
/ip address
add address=2.0.0.1/24 interface=local network=2.0.0.0
add address=192.168.0.1/24 interface=onderburen network=192.168.0.0
/ip cloud
set update-time=no
/ip dhcp-client
add disabled=no interface=ether1
/ip dhcp-server network
add address=2.0.0.0/24 dns-server=2.0.0.1 gateway=2.0.0.1
add address=192.168.0.0/24 dns-server=2.0.0.1 gateway=192.168.0.1 netmask=24
/ip dns
set allow-remote-requests=yes
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether1
add action=dst-nat chain=dstnat in-interface=ether1 port=3389 protocol=tcp \
to-addresses=192.168.88.254
/ip service
set telnet disabled=yes
set ftp disabled=yes
set www disabled=yes
set ssh port=2200
set api disabled=yes
/ip ssh
set strong-crypto=yes
/system clock
set time-zone-name=Europe/Amsterdam
/system identity
set name=RouterOS
/tool bandwidth-server
set enabled=no
/tool mac-server
set allowed-interface-list=listonderburen
/tool mac-server mac-winbox
set allowed-interface-list=listonderburen
and after that maybe some security things i forgot?
Thanks in advance
-Rob