# model: CRS310-1G-5S-4S+ # serial-number: HC707GDKKVV # firmware-type: dx3230L # current-firmware: 7.16.2 # installed-version: 7.18.2 # Flags: U - UNDOABLE # Columns: ACTION, BY, POLICY, TIME # ACTION BY POLICY TIME # U switch port changed daniel write 2025-10-26 19:14:43 # U switch port changed daniel write 2025-10-26 19:14:22 # U switch port changed daniel write 2025-10-26 19:14:03 # U switch port changed daniel write 2025-10-26 19:13:41 # U switch port changed daniel write 2025-10-26 19:11:45 # U switch port changed daniel write 2025-10-26 19:11:30 # U device changed daniel write 2025-10-14 15:12:28 # U device changed daniel write 2025-10-14 15:11:46 # U device changed daniel write 2025-10-14 15:11:23 # U device changed daniel write 2025-10-14 15:11:20 # U device changed daniel write 2025-10-14 15:11:08 # U device changed daniel write 2025-10-14 15:09:18 # U address added daniel write 2025-10-14 15:08:26 # U device changed daniel write 2025-10-14 15:08:14 # U device changed daniel write 2025-10-14 12:23:02 # U dhcp client added daniel write 2025-10-14 12:22:32 # U device changed daniel write 2025-10-14 12:21:01 # U dhcp client removed daniel write 2025-10-14 12:18:06 # U dhcp client added daniel write 2025-10-14 12:18:01 # U device changed daniel write 2025-10-14 12:17:51 # U item changed daniel write 2025-10-14 11:44:50 # U bridge port changed daniel write 2025-10-14 11:43:48 # U device changed daniel write 2025-10-10 16:37:06 # U device changed daniel write 2025-10-10 16:37:02 # U device changed daniel write 2025-10-10 16:36:57 # U bridge port changed daniel write 2025-10-10 16:36:51 # U item changed daniel write 2025-10-10 16:36:40 # U device changed daniel write 2025-10-10 15:46:19 # U bridge port changed daniel write 2025-10-10 15:46:09 # U item changed daniel write 2025-10-10 15:45:54 # U device changed daniel write 2025-10-10 15:20:54 # U dhcp client removed daniel write 2025-10-10 15:17:04 # U dhcp client added daniel write 2025-10-10 15:16:57 # U device added daniel write 2025-10-10 15:16:49 # U item changed daniel write 2025-10-10 15:16:27 # U device changed daniel write 2025-10-10 15:14:11 # U bridge port changed daniel write 2025-10-10 15:12:58 # U bridge port changed daniel write 2025-10-10 15:12:56 # U device changed daniel write 2025-10-10 15:06:04 # U item added daniel write 2025-10-10 15:05:55 # U device changed daniel write 2025-10-10 15:02:37 # U device changed daniel write 2025-10-10 15:02:34 # U device changed daniel write 2025-10-10 15:02:25 # U device changed daniel write 2025-10-10 15:02:22 # U changed snmp settings daniel write 2025-09-30 14:48:46 # U item changed daniel write 2025-09-30 14:48:38 # U item removed daniel write 2025-09-30 14:48:35 # U address removed daniel write 2025-09-11 14:50:34 # U address removed daniel write 2025-09-11 14:50:30 # U device changed daniel write 2025-09-11 11:00:19 # U device changed daniel write 2025-09-11 11:00:09 # U device changed daniel write 2025-08-28 22:55:34 # U device changed daniel write 2025-08-28 22:55:31 # U dhcp server dhcp1 changed daniel write 2025-08-28 11:13:47 # U bridge port changed daniel write 2025-08-28 11:13:42 # U address changed daniel write 2025-08-28 11:13:36 # U device changed daniel write 2025-08-28 11:05:16 # U dhcp server dhcp1 added daniel write 2025-08-28 11:04:55 # U dhcp network added daniel write 2025-08-28 11:04:55 # U pool dhcp_pool0 added daniel write 2025-08-28 11:04:55 # U address added daniel write 2025-08-28 11:04:18 # U bridge port changed daniel write 2025-08-28 11:03:53 # U device changed daniel write 2025-08-28 10:57:17 # U device changed daniel write 2025-08-28 10:57:12 # U device changed daniel write 2025-08-28 10:53:21 # U device changed daniel write 2025-08-28 10:53:18 # U device changed daniel write 2025-08-28 10:53:14 # U device changed daniel write 2025-08-28 10:53:00 # U device changed daniel write 2025-08-28 10:52:57 # U device changed daniel write 2025-08-28 10:46:08 # U route 0.0.0.0/0 changed daniel write 2025-08-28 10:40:48 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:25 # U device changed daniel