# model: CRS310-1G-5S-4S+ # serial-number: HDM08W4SDZK # firmware-type: dx3230L # current-firmware: 7.16.2 # installed-version: 7.18.2 # # software id = 3RFW-2CZ4 # # model = CRS310-1G-5S-4S+ # serial number = HDM08W4SDZK /interface bridge add ingress-filtering=no mtu=9000 name=bridge port-cost-mode=short vlan-filtering=yes /interface ethernet set [ find default-name=ether1 ] l2mtu=9200 mtu=9000 set [ find default-name=sfp-sfpplus1 ] l2mtu=9200 mtu=9000 set [ find default-name=sfp-sfpplus2 ] comment=L41-T1 l2mtu=9200 mtu=9000 set [ find default-name=sfp-sfpplus3 ] auto-negotiation=no comment=L46-T3 l2mtu=9200 mtu=9000 speed=1G-baseX set [ find default-name=sfp-sfpplus4 ] l2mtu=9200 mtu=9000 set [ find default-name=sfp1 ] comment=L44-01 l2mtu=9200 mtu=9000 set [ find default-name=sfp2 ] comment=L46-01 l2mtu=9200 mtu=9000 set [ find default-name=sfp3 ] comment=L41-02 l2mtu=9200 mtu=9000 set [ find default-name=sfp4 ] comment=L42-03 l2mtu=9200 mtu=9000 set [ find default-name=sfp5 ] comment=L44-02 l2mtu=9200 mtu=9000 /interface vlan add interface=bridge mtu=9000 name=BR.VL5 vlan-id=5 add interface=bridge mtu=9000 name=BR.VL12 vlan-id=12 add interface=bridge mtu=9000 name=BR.VL99 vlan-id=99 add interface=bridge mtu=9000 name=BR.VL3000 vlan-id=3000 /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /ip smb users set [ find default=yes ] disabled=yes /port set 0 name=serial0 /snmp community add addresses=::/0 name=CFNCOM /system logging action add name=Syslog remote=172.16.0.250 src-address=172.16.4.4 target=remote /interface bridge port add bridge=bridge interface=sfp-sfpplus1 internal-path-cost=10 path-cost=10 add bridge=bridge interface=sfp1 internal-path-cost=10 path-cost=10 pvid=12 add bridge=bridge interface=sfp2 internal-path-cost=10 path-cost=10 pvid=12 add bridge=bridge interface=sfp3 internal-path-cost=10 path-cost=10 pvid=12 add bridge=bridge interface=sfp4 internal-path-cost=10 path-cost=10 pvid=3000 add bridge=bridge interface=sfp5 internal-path-cost=10 path-cost=10 pvid=12 add bridge=bridge interface=sfp-sfpplus2 internal-path-cost=10 path-cost=10 pvid=12 add bridge=bridge interface=sfp-sfpplus3 pvid=12 /ip firewall connection tracking set udp-timeout=10s /ip neighbor discovery-settings set discover-interface-list=!dynamic /interface bridge vlan add bridge=bridge tagged=bridge,sfp-sfpplus1 untagged=sfp1,sfp2,sfp3,sfp4,sfp5,sfp-sfpplus2,sfp-sfpplus3 vlan-ids=12 add bridge=bridge tagged=bridge,sfp-sfpplus1 vlan-ids=99 add bridge=bridge tagged=bridge,sfp-sfpplus1 untagged=sfp4 vlan-ids=3000 add bridge=bridge tagged=bridge,sfp-sfpplus1 vlan-ids=5 /interface ovpn-server server add mac-address=FE:AF:0E:83:80:3F name=ovpn-server1 /ip address add address=192.168.99.251/24 interface=BR.VL99 network=192.168.99.0 add address=172.16.4.4/16 interface=BR.VL5 network=172.16.0.0 /ip dns set servers=1.1.1.1 /ip hotspot profile set [ find default=yes ] html-directory=hotspot /ip ipsec profile set [ find default=yes ] dpd-interval=2m dpd-maximum-failures=5 /ip route add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=172.16.0.1 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 /ip service set telnet disabled=yes set ftp disabled=yes set www disabled=yes set api disabled=yes set api-ssl disabled=yes /ip smb shares set [ find default=yes ] directory=/flash/pub /snmp set contact=noc@corefibre.com.au enabled=yes location=Melbourne,Australia trap-community=CFNCOM trap-version=2 /system clock set time-zone-name=Australia/Melbourne /system identity set name=SW2.360E.CFN.net.au /system logging add action=Syslog topics=warning add action=Syslog topics=info add action=Syslog topics=error add action=Syslog topics=critical /system note set show-at-login=no /system ntp client set enabled=yes /system ntp client servers add address=172.16.0.1 /system routerboard settings set enter-setup-on=delete-key /system scheduler add name=reboot-at-10pm on-event=reboot-schedule policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2024-12-27 start-time=22:00:00 /system script add dont-require-permissions=no name=reboot-schedule owner=daniel policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="/system reboot" /tool romon set enabled=yes secrets=CFN