# model: CCR1009-7G-1C-1S+ # serial-number: E3220D1DB0D8 # firmware-type: tilegx # current-firmware: 6.47.10 # installed-version: 6.47.10 # Flags: U - undoable, R - redoable, F - floating-undo # ACTION BY POLICY # U device changed cfnadmin write # U ip service changed cfnadmin write # U user daniel added cfnadmin write # policy # U user oxidized added cfnadmin write # policy # U user oxidized removed cfnadmin write # policy # U user daniel removed cfnadmin write # policy # U user group TTWebUser removed cfnadmin write # policy # U user ttadmin removed cfnadmin write # policy # U user oxidized added cfnadmin write # policy # U address list entry added cfnadmin write # U device changed cfnadmin write # U address list entry added cfnadmin write # U nat rule changed valvenetworks write # U nat rule added valvenetworks write # U user AAA settings changed valvenetworks write # policy # U RADIUS client changed valvenetworks write # U RADIUS client changed valvenetworks write # U RADIUS client added valvenetworks write # U RADIUS client added valvenetworks write # U user rancid removed valvenetworks write # policy # U address list entry changed valvenetworks write # U ip service changed valvenetworks write # U nat rule changed valvenetworks write # U nat rule changed valvenetworks write # U nat rule changed valvenetworks write # U address changed valvenetworks write # U address changed valvenetworks write # # software id = 2MEB-16VR # # model = CCR1009-7G-1C-1S+ # serial number = E3220D1DB0D8 /caps-man datapath add client-to-client-forwarding=yes local-forwarding=yes name=TEMP-VOIP vlan-id=102 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 100" vlan-id=1100 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 102B" vlan-id=2102 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 103B" vlan-id=2103 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 104B" vlan-id=2104 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 105B" vlan-id=2105 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 106B" vlan-id=2106 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 107B" vlan-id=2107 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 201B" vlan-id=2201 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 202B" vlan-id=2202 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 203B" vlan-id=2203 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 204B" vlan-id=2204 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 205B" vlan-id=2205 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 206B" vlan-id=2206 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 207B" vlan-id=2207 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 301B" vlan-id=2301 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 302B" vlan-id=2302 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 303A" vlan-id=1303 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 304B" vlan-id=2304 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 305B" vlan-id=2305 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 306B" vlan-id=2306 vlan-mode=use-tag add client-to-client-forwarding=yes local-forwarding=yes name="APT 307B" vlan-id=2307 vlan-mode=use-tag /interface bridge add name=bridge-TrueTelco-PPPoE protocol-mode=none add name=bridge-local vlan-filtering=yes add name=loopback protocol-mode=none /interface ethernet set [ find default-name=combo1 ] combo-mode=sfp comment="OLT Service Uplink" name=combo1-OLT-Service set [ find default-name=ether3 ] comment="OOB Management for OLT" name=ether3-OLT-Management set [ find default-name=ether5 ] comment="IP PBX & IP Handsets for ground floor" name=ether5-switch-uplink set [ find default-name=ether6 ] comment="Temp WAN access" name=ether6-4g set [ find default-name=ether7 ] comment="Cust: Two51OnSwan [1000Mbit]" name=ether7-backhaul /interface l2tp-client add connect-to=103.67.56.1 name=l2tp-CFN password=4678whias78hjkas user=Two51OnSwan add allow-fast-path=yes comment=temp connect-to=103.96.6.254 ipsec-secret=lkdh36aA name=l2tp-out-valve password="757uffgdrfF\$" use-ipsec=yes user=cfn-251swan /caps-man interface add disabled=no l2mtu=1600 mac-address=08:55:31:E3:8D:C5 master-interface=none name=cap1 radio-mac=08:55:31:E3:8D:C5 radio-name=085531E38DC5 add disabled=no l2mtu=1600 mac-address=08:55:31:E3:8D:C6 master-interface=none name=cap2 radio-mac=08:55:31:E3:8D:C6 radio-name=085531E38DC6 /interface vlan add comment="InHouse Monitoring Setup" interface=bridge-local name=bridge-local.90 vlan-id=90 add interface=bridge-local name=bridge-local.99 vlan-id=99 add interface=bridge-local name=bridge-local.100 vlan-id=100 add interface=bridge-local name=bridge-local.102 vlan-id=102 add interface=bridge-local name=bridge-local.103 vlan-id=103 add interface=bridge-local name=bridge-local.111 vlan-id=111 add comment=100 interface=bridge-local name=bridge-local.1100 vlan-id=1100 add comment=101A interface=bridge-local name=bridge-local.1101 vlan-id=1101 add comment=102A interface=bridge-local name=bridge-local.1102 vlan-id=1102 add comment=103A interface=bridge-local name=bridge-local.1103 vlan-id=1103 add comment=104A interface=bridge-local name=bridge-local.1104 vlan-id=1104 add comment=105A interface=bridge-local name=bridge-local.1105 vlan-id=1105 add comment=106A interface=bridge-local name=bridge-local.1106 vlan-id=1106 add comment=107A interface=bridge-local name=bridge-local.1107 vlan-id=1107 add comment=201A interface=bridge-local name=bridge-local.1201 vlan-id=1201 add comment=202A interface=bridge-local name=bridge-local.1202 vlan-id=1202 add comment=203A interface=bridge-local name=bridge-local.1203 vlan-id=1203 add comment=204A interface=bridge-local name=bridge-local.1204 vlan-id=1204 add comment=205A interface=bridge-local name=bridge-local.1205 vlan-id=1205 add comment=206A interface=bridge-local name=bridge-local.1206 vlan-id=1206 add comment=207A interface=bridge-local name=bridge-local.1207 vlan-id=1207 add comment=301A interface=bridge-local name=bridge-local.1301 vlan-id=1301 add comment=302A interface=bridge-local name=bridge-local.1302 vlan-id=1302 add comment=303A interface=bridge-local name=bridge-local.1303 vlan-id=1303 add comment=304A interface=bridge-local name=bridge-local.1304 vlan-id=1304 add comment=305A interface=bridge-local name=bridge-local.1305 vlan-id=1305 add