write 2025-08-28 09:50:24 # U device changed daniel write 2025-08-28 09:50:24 # U device changed daniel write 2025-08-28 09:50:24 # U dhcp client added daniel write 2025-08-28 09:34:49 # U dhcp client removed daniel write 2025-08-28 09:34:43 # U dhcp client added daniel write 2025-08-28 09:34:38 # U device changed daniel write 2025-08-27 20:33:24 # U device changed daniel write 2025-08-27 20:33:24 # U device changed daniel write 2025-08-27 20:33:24 # U device changed daniel write 2025-08-27 20:33:24 # U device changed daniel write 2025-08-27 20:33:24 # U device changed daniel write 2025-08-27 20:33:24 # U device changed daniel write 2025-08-27 20:33:23 # U device changed daniel write 2025-08-27 20:33:23 # U device changed daniel write 2025-08-27 20:33:23 # U device changed daniel write 2025-08-27 20:33:23 # U device changed daniel write 2025-08-27 20:33:23 # U device changed daniel write 2025-08-27 20:33:23 # U device changed daniel write 2025-08-27 20:33:04 # U device changed daniel write 2025-08-27 20:30:43 # # software id = IX5H-93V5 # # model = CRS310-1G-5S-4S+ # serial number = HC707GDKKVV /interface bridge add admin-mac=DC:2C:6E:C8:62:4B auto-mac=no ingress-filtering=no name=bridge port-cost-mode=short priority=0x4000 vlan-filtering=yes /interface ethernet set [ find default-name=ether1 ] l2mtu=9200 loop-protect=on mtu=9000 set [ find default-name=sfp-sfpplus1 ] auto-negotiation=no comment=L2-380C l2mtu=1596 loop-protect=on speed=1G-baseX set [ find default-name=sfp-sfpplus2 ] auto-negotiation=no comment=L32 l2mtu=9200 loop-protect=on speed=1G-baseX set [ find default-name=sfp-sfpplus3 ] auto-negotiation=no comment="GPT Copper Handoff" l2mtu=9200 loop-protect=on speed=1G-baseT-full set [ find default-name=sfp-sfpplus4 ] comment=SW0 l2mtu=9200 loop-protect=on mtu=9000 set [ find default-name=sfp1 ] auto-negotiation=no comment="1G Link to GPT 50Mb Service Port" l2mtu=9200 loop-protect=on set [ find default-name=sfp2 ] comment=L12 l2mtu=9200 loop-protect=on set [ find default-name=sfp3 ] auto-negotiation=no comment="APPIAN - 100M" l2mtu=9200 loop-protect=on set [ find default-name=sfp4 ] comment="Apple - L12" disabled=yes l2mtu=1596 loop-protect=on set [ find default-name=sfp5 ] auto-negotiation=no l2mtu=1596 loop-protect=on /interface vlan add interface=bridge name=BR.VL5 vlan-id=5 add interface=bridge name=BR.VL99 vlan-id=99 add interface=bridge name=BR.VL100 vlan-id=100 add interface=bridge name=BR.VL121 vlan-id=121 add interface=bridge name=BR.VL201 vlan-id=201 add interface=bridge name=BR.VL211 vlan-id=211 add interface=bridge name=BR.VL212 vlan-id=212 add interface=bridge name=BR.VL213 vlan-id=213 add interface=bridge name=BR.VL221 vlan-id=221 add interface=bridge name=BR.VL311 vlan-id=311 add interface=bridge name=BR.VL3000 vlan-id=3000 add interface=bridge name=BR.VL3840 vlan-id=3840 add interface=bridge name=VL321 vlan-id=321 /interface ethernet switch port set 1 egress-rate=50.0Mbps ingress-rate=50.0Mbps set 2 egress-rate=1000.0Mbps ingress-rate=1000.0Mbps set 3 egress-rate=100.0Mbps ingress-rate=100.0Mbps set 8 egress-rate=50.0Mbps ingress-rate=50.0Mbps /interface lte apn set [ find default=yes ] ip-type=ipv4 use-network-apn=no /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /ip pool add name=dhcp_pool0 ranges=192.168.43.1-192.168.43.253 /ip dhcp-server add address-pool=dhcp_pool0 disabled=yes interface=sfp-sfpplus1 lease-time=5m name=dhcp1 /ip smb users set [ find default=yes ] disabled=yes /port set 0 name=serial0 /routing bgp template set default disabled=no output.network=bgp-networks /routing ospf instance add disabled=no name=default-v2 /routing ospf area add disabled=yes instance=default-v2 name=backbone-v2 /snmp community set [ find default=yes ] name=CFNCOM /system logging action add name=Syslog remote=172.16.0.250 src-address=172.16.3.3 target=remote /interface bridge port add bridge=bridge ingress-filtering=no interface=ether1 internal-path-cost=10 path-cost=10 add bridge=bridge ingress-filtering=no interface=sfp-sfpplus4 internal-path-cost=10 path-cost=10 add bridge=bridge ingress-filtering=no