comment=306A interface=bridge-local name=bridge-local.1306 vlan-id=1306 add comment=307A interface=bridge-local name=bridge-local.1307 vlan-id=1307 add comment=101B interface=bridge-local name=bridge-local.2101 vlan-id=2101 add comment=102B interface=bridge-local name=bridge-local.2102 vlan-id=2102 add comment=103B interface=bridge-local name=bridge-local.2103 vlan-id=2103 add comment=104B interface=bridge-local name=bridge-local.2104 vlan-id=2104 add comment=105B interface=bridge-local name=bridge-local.2105 vlan-id=2105 add comment=106B interface=bridge-local name=bridge-local.2106 vlan-id=2106 add comment=107B interface=bridge-local name=bridge-local.2107 vlan-id=2107 add comment=201B interface=bridge-local name=bridge-local.2201 vlan-id=2201 add comment=202B interface=bridge-local name=bridge-local.2202 vlan-id=2202 add comment=203B interface=bridge-local name=bridge-local.2203 vlan-id=2203 add comment=204B interface=bridge-local name=bridge-local.2204 vlan-id=2204 add comment=205B interface=bridge-local name=bridge-local.2205 vlan-id=2205 add comment=206B interface=bridge-local name=bridge-local.2206 vlan-id=2206 add comment=207B interface=bridge-local name=bridge-local.2207 vlan-id=2207 add comment=301B interface=bridge-local name=bridge-local.2301 vlan-id=2301 add comment=302B interface=bridge-local name=bridge-local.2302 vlan-id=2302 add comment=303B interface=bridge-local name=bridge-local.2303 vlan-id=2303 add comment=304B interface=bridge-local name=bridge-local.2304 vlan-id=2304 add comment=305B interface=bridge-local name=bridge-local.2305 vlan-id=2305 add comment=306B interface=bridge-local name=bridge-local.2306 vlan-id=2306 add comment=307B interface=bridge-local name=bridge-local.2307 vlan-id=2307 add comment="TrueTelco PPPoE" interface=ether7-backhaul name=ether7-backhaul.100 vlan-id=100 /caps-man datapath add bridge=bridge-local client-to-client-forwarding=yes local-forwarding=yes name="CSA COMMON" /caps-man security add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA COMMON" passphrase=Caroline3121 add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name=TEMP-VOIP passphrase=blackswan add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 100" passphrase=Caroline100 add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 102B" passphrase=Caroline102B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 103B" passphrase=Caroline103B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 106B" passphrase=Caroline106B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 107B" passphrase=Caroline107B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 201B" passphrase=Caroline201B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 203B" passphrase=Caroline203B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 207B" passphrase=Caroline207B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 301B" passphrase=Caroline301B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 302B" passphrase=Caroline302B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 304B" passphrase=Caroline304B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 206B" passphrase=Caroline206B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 202B" passphrase=Caroline202B add authentication-types=wpa2-psk encryption=aes-ccm group-encryption=aes-ccm group-key-update=5m name="CSA 303A" passphrase=Caroline303A /caps-man configuration add country=australia datapath="CSA COMMON" distance=indoors installation=indoor max-sta-count=20 name="CSA COMMON" security="CSA COMMON" ssid="Caroline Office" add country=australia datapath="CSA COMMON" distance=indoors installation=indoor max-sta-count=20 name="CSA COMMON 5GHz" security="CSA COMMON" ssid="Caroline Office 5GHz" add country=australia datapath=TEMP-VOIP distance=indoors installation=indoor max-sta-count=20 name=SWAN-VoIP-2GHz security=TEMP-VOIP ssid="VoIP Testing" add country=australia datapath="APT 100" installation=indoor max-sta-count=20 name="CSA 100" security="CSA 100" ssid="CSA 100" add country=australia datapath="APT 100" installation=indoor max-sta-count=20 name="CSA 100-5GHz" security="CSA 100" ssid="CSA 100-5GHz" add country=australia datapath="APT 102B" installation=indoor max-sta-count=20 name="CSA 102B" security="CSA 102B" ssid="CSA 102B" add country=australia datapath="APT 103B" installation=indoor max-sta-count=20 name="CSA 103B" security="CSA 103B" ssid="CSA 103B" add country=australia datapath="APT 106B" installation=indoor max-sta-count=20 name="CSA 106B" security="CSA 106B" ssid="CSA 106B" add country=australia datapath="APT 107B" installation=indoor max-sta-count=20 name="CSA 107B" security="CSA 107B" ssid="CSA 107B" add country=australia datapath="APT 201B" installation=indoor max-sta-count=20 name="CSA 201B" security="CSA 201B" ssid="CSA 201B" add country=australia datapath="APT 203B" installation=indoor max-sta-count=20 name="CSA 203B" security="CSA 203B" ssid="CSA 203B" add country=australia datapath="APT 207B" installation=indoor max-sta-count=20 name="CSA 207B" security="CSA 207B" ssid="CSA 207B" add country=australia datapath="APT 301B" installation=indoor max-sta-count=20 name="CSA 301B" security="CSA 301B" ssid="CSA 301B" add country=australia datapath="APT 302B" installation=indoor max-sta-count=20 name="CSA 302B" security="CSA 302B" ssid="CSA 302B" add country=australia datapath="APT 304B" installation=indoor max-sta-count=20 name="CSA 304B" security="CSA 304B" ssid="CSA 304B" add country=australia datapath="APT 102B" installation=indoor max-sta-count=20 name="CSA 102B-5GHz" security="CSA 102B" ssid="CSA 102B-5GHz" add country=australia datapath="APT 103B" installation=indoor max-sta-count=20 name="CSA 103B-5GHz" security="CSA 103B" ssid="CSA 103B-5GHz" add country=australia datapath="APT 106B" installation=indoor max-sta-count=20 name="CSA 106B-5GHz" security="CSA 106B" ssid="CSA 106B-5GHz" add country=australia datapath="APT 107B" installation=indoor max-sta-count=20 name="CSA 107B-5GHz" security="CSA 107B" ssid="CSA 107B-5GHz" add country=australia datapath="APT 201B" installation=indoor max-sta-count=20 name="CSA 201B-5GHz" security="CSA 201B" ssid="CSA 201B-5GHz" add country=australia datapath="APT 203B" installation=indoor max-sta-count=20 name="CSA 203B-5GHz" security="CSA 203B" ssid="CSA 203B-5GHz" add country=australia datapath="APT 207B" installation=indoor max-sta-count=20 name="CSA 207B-5GHz" security="CSA 207B" ssid="CSA 207B-5GHz" add country=australia datapath="APT 301B" installation=indoor max-sta-count=20 name="CSA 301B-5GHz" security="CSA 301B" ssid="CSA 301B-5GHz" add country=australia datapath="APT 302B" installation=indoor max-sta-count=20 name="CSA 302B-5GHz" security="CSA 302B" ssid="CSA 302B-5GHz" add country=australia datapath="APT 304B" installation=indoor max-sta-count=20 name="CSA 304B-5GHz" security="CSA 304B" ssid="CSA 304B-5GHz" add country=australia datapath="APT 202B" installation=indoor max-sta-count=20 name="CSA 202B" security="CSA 202B" ssid="CSA 202B" add country=australia datapath="APT 206B" installation=indoor max-sta-count=20 name="CSA 206B" security="CSA 206B" ssid="CSA 206B" add country=australia datapath="APT 202B" installation=indoor max-sta-count=20 name="CSA 202B-5GHz" security="CSA 202B" ssid="CSA 202B-5GHz" add country=australia datapath="APT 206B" installation=indoor max-sta-count=20 name="CSA 206B-5GHz" security="CSA 206B" ssid="CSA 206B-5GHz" add country=australia datapath="APT 303A" installation=indoor max-sta-count=20 name="CSA 303A" security="CSA 303A" ssid="CSA 303A" add country=australia datapath="APT 303A" installation=indoor max-sta-count=20 name="CSA 303A-5GHz" security="CSA 303A" ssid="CSA 303A-5GHz" /caps-man interface add configuration="CSA COMMON" disabled=no l2mtu=1600 mac-address=08:55:31:E3:90:71 master-interface=none name=2GHz-KITCHEN-AP-1 radio-mac=08:55:31:E3:90:71 radio-name=085531E39071 add configuration="CSA COMMON" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8A:66 master-interface=none name=2GHz-LOBBY-AP-1 radio-mac=08:55:31:E3:8A:66 radio-name=085531E38A66 add configuration="CSA COMMON" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8E:FC master-interface=none name=2GHz-RECEPTION-AP-1 radio-mac=08:55:31:E3:8E:FC radio-name=085531E38EFC add configuration="CSA 100" disabled=no l2mtu=1600 mac-address=08:55:31:E3:91:D3 master-interface=none name=2GHz-STUDIO-APT-100-AP-1 radio-mac=08:55:31:E3:91:D3 radio-name=085531E391D3 add configuration="CSA 102B" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8E:8D master-interface=none name=2GHz-STUDIO-APT-102B-AP-1 radio-mac=08:55:31:E3:8E:8D radio-name=085531E38E8D add configuration="CSA 103B" disabled=no l2mtu=1600 mac-address=2C:C8:1B:3C:FA:A7 master-interface=none name=2GHz-STUDIO-APT-103B-AP-1 radio-mac=2C:C8:1B:3C:FA:A7 radio-name=2CC81B3CFAA7 add configuration="CSA 106B" disabled=no l2mtu=1600 mac-address=2C:C8:1B:3C:F9:29 master-interface=none name=2GHz-STUDIO-APT-106B-AP-1 radio-mac=2C:C8:1B:3C:F9:29 radio-name=2CC81B3CF929 add configuration="CSA 107B" disabled=no l2mtu=1600 mac-address=08:55:31:E3:92:12 master-interface=none name=2GHz-STUDIO-APT-107B-AP-1 radio-mac=08:55:31:E3:92:12 radio-name=085531E39212 add configuration="CSA 201B" disabled=no mac-address=08:55:31:E3:92:29 master-interface=none name=2GHz-STUDIO-APT-201B-AP-1 radio-mac=08:55:31:E3:92:29 radio-name=085531E39229 add configuration="CSA 202B" disabled=no l2mtu=1600 mac-address=2C:C8:1B:3C:ED:A5 master-interface=none name=2GHz-STUDIO-APT-202B-AP-1 radio-mac=2C:C8:1B:3C:ED:A5 radio-name=2CC81B3CEDA5 add configuration="CSA 203B" disabled=no mac-address=2C:C8:1B:3D:01:53 master-interface=none name=2GHz-STUDIO-APT-203B-AP-1 radio-mac=2C:C8:1B:3D:01:53 radio-name=2CC81B3D0153 add configuration="CSA 206B" disabled=no mac-address=08:55:31:E3:87:6E master-interface=none name=2GHz-STUDIO-APT-206B-AP-1 radio-mac=08:55:31:E3:87:6E radio-name=085531E3876E add configuration="CSA 207B" disabled=no l2mtu=1600 mac-address=08:55:31:E3:91:90 master-interface=none name=2GHz-STUDIO-APT-207B-AP-1 radio-mac=08:55:31:E3:91:90 radio-name=085531E39190 add configuration="CSA 301B" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8C:AE master-interface=none name=2GHz-STUDIO-APT-301B-AP-1 radio-mac=08:55:31:E3:8C:AE radio-name=085531E38CAE add configuration="CSA 302B" disabled=no l2mtu=1600 mac-address=2C:C8:1B:E2:45:E8 master-interface=none name=2GHz-STUDIO-APT-302B-AP-1 radio-mac=2C:C8:1B:E2:45:E8 radio-name=2CC81BE245E8 add configuration="CSA 303A" disabled=no l2mtu=1600 mac-address=08:55:31:E3:91:FC master-interface=none name=2GHz-STUDIO-APT-303A-AP-1 radio-mac=08:55:31:E3:91:FC radio-name=085531E391FC add configuration="CSA 304B" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8B:9A master-interface=none name=2GHz-STUDIO-APT-304B-AP-1 radio-mac=08:55:31:E3:8B:9A radio-name=085531E38B9A add configuration="CSA COMMON 5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:90:72 master-interface=none name=5GHz-KITCHEN-AP-1 radio-mac=08:55:31:E3:90:72 radio-name=085531E39072 add configuration="CSA COMMON 5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8A:67 master-interface=none name=5GHz-LOBBY-AP-1 radio-mac=08:55:31:E3:8A:67 radio-name=085531E38A67 add configuration="CSA COMMON 5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8E:FD master-interface=none name=5GHz-RECEPTION-AP-1 radio-mac=08:55:31:E3:8E:FD radio-name=085531E38EFD add configuration="CSA 100-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:91:D4 master-interface=none name=5GHz-STUDIO-APT-100-AP-1 radio-mac=08:55:31:E3:91:D4 radio-name=085531E391D4 add configuration="CSA 102B-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8E:8E master-interface=none name=5GHz-STUDIO-APT-102B-AP-1 radio-mac=08:55:31:E3:8E:8E radio-name=085531E38E8E add configuration="CSA 103B-5GHz" disabled=no l2mtu=1600 mac-address=2C:C8:1B:3C:FA:A8 master-interface=none name=5GHz-STUDIO-APT-103B-AP-1 radio-mac=2C:C8:1B:3C:FA:A8 radio-name=2CC81B3CFAA8 add configuration="CSA 106B-5GHz" disabled=no l2mtu=1600 mac-address=2C:C8:1B:3C:F9:2A master-interface=none name=5GHz-STUDIO-APT-106B-AP-1 radio-mac=2C:C8:1B:3C:F9:2A radio-name=2CC81B3CF92A add configuration="CSA 107B-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:92:13 master-interface=none name=5GHz-STUDIO-APT-107B-AP-1 radio-mac=08:55:31:E3:92:13 radio-name=085531E39213 add configuration="CSA 201B-5GHz" disabled=no mac-address=08:55:31:E3:92:2A master-interface=none name=5GHz-STUDIO-APT-201B-AP-1 radio-mac=08:55:31:E3:92:2A radio-name=085531E3922A add configuration="CSA 202B-5GHz" disabled=no l2mtu=1600 mac-address=2C:C8:1B:3C:ED:A6 master-interface=none