interface=sfp-sfpplus1 internal-path-cost=10 path-cost=10 pvid=213 add bridge=bridge edge=yes ingress-filtering=no interface=sfp-sfpplus2 internal-path-cost=10 path-cost=10 pvid=3000 add bridge=bridge ingress-filtering=no interface=sfp-sfpplus3 internal-path-cost=10 path-cost=10 pvid=3000 add bridge=bridge ingress-filtering=no interface=sfp1 internal-path-cost=10 path-cost=10 pvid=212 add bridge=bridge ingress-filtering=no interface=sfp2 internal-path-cost=10 path-cost=10 pvid=121 add bridge=bridge ingress-filtering=no interface=sfp3 internal-path-cost=10 path-cost=10 pvid=3000 add bridge=bridge ingress-filtering=no interface=sfp4 internal-path-cost=10 path-cost=10 pvid=121 add bridge=bridge ingress-filtering=no interface=sfp5 internal-path-cost=10 path-cost=10 /ip firewall connection tracking set udp-timeout=10s /ip neighbor discovery-settings set discover-interface-list=all /ipv6 settings set disable-ipv6=yes max-neighbor-entries=8192 /interface bridge vlan add bridge=bridge tagged=bridge,sfp-sfpplus1,sfp-sfpplus2,sfp-sfpplus4 vlan-ids=100 add bridge=bridge tagged=bridge,sfp-sfpplus1,sfp-sfpplus4 vlan-ids=201 add bridge=bridge tagged=bridge,sfp-sfpplus1,sfp-sfpplus4 vlan-ids=211 add bridge=bridge tagged=bridge,sfp-sfpplus1,sfp-sfpplus4 vlan-ids=221 add bridge=bridge tagged=bridge,ether1,sfp-sfpplus4 vlan-ids=3840 add bridge=bridge tagged="bridge,ether1,sfp-sfpplus1,sfp-sfpplus2,sfp-sfpplus4,sfp1,sfp2,sfp3,sfp4,sfp5" vlan-ids=311 add bridge=bridge tagged=bridge,sfp-sfpplus4 untagged=sfp1,sfp-sfpplus3 vlan-ids=212 add bridge=bridge tagged=bridge,sfp-sfpplus4 untagged=sfp-sfpplus1 vlan-ids=213 add bridge=bridge tagged=bridge,sfp-sfpplus4 vlan-ids=321 add bridge=bridge tagged=bridge,sfp-sfpplus4 vlan-ids=99 add bridge=bridge tagged=bridge,sfp-sfpplus4 vlan-ids=16 add bridge=bridge tagged=bridge,sfp-sfpplus4 vlan-ids=5 add bridge=bridge tagged=bridge,sfp-sfpplus4 untagged=sfp3,sfp-sfpplus2,sfp4,sfp-sfpplus3 vlan-ids=3000 add bridge=bridge tagged=bridge,sfp-sfpplus4 untagged=sfp2 vlan-ids=121 /interface ovpn-server server add auth=sha1,md5 mac-address=FE:0B:35:49:29:15 name=ovpn-server1 /ip address add address=172.16.3.3/16 interface=BR.VL5 network=172.16.0.0 add address=103.67.56.237/29 interface=BR.VL3000 network=103.67.56.232 /ip dhcp-client add default-route-tables=main interface=BR.VL213 add default-route-tables=main interface=BR.VL121 /ip dhcp-server network add address=192.168.43.0/24 gateway=192.168.43.254 /ip dns set servers=1.1.1.1,8.8.4.4 /ip ipsec profile set [ find default=yes ] dpd-interval=2m dpd-maximum-failures=5 /ip route add disabled=no distance=2 dst-address=0.0.0.0/0 gateway=172.16.0.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add disabled=no distance=1 dst-address=192.168.255.0/24 gateway=172.16.0.1 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add disabled=no distance=1 dst-address=192.168.1.0/24 gateway=172.16.0.1 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set api disabled=yes set api-ssl disabled=yes /ip smb shares set [ find default=yes ] directory=/flash/pub /radius add address=172.16.0.1 require-message-auth=no secret=CFNCOM service=login /routing bfd configuration add disabled=no interfaces=all min-rx=200ms min-tx=200ms multiplier=5 /snmp set contact=noc@corefibre.com.au enabled=yes location=Melbourne,Australia trap-version=2 /system clock set time-zone-name=Australia/Sydney /system identity set name=SW1.100Q.MEL.CFN.net.au /system logging add action=Syslog topics=warning add action=Syslog topics=info add action=Syslog topics=error add action=Syslog topics=critical /system note set show-at-login=no /system ntp client set enabled=yes /system ntp client servers add address=172.16.0.1 /system scheduler add name=reboot-at-10pm on-event=reboot-schedule policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2024-12-27 start-time=22:00:00 /system script add dont-require-permissions=no name=reboot-schedule owner=daniel policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="/system reboot" /tool romon set enabled=yes id=DC:2C:6E:C8:62:42 secrets=CFN /user aaa set use-radius=yes