name=5GHz-STUDIO-APT-202B-AP-1 radio-mac=2C:C8:1B:3C:ED:A6 radio-name=2CC81B3CEDA6 add configuration="CSA 203B-5GHz" disabled=no mac-address=2C:C8:1B:3D:01:54 master-interface=none name=5GHz-STUDIO-APT-203B-AP-1 radio-mac=2C:C8:1B:3D:01:54 radio-name=2CC81B3D0154 add configuration="CSA 206B-5GHz" disabled=no mac-address=08:55:31:E3:87:6F master-interface=none name=5GHz-STUDIO-APT-206B-AP-1 radio-mac=08:55:31:E3:87:6F radio-name=085531E3876F add configuration="CSA 207B-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:91:91 master-interface=none name=5GHz-STUDIO-APT-207B-AP-1 radio-mac=08:55:31:E3:91:91 radio-name=085531E39191 add configuration="CSA 301B-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8C:AF master-interface=none name=5GHz-STUDIO-APT-301B-AP-1 radio-mac=08:55:31:E3:8C:AF radio-name=085531E38CAF add configuration="CSA 302B-5GHz" disabled=no l2mtu=1600 mac-address=2C:C8:1B:E2:45:E9 master-interface=none name=5GHz-STUDIO-APT-302B-AP-1 radio-mac=2C:C8:1B:E2:45:E9 radio-name=2CC81BE245E9 add configuration="CSA 303A-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:91:FD master-interface=none name=5GHz-STUDIO-APT-303A-AP-1 radio-mac=08:55:31:E3:91:FD radio-name=085531E391FD add configuration="CSA 304B-5GHz" disabled=no l2mtu=1600 mac-address=08:55:31:E3:8B:9B master-interface=none name=5GHz-STUDIO-APT-304B-AP-1 radio-mac=08:55:31:E3:8B:9B radio-name=085531E38B9B /interface list add name=WAN add name=no-neighbor-discovery-interface-list /interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik /ip pool add name=managers ranges=192.168.11.1-192.168.11.253 add name=wifi ranges=192.168.101.2-192.168.101.254 add name=tv ranges=192.168.103.2-192.168.103.254 add name=voip ranges=192.168.102.2-192.168.102.254 add name=management ranges=192.168.111.2-192.168.111.254 add name=dhcp_pool6 ranges=192.168.100.1-192.168.100.253 add name=dhcp_pool7 ranges=100.64.0.2-100.64.0.254 add name=dhcp_pool8 ranges=100.64.1.2-100.64.1.254 add name=dhcp_pool9 ranges=100.64.2.2-100.64.2.254 add name=dhcp_pool10 ranges=100.64.3.2-100.64.3.254 add name=dhcp_pool11 ranges=100.64.4.2-100.64.4.254 add name=dhcp_pool12 ranges=100.64.5.2-100.64.5.254 add name=dhcp_pool13 ranges=100.64.6.2-100.64.6.254 add name=dhcp_pool14 ranges=100.64.6.2-100.64.6.254 add name=dhcp_pool15 ranges=100.64.7.2-100.64.7.254 add name=dhcp_pool16 ranges=100.64.8.2-100.64.8.254 add name=dhcp_pool17 ranges=100.64.9.2-100.64.9.254 add name=dhcp_pool18 ranges=100.64.10.2-100.64.10.254 add name=dhcp_pool19 ranges=100.64.11.2-100.64.11.254 add name=dhcp_pool20 ranges=100.64.12.2-100.64.12.254 add name=dhcp_pool21 ranges=100.64.13.2-100.64.13.254 add name=dhcp_pool22 ranges=100.64.14.2-100.64.14.254 add name=dhcp_pool23 ranges=100.64.15.2-100.64.15.254 add name=dhcp_pool24 ranges=100.64.16.2-100.64.16.254 add name=dhcp_pool25 ranges=100.64.17.2-100.64.17.254 add name=dhcp_pool26 ranges=100.64.18.2-100.64.18.254 add name=dhcp_pool27 ranges=100.64.19.2-100.64.19.254 add name=dhcp_pool28 ranges=100.64.20.2-100.64.20.254 add name=dhcp_pool29 ranges=100.64.21.2-100.64.21.254 add name=dhcp_pool30 ranges=100.64.22.2-100.64.22.254 add name=dhcp_pool31 ranges=100.64.23.2-100.64.23.254 add name=dhcp_pool32 ranges=100.64.24.2-100.64.24.254 add name=dhcp_pool33 ranges=100.64.25.2-100.64.25.254 add name=dhcp_pool34 ranges=100.64.26.2-100.64.26.254 add name=dhcp_pool35 ranges=100.64.27.2-100.64.27.254 add name=dhcp_pool36 ranges=100.64.28.2-100.64.28.254 add name=dhcp_pool37 ranges=100.64.29.2-100.64.29.254 add name=dhcp_pool38 ranges=100.64.30.2-100.64.30.254 add name=dhcp_pool39 ranges=100.64.31.2-100.64.31.254 add name=dhcp_pool40 ranges=100.64.32.2-100.64.32.254 add name=dhcp_pool41 ranges=100.64.33.2-100.64.33.254 add name=dhcp_pool42 ranges=100.64.34.2-100.64.34.254 add name=dhcp_pool43 ranges=100.64.35.2-100.64.35.254 add name=dhcp_pool44 ranges=100.64.36.2-100.64.36.254 add name=dhcp_pool45 ranges=100.64.37.2-100.64.37.254 add name=dhcp_pool46 ranges=100.64.38.2-100.64.38.254 add name=dhcp_pool47 ranges=100.64.39.2-100.64.39.254 add name=dhcp_pool48 ranges=100.64.40.2-100.64.40.254 add name=dhcp_pool49 ranges=100.64.41.2-100.64.41.254 add name=dhcp_pool50 ranges=100.64.42.2-100.64.42.126 add name=vpn ranges=192.168.104.2-192.168.104.254 /ip dhcp-server add address-pool=managers disabled=no interface=bridge-local name=dhcp1 add address-pool=tv disabled=no interface=bridge-local.103 name=ser_apts_tv add address-pool=voip disabled=no interface=bridge-local.102 name=ser_apts_phones add address-pool=management disabled=no interface=bridge-local.111 name=ser_apts_mng add address-pool=dhcp_pool7 disabled=no interface=bridge-local.1100 name=dhcp2 add address-pool=dhcp_pool8 disabled=no interface=bridge-local.1101 name=dhcp3 add address-pool=dhcp_pool9 disabled=no interface=bridge-local.1102 name=dhcp4 add address-pool=dhcp_pool10 disabled=no interface=bridge-local.1103 name=dhcp5 add address-pool=dhcp_pool11 disabled=no interface=bridge-local.1104 name=dhcp6 add address-pool=dhcp_pool12 disabled=no interface=bridge-local.1105 name=dhcp7 add address-pool=dhcp_pool13 disabled=no interface=bridge-local.1106 name=dhcp8 add address-pool=dhcp_pool15 disabled=no interface=bridge-local.1107 name=dhcp9 add address-pool=dhcp_pool16 disabled=no interface=bridge-local.1201 name=dhcp10 add address-pool=dhcp_pool17 disabled=no interface=bridge-local.1202 name=dhcp11 add address-pool=dhcp_pool18 disabled=no interface=bridge-local.1203 name=dhcp12 add address-pool=dhcp_pool19 disabled=no interface=bridge-local.1204 name=dhcp13 add address-pool=dhcp_pool20 disabled=no interface=bridge-local.1205 name=dhcp14 add address-pool=dhcp_pool21 disabled=no interface=bridge-local.1206 name=dhcp15 add address-pool=dhcp_pool22 disabled=no interface=bridge-local.1207 name=dhcp16 add address-pool=dhcp_pool23 disabled=no interface=bridge-local.1301 name=dhcp17 add address-pool=dhcp_pool24 disabled=no interface=bridge-local.1302 name=dhcp18 add address-pool=dhcp_pool25 disabled=no interface=bridge-local.1303 name=dhcp19 add address-pool=dhcp_pool26 disabled=no interface=bridge-local.1304 name=dhcp20 add address-pool=dhcp_pool27 disabled=no interface=bridge-local.1305 name=dhcp21 add address-pool=dhcp_pool28 disabled=no interface=bridge-local.1306 name=dhcp22 add address-pool=dhcp_pool29 disabled=no interface=bridge-local.1307 name=dhcp23 add address-pool=dhcp_pool30 disabled=no interface=bridge-local.2101 name=dhcp24 add address-pool=dhcp_pool31 disabled=no interface=bridge-local.2102 name=dhcp25 add address-pool=dhcp_pool32 disabled=no interface=bridge-local.2103 name=dhcp26 add address-pool=dhcp_pool33 disabled=no interface=bridge-local.2104 name=dhcp27 add address-pool=dhcp_pool34 disabled=no interface=bridge-local.2105 name=dhcp28 add address-pool=dhcp_pool35 disabled=no interface=bridge-local.2106 name=dhcp29 add address-pool=dhcp_pool36 disabled=no interface=bridge-local.2107 name=dhcp30 add address-pool=dhcp_pool37 disabled=no interface=bridge-local.2201 name=dhcp31 add address-pool=dhcp_pool38 disabled=no interface=bridge-local.2202 name=dhcp32 add address-pool=dhcp_pool39 disabled=no interface=bridge-local.2203 name=dhcp33 add address-pool=dhcp_pool40 disabled=no interface=bridge-local.2204 name=dhcp34 add address-pool=dhcp_pool41 disabled=no interface=bridge-local.2205 name=dhcp35 add address-pool=dhcp_pool42 disabled=no interface=bridge-local.2206 name=dhcp36 add address-pool=dhcp_pool43 disabled=no interface=bridge-local.2207 name=dhcp37 add address-pool=dhcp_pool44 disabled=no interface=bridge-local.2301 name=dhcp38 add address-pool=dhcp_pool45 disabled=no interface=bridge-local.2302 name=dhcp39 add address-pool=dhcp_pool46 disabled=no interface=bridge-local.2303 name=dhcp40 add address-pool=dhcp_pool47 disabled=no interface=bridge-local.2304 name=dhcp41 add address-pool=dhcp_pool48 disabled=no interface=bridge-local.2305 name=dhcp42 add address-pool=dhcp_pool49 disabled=no interface=bridge-local.2306 name=dhcp43 add address-pool=dhcp_pool50 disabled=no interface=bridge-local.2307 name=dhcp44 /ppp profile add change-tcp-mss=yes dns-server=8.8.8.8,8.8.4.4 local-address=192.168.104.1 name=VoIPVPN remote-address=vpn use-encryption=yes add change-tcp-mss=yes name=OVPN-SmartOLT only-one=yes use-encryption=required use-mpls=no /interface ovpn-client add certificate=SmartOLT-Client cipher=aes256 connect-to=corefibre.smartolt.com mac-address=FE:92:E3:E1:49:A6 name=SmartOLT-VPN password=XFScBsNP0une port=12220 profile=OVPN-SmartOLT user=Two51OnSwan@corefibre.smartolt.com verify-server-certificate=yes /routing ospf instance set [ find default=yes ] redistribute-connected=as-type-2 router-id=10.255.255.67 /snmp community set [ find default=yes ] disabled=yes add addresses=::/0 name=valve add addresses=::/0 name=CFNCOM /system logging action add name=valve target=memory /user group set full policy="local,telnet,ssh,ftp,reboot,read,write,policy,test,winbox,password,web,sniff,sensitive,api,romon,dude,tikapp" /caps-man manager set enabled=yes package-path=/firmware upgrade-policy=suggest-same-version /caps-man provisioning add action=create-enabled disabled=yes hw-supported-modes=ac master-configuration="CSA COMMON 5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled disabled=yes hw-supported-modes=gn master-configuration="CSA COMMON" name-format=prefix-identity name-prefix=2GHz slave-configurations=SWAN-VoIP-2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-101B-AP\$" master-configuration="CSA 100" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-102B-AP\$" master-configuration="CSA 102B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-102B-AP\$" master-configuration="CSA 102B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-101B-AP\$" master-configuration="CSA 100-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-103B-AP\$" master-configuration="CSA 103B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-106B-AP\$" master-configuration="CSA 106B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-107B-AP\$" master-configuration="CSA 107B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-201B-AP\$" master-configuration="CSA 201B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-203B-AP\$" master-configuration="CSA 203B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-303A-AP\$" master-configuration="CSA 303A" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-202B-AP\$" master-configuration="CSA 202B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-207B-AP\$" master-configuration="CSA 207B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-301B-AP\$" master-configuration="CSA 301B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-302B-AP\$" master-configuration="CSA 302B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-304B-AP\$" master-configuration="CSA 304B" name-format=prefix-identity name-prefix=2GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-103B-AP\$" master-configuration="CSA 103B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-106B-AP\$" master-configuration="CSA 106B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-107B-AP\$" master-configuration="CSA 107B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-201B-AP\$" master-configuration="CSA 201B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-203B-AP\$" master-configuration="CSA 203B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-303A-AP\$" master-configuration="CSA 303A-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-202B-AP\$" master-configuration="CSA 202B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-301B-AP\$" master-configuration="CSA 301B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-302B-AP\$" master-configuration="CSA 302B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-304B-AP\$" master-configuration="CSA 304B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-207B-AP\$" master-configuration="CSA 207B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=ac identity-regexp="^STUDIO-APT-206B-AP\$" master-configuration="CSA 206B-5GHz" name-format=prefix-identity name-prefix=5GHz add action=create-enabled hw-supported-modes=gn identity-regexp="^STUDIO-APT-206B-AP\$" master-configuration="CSA 206B" name-format=prefix-identity name-prefix=2GHz /interface bridge port add bridge=bridge-local interface=combo1-OLT-Service add bridge=bridge-local interface=ether5-switch-uplink add bridge=bridge-TrueTelco-PPPoE interface=bridge-local.100 add bridge=bridge-TrueTelco-PPPoE interface=ether7-backhaul.100 /ip neighbor discovery-settings set discover-interface-list=!no-neighbor-discovery-interface-list /interface bridge vlan add bridge=bridge-local comment="Hotel VoIP" tagged=combo1-OLT-Service,ether5-switch-uplink,bridge-local vlan-ids=102 add bridge=bridge-local comment="Hotel TVs" tagged=combo1-OLT-Service,ether5-switch-uplink,bridge-local vlan-ids=103 add bridge=bridge-local comment="GPON Management" tagged=combo1-OLT-Service,bridge-local vlan-ids=99 add bridge=bridge-local comment="Apartment WiFi" tagged=combo1-OLT-Service,ether5-switch-uplink,bridge-local vlan-ids=1100-1107,1201-1207,1301-1307,2101-2107,2201-2207,2301-2307 add bridge=bridge-local comment="TrueTelco PPPoE" tagged=combo1-OLT-Service,bridge-local vlan-ids=100 add bridge=bridge-local tagged=ether5-switch-uplink,bridge-local,combo1-OLT-Service vlan-ids=111 add bridge=bridge-local comment="TrueTelco Management" tagged=combo1-OLT-Service,bridge-local,ether5-switch-uplink vlan-ids=90 /interface l2tp-server server set allow-fast-path=yes enabled=yes ipsec-secret=TrueTelco1#42 use-ipsec=yes /interface list member add interface=ether6-4g list=WAN add list=no-neighbor-discovery-interface-list /ip address add address=10.11.104.1/24 comment="OLT OOB management" interface=ether3-OLT-Management network=10.11.104.0 add address=192.168.11.254/24 interface=bridge-local network=192.168.11.0 add address=10.11.99.254/24 comment=Management disabled=yes interface=bridge-local.99 network=10.11.99.0 add address=10.112.0.1/24 comment="GPON Management" interface=bridge-local.99 network=10.112.0.0 add address=192.168.111.1/24 comment="apartment switches management" interface=bridge-local.111 network=192.168.111.0 add address=192.168.102.1/24 comment="Hotel VoIP network" interface=bridge-local.102 network=192.168.102.0 add address=192.168.103.1/24 comment="Hotel TV network" interface=bridge-local.103 network=192.168.103.0 add address=10.211.200.2/30 comment="OSPF MLB-BDR-R-1" interface=ether7-backhaul network=10.211.200.0 add address=103.96.4.24 comment="Primary IP" interface=loopback network=103.96.4.24 add address=10.255.255.67 interface=loopback network=10.255.255.67 add address=100.64.0.1/24 interface=bridge-local.1100 network=100.64.0.0 add address=100.64.1.1/24 interface=bridge-local.1101 network=100.64.1.0 add address=100.64.2.1/24 interface=bridge-local.1102 network=100.64.2.0 add address=100.64.3.1/24 interface=bridge-local.1103 network=100.64.3.0 add address=100.64.4.1/24 interface=bridge-local.1104 network=100.64.4.0 add address=100.64.5.1/24 interface=bridge-local.1105 network=100.64.5.0 add address=100.64.6.1/24 interface=bridge-local.1106 network=100.64.6.0 add address=100.64.7.1/24 interface=bridge-local.1107 network=100.64.7.0 add address=100.64.8.1/24 interface=bridge-local.1201 network=100.64.8.0 add address=100.64.9.1/24 interface=bridge-local.1202 network=100.64.9.0 add address=100.64.10.1/24 interface=bridge-local.1203 network=100.64.10.0 add address=100.64.11.1/24 interface=bridge-local.1204 network=100.64.11.0 add address=100.64.12.1/24 interface=bridge-local.1205 network=100.64.12.0 add address=100.64.13.1/24 interface=bridge-local.1206 network=100.64.13.0 add address=100.64.14.1/24 interface=bridge-local.1207 network=100.64.14.0 add address=100.64.15.1/24 interface=bridge-local.1301 network=100.64.15.0 add address=100.64.16.1/24 interface=bridge-local.1302 network=100.64.16.0 add address=100.64.17.1/24 interface=bridge-local.1303 network=100.64.17.0 add address=100.64.18.1/24 interface=bridge-local.1304 network=100.64.18.0 add address=100.64.19.1/24 interface=bridge-local.1305 network=100.64.19.0 add address=100.64.20.1/24 interface=bridge-local.1306 network=100.64.20.0 add address=100.64.21.1/24 interface=bridge-local.1307 network=100.64.21.0 add address=100.64.22.1/24 interface=bridge-local.2101 network=100.64.22.0 add address=100.64.23.1/24 interface=bridge-local.2102 network=100.64.23.0 add address=100.64.24.1/24 interface=bridge-local.2103 network=100.64.24.0 add address=100.64.25.1/24 interface=bridge-local.2104 network=100.64.25.0 add address=100.64.26.1/24 interface=bridge-local.2105 network=100.64.26.0 add address=100.64.27.1/24 interface=bridge-local.2106 network=100.64.27.0 add address=100.64.28.1/24 interface=bridge-local.2107 network=100.64.28.0 add address=100.64.29.1/24 interface=bridge-local.2201 network=100.64.29.0 add address=100.64.30.1/24 interface=bridge-local.2202 network=100.64.30.0 add address=100.64.31.1/24 interface=bridge-local.2203 network=100.64.31.0 add address=100.64.32.1/24 interface=bridge-local.2204 network=100.64.32.0 add address=100.64.33.1/24 interface=bridge-local.2205 network=100.64.33.0 add address=100.64.34.1/24 interface=bridge-local.2206 network=100.64.34.0 add address=100.64.35.1/24 interface=bridge-local.2207 network=100.64.35.0 add address=100.64.36.1/24 interface=bridge-local.2301 network=100.64.36.0 add address=100.64.37.1/24 interface=bridge-local.2302 network=100.64.37.0 add address=100.64.38.1/24 interface=bridge-local.2303 network=100.64.38.0 add address=100.64.39.1/24 interface=bridge-local.2304 network=100.64.39.0 add address=100.64.40.1/24 interface=bridge-local.2305 network=100.64.40.0 add address=100.64.41.1/24 interface=bridge-local.2306 network=100.64.41.0 add address=100.64.42.1/25 interface=bridge-local.2307 network=100.64.42.0 add address=103.96.4.29 comment="Secondary IP" interface=loopback network=103.96.4.29 add address=192.168.90.1/24 comment="InHouse Monitoring Setup" interface=bridge-local.90 network=192.168.90.0 /ip dhcp-client add default-route-distance=10 disabled=no interface=ether6-4g use-peer-dns=no /ip dhcp-server lease add address=192.168.11.253 client-id=1:8:55:31:e3:8a:64 mac-address=08:55:31:E3:8A:64 server=dhcp1 add address=192.168.11.252 client-id=1:8:55:31:e3:8d:c3 mac-address=08:55:31:E3:8D:C3 server=dhcp1 add address=192.168.11.251 client-id=1:8:55:31:e3:8e:fa mac-address=08:55:31:E3:8E:FA server=dhcp1 add address=192.168.11.250 client-id=1:8:55:31:e3:90:6f mac-address=08:55:31:E3:90:6F server=dhcp1 add address=192.168.11.249 client-id=1:2c:c8:1b:3b:de:1e mac-address=2C:C8:1B:3B:DE:1E server=dhcp1 add address=192.168.11.240 client-id=1:bc:32:5f:f7:d:c6 comment=NVR mac-address=BC:32:5F:F7:0D:C6 server=dhcp1 add address=192.168.103.5 client-id=1:c0:74:ad:34:9d:ca mac-address=C0:74:AD:34:9D:CA server=ser_apts_tv add address=192.168.11.208 client-id=1:6c:1c:71:56:21:6a mac-address=6C:1C:71:56:21:6A server=dhcp1 add address=192.168.102.227 client-id=1:c0:74:ad:34:9d:b3 mac-address=C0:74:AD:34:9D:B3 server=ser_apts_phones add address=192.168.111.247 client-id=1:2c:c8:1b:3b:de:1e mac-address=2C:C8:1B:3B:DE:1E server=ser_apts_mng add address=192.168.111.251 client-id=1:2c:c8:1b:3f:1:4d mac-address=2C:C8:1B:3F:01:4D server=ser_apts_mng add address=192.168.111.248 client-id=1:2c:c8:1b:3f:1:47 mac-address=2C:C8:1B:3F:01:47 server=ser_apts_mng add address=192.168.111.225 client-id=1:2c:c8:1b:3f:1:ef mac-address=2C:C8:1B:3F:01:EF server=ser_apts_mng add address=192.168.111.243 client-id=1:2c:c8:1b:3f:1:ad mac-address=2C:C8:1B:3F:01:AD server=ser_apts_mng add address=192.168.111.242 client-id=1:2c:c8:1b:3f:1:a7 mac-address=2C:C8:1B:3F:01:A7 server=ser_apts_mng add address=192.168.111.228 client-id=1:2c:c8:1b:3f:1:a1 mac-address=2C:C8:1B:3F:01:A1 server=ser_apts_mng add address=192.168.111.246 client-id=1:2c:c8:1b:40:c9:ce mac-address=2C:C8:1B:40:C9:CE server=ser_apts_mng add address=192.168.111.240 client-id=1:2c:c8:1b:3f:1:95 mac-address=2C:C8:1B:3F:01:95 server=ser_apts_mng add address=192.168.102.205 client-id=1:c0:74:ad:34:9d:bb mac-address=C0:74:AD:34:9D:BB server=ser_apts_phones add address=192.168.102.203 client-id=1:c0:74:ad:34:9d:b1 mac-address=C0:74:AD:34:9D:B1 server=ser_apts_phones add address=192.168.102.196 client-id=1:c0:74:ad:34:93:20 mac-address=C0:74:AD:34:93:20 server=ser_apts_phones add address=192.168.102.194 client-id=1:c0:74:ad:34:93:5b mac-address=C0:74:AD:34:93:5B server=ser_apts_phones add address=192.168.102.191 client-id=1:c0:74:ad:34:9d:ce mac-address=C0:74:AD:34:9D:CE server=ser_apts_phones add address=192.168.102.192 client-id=1:c0:74:ad:34:93:33 mac-address=C0:74:AD:34:93:33 server=ser_apts_phones add address=192.168.102.190 client-id=1:c0:74:ad:34:9d:d0 mac-address=C0:74:AD:34:9D:D0 server=ser_apts_phones add address=192.168.111.211 client-id=1:2c:c8:1b:40:c9:c0 mac-address=2C:C8:1B:40:C9:C0 server=ser_apts_mng add address=192.168.102.168 client-id=1:c0:74:ad:34:93:64 mac-address=C0:74:AD:34:93:64 server=ser_apts_phones add address=192.168.111.200 client-id=1:8:55:31:e3:91:fa mac-address=08:55:31:E3:91:FA server=ser_apts_mng add address=192.168.111.198 client-id=1:8:55:31:e3:8b:98 mac-address=08:55:31:E3:8B:98 server=ser_apts_mng add address=192.168.102.134 client-id=1:c0:74:ad:34:93:65 mac-address=C0:74:AD:34:93:65 server=ser_apts_phones add address=192.168.102.128 client-id=1:c:11:5:15:a3:d3 mac-address=0C:11:05:15:A3:D3 server=ser_apts_phones add address=192.168.111.230 client-id=1:2c:c8:1b:3f:1:5f mac-address=2C:C8:1B:3F:01:5F server=ser_apts_mng add address=192.168.111.236 client-id=1:2c:c8:1b:3f:1:53 mac-address=2C:C8:1B:3F:01:53 server=ser_apts_mng add address=192.168.111.233 client-id=1:2c:c8:1b:3f:1:59 mac-address=2C:C8:1B:3F:01:59 server=ser_apts_mng add address=192.168.111.231 client-id=1:2c:c8:1b:3f:1:d7 mac-address=2C:C8:1B:3F:01:D7 server=ser_apts_mng add address=192.168.111.232 client-id=1:2c:c8:1b:3d:1:51 mac-address=2C:C8:1B:3D:01:51 server=ser_apts_mng add address=192.168.111.199 client-id=1:8:55:31:e3:91:8e mac-address=08:55:31:E3:91:8E server=ser_apts_mng add address=192.168.102.146 client-id=1:c0:74:ad:29:85:52 mac-address=C0:74:AD:29:85:52 server=ser_apts_phones add address=192.168.102.115 client-id=1:c:38:3e:32:fd:58 mac-address=0C:38:3E:32:FD:58 server=ser_apts_phones add address=192.168.111.212 client-id=1:2c:c8:1b:e2:45:e6 mac-address=2C:C8:1B:E2:45:E6 server=ser_apts_mng add address=192.168.102.178 client-id=1:c0:74:ad:34:93:56 mac-address=C0:74:AD:34:93:56 server=ser_apts_phones add address=192.168.111.215 client-id=1:2c:c8:1b:3c:fa:a5 mac-address=2C:C8:1B:3C:FA:A5 server=ser_apts_mng add address=192.168.102.107 client-id=1:c0:74:ad:34:9c:c8 mac-address=C0:74:AD:34:9C:C8 server=ser_apts_phones add address=192.168.103.241 client-id=1:c0:74:ad:29:85:56 mac-address=C0:74:AD:29:85:56 server=ser_apts_tv add address=192.168.111.197 client-id=1:2c:c8:1b:3c:ed:a3 mac-address=2C:C8:1B:3C:ED:A3 server=ser_apts_mng add address=192.168.11.93 client-id=1:44:a6:42:da:7d:f5 mac-address=44:A6:42:DA:7D:F5 server=dhcp1 add address=192.168.11.153 client-id=1:c:38:3e:3:5a:ac mac-address=0C:38:3E:03:5A:AC server=dhcp1 add address=192.168.11.131 client-id=1:c:11:5:13:f5:ba mac-address=0C:11:05:13:F5:BA server=dhcp1 add address=192.168.102.103 client-id=1:c0:74:ad:34:93:5e mac-address=C0:74:AD:34:93:5E server=ser_apts_phones add address=192.168.102.100 client-id=1:c0:74:ad:34:9c:a8 mac-address=C0:74:AD:34:9C:A8 server=ser_apts_phones add address=192.168.111.196 client-id=1:8:55:31:e3:8e:8b mac-address=08:55:31:E3:8E:8B server=ser_apts_mng add address=192.168.111.195 client-id=1:8:55:31:e3:8c:ac mac-address=08:55:31:E3:8C:AC server=ser_apts_mng add address=192.168.102.95 client-id=1:c0:74:ad:34:9d:ca mac-address=C0:74:AD:34:9D:CA server=ser_apts_phones add address=100.64.3.97 client-id=1:ac:4:b:72:7a:f6 mac-address=AC:04:0B:72:7A:F6 server=dhcp5 add address=192.168.111.209 client-id=1:8:55:31:e3:87:6c mac-address=08:55:31:E3:87:6C server=ser_apts_mng add address=192.168.102.104 client-id=1:c0:74:ad:34:9c:d1 mac-address=C0:74:AD:34:9C:D1 server=ser_apts_phones add address=192.168.11.247 client-id=1:0:68:eb:ca:5e:5a mac-address=00:68:EB:CA:5E:5A server=dhcp1 add address=192.168.11.176 client-id=1:78:8c:77:92:e1:7a mac-address=78:8C:77:92:E1:7A server=dhcp1 add address=100.64.34.250 client-id=1:54:f1:5f:13:1d:9a mac-address=54:F1:5F:13:1D:9A server=dhcp36 add address=192.168.111.203 client-id=1:8:55:31:e3:92:10 mac-address=08:55:31:E3:92:10 server=ser_apts_mng add address=192.168.102.89 client-id=1:c0:74:ad:34:93:55 mac-address=C0:74:AD:34:93:55 server=ser_apts_phones add address=192.168.102.88 client-id=1:c0:74:ad:34:9c:d3 mac-address=C0:74:AD:34:9C:D3 server=ser_apts_phones add address=192.168.102.87 client-id=1:c0:74:ad:34:9c:cb mac-address=C0:74:AD:34:9C:CB server=ser_apts_phones add address=192.168.111.194 client-id=1:8:55:31:e3:91:d1 mac-address=08:55:31:E3:91:D1 server=ser_apts_mng add address=100.64.0.7 client-id=1:8:55:31:e3:91:d1 mac-address=08:55:31:E3:91:D1 server=dhcp2 add address=192.168.102.85 client-id=1:c0:74:ad:34:92:8b mac-address=C0:74:AD:34:92:8B server=ser_apts_phones add address=192.168.102.84 client-id=1:c0:74:ad:34:93:5d mac-address=C0:74:AD:34:93:5D server=ser_apts_phones add address=100.64.36.154 client-id=1:24:18:c6:85:97:ac mac-address=24:18:C6:85:97:AC server=dhcp38 add address=192.168.111.193 client-id=1:2c:c8:1b:3c:f9:27 mac-address=2C:C8:1B:3C:F9:27 server=ser_apts_mng add address=192.168.102.83 client-id=1:c0:74:ad:34:9c:8b mac-address=C0:74:AD:34:9C:8B server=ser_apts_phones add address=100.64.23.81 client-id=1:54:f1:5f:13:20:16 mac-address=54:F1:5F:13:20:16 server=dhcp25 add address=192.168.11.237 client-id=1:c0:6:c3:70:42:ef mac-address=C0:06:C3:70:42:EF server=dhcp1 add address=100.64.3.52 client-id=1:50:33:8b:65:af:5b mac-address=50:33:8B:65:AF:5B server=dhcp5 add address=192.168.103.240 client-id=1:c0:74:ad:34:9d:cb mac-address=C0:74:AD:34:9D:CB server=ser_apts_tv add address=192.168.11.111 client-id=1:c:38:3e:2e:7f:89 mac-address=0C:38:3E:2E:7F:89 server=dhcp1 add address=100.64.18.162 client-id=1:80:47:86:84:b1:1e mac-address=80:47:86:84:B1:1E server=dhcp20 add address=192.168.103.238 client-id=1:c0:74:ad:34:91:c1 mac-address=C0:74:AD:34:91:C1 server=ser_apts_tv add address=100.64.31.201 client-id=1:4a:8b:ba:a8:5b:63 mac-address=4A:8B:BA:A8:5B:63 server=dhcp33 add address=100.64.9.213 client-id=1:74:a6:cd:d1:cc:7a mac-address=74:A6:CD:D1:CC:7A server=dhcp11 add address=192.168.102.80 client-id=1:c0:74:ad:29:85:55 mac-address=C0:74:AD:29:85:55 server=ser_apts_phones add address=192.168.102.180 client-id=1:80:47:86:16:92:a1 mac-address=80:47:86:16:92:A1 server=ser_apts_phones add address=100.64.6.83 client-id=1:64:7:f6:54:18:4e mac-address=64:07:F6:54:18:4E server=dhcp8 add address=100.64.15.69 client-id=1:80:8a:bd:1c:e0:c8 mac-address=80:8A:BD:1C:E0:C8 server=dhcp17 add address=100.64.15.60 client-id=1:a8:66:7f:5:89:3f mac-address=A8:66:7F:05:89:3F server=dhcp17 add address=100.64.24.224 client-id=1:80:47:86:60:9d:9c mac-address=80:47:86:60:9D:9C server=dhcp26 add address=100.64.35.222 client-id=1:54:3a:d6:51:c2:5c mac-address=54:3A:D6:51:C2:5C server=dhcp37 add address=100.64.15.87 client-id=1:54:3a:d6:52:48:e0 mac-address=54:3A:D6:52:48:E0 server=dhcp17 add address=100.64.34.244 client-id=1:aa:60:39:30:65:99 mac-address=AA:60:39:30:65:99 server=dhcp36 add address=192.168.11.90 client-id=1:ba:60:d:a:cc:15 mac-address=BA:60:0D:0A:CC:15 server=dhcp1 add address=100.64.17.161 client-id=1:7e:69:a6:c1:da:6c mac-address=7E:69:A6:C1:DA:6C server=dhcp19 add address=100.64.17.162 client-id=1:fa:15:c8:2f:c2:6e mac-address=FA:15:C8:2F:C2:6E server=dhcp19 add address=100.64.3.234 client-id=1:3e:f6:55:cd:c1:2f mac-address=3E:F6:55:CD:C1:2F server=dhcp5 add address=100.64.17.231 client-id=1:80:47:86:84:9c:6c mac-address=80:47:86:84:9C:6C server=dhcp19 add address=100.64.27.23 client-id=1:d6:10:f5:1d:40:d5 mac-address=D6:10:F5:1D:40:D5 server=dhcp29 add address=100.64.34.243 client-id=1:7e:f8:bf:58:f9:9e mac-address=7E:F8:BF:58:F9:9E server=dhcp36 add address=100.64.27.22 client-id=1:f4:8c:50:e7:64:9 mac-address=F4:8C:50:E7:64:09 server=dhcp29 add address=100.64.2.25 client-id=1:64:7:f6:54:18:4a mac-address=64:07:F6:54:18:4A server=dhcp4 add address=192.168.103.250 client-id=1:10:2b:41:23:b4:51 mac-address=10:2B:41:23:B4:51 server=ser_apts_tv add address=100.64.4.167 client-id=1:4e:51:bb:98:d4:75 mac-address=4E:51:BB:98:D4:75 server=dhcp6 add address=100.64.4.165 client-id=1:e:93:f2:67:d1:1b mac-address=0E:93:F2:67:D1:1B server=dhcp6 add address=100.64.4.168 client-id=1:da:b7:9d:b3:5a:9f mac-address=DA:B7:9D:B3:5A:9F server=dhcp6 add address=100.64.4.171 client-id=1:64:7:f6:54:4c:f2 mac-address=64:07:F6:54:4C:F2 server=dhcp6 add address=100.64.8.50 client-id=1:64:7:f6:54:4b:58 mac-address=64:07:F6:54:4B:58 server=dhcp10 add address=100.64.3.219 client-id=1:64:7:f6:54:ad:5c mac-address=64:07:F6:54:AD:5C server=dhcp5 add address=100.64.15.66 client-id=1:6e:61:7:61:75:9d mac-address=6E:61:07:61:75:9D server=dhcp17 add address=100.64.15.79 client-id=1:80:47:86:84:aa:c mac-address=80:47:86:84:AA:0C server=dhcp17 add address=100.64.15.59 client-id=1:b4:b7:42:a7:c3:94 mac-address=B4:B7:42:A7:C3:94 server=dhcp17 add address=100.64.15.67 client-id=1:6a:93:45:7f:1:cc mac-address=6A:93:45:7F:01:CC server=dhcp17 add address=100.64.31.202 client-id=1:9a:d3:84:6f:d7:4 mac-address=9A:D3:84:6F:D7:04 server=dhcp33 add address=192.168.103.237 client-id=1:e0:3:6b:bf:e:4f mac-address=E0:03:6B:BF:0E:4F server=ser_apts_tv add address=100.64.31.203 client-id=1:b4:cd:27:f3:a0:e5 mac-address=B4:CD:27:F3:A0:E5 server=dhcp33 add address=100.64.9.219 client-id=1:16:e9:81:d:1c:ad mac-address=16:E9:81:0D:1C:AD server=dhcp11 add address=100.64.18.156 client-id=1:18:3e:ef:ed:77:dd mac-address=18:3E:EF:ED:77:DD server=dhcp20 add address=100.64.0.163 client-id=1:bc:d0:74:84:94:42 mac-address=BC:D0:74:84:94:42 server=dhcp2 add address=100.64.18.154 client-id=1:fc:e2:6c:12:ea:1e mac-address=FC:E2:6C:12:EA:1E server=dhcp20 add address=100.64.17.225 client-id=1:c:dd:24:79:7c:b4 mac-address=0C:DD:24:79:7C:B4 server=dhcp19 add address=100.64.5.10 client-id=1:86:23:3c:55:e6:ae mac-address=86:23:3C:55:E6:AE server=dhcp7 add address=100.64.18.150 client-id=1:92:90:8d:cb:eb:3 mac-address=92:90:8D:CB:EB:03 server=dhcp20 add address=100.64.1.31 client-id=1:76:67:fd:25:4:b3 mac-address=76:67:FD:25:04:B3 server=dhcp3 add address=100.64.5.11 client-id=1:22:68:ed:a1:44:5 mac-address=22:68:ED:A1:44:05 server=dhcp7 add address=100.64.5.13 client-id=1:f8:c3:9e:13:d8:7e mac-address=F8:C3:9E:13:D8:7E server=dhcp7 add address=100.64.7.16 client-id=1:f2:aa:6:7e:3c:40 mac-address=F2:AA:06:7E:3C:40 server=dhcp9 add address=100.64.7.31 client-id=1:82:26:e8:d3:b6:c0 mac-address=82:26:E8:D3:B6:C0 server=dhcp9 add address=100.64.7.17 client-id=1:be:33:cd:3d:33:6 mac-address=BE:33:CD:3D:33:06 server=dhcp9 add address=100.64.7.28 client-id=1:8a:91:3d:c8:40:c1 mac-address=8A:91:3D:C8:40:C1 server=dhcp9 add address=100.64.5.15 client-id=1:6e:b8:c:d9:80:1d mac-address=6E:B8:0C:D9:80:1D server=dhcp7 add address=192.168.11.87 client-id=1:8e:bb:be:a6:a4:82 mac-address=8E:BB:BE:A6:A4:82 server=dhcp1 add address=192.168.11.244 client-id=1:0:17:7a:1e:1f:e mac-address=00:17:7A:1E:1F:0E server=dhcp1 add address=192.168.11.84 client-id=1:0:68:eb:ca:56:3e mac-address=00:68:EB:CA:56:3E server=dhcp1 add address=100.64.9.2 client-id=1:e:e4:e7:c0:86:11 mac-address=0E:E4:E7:C0:86:11 server=dhcp11 add address=100.64.9.4 client-id=1:1e:3c:7d:85:5:a3 mac-address=1E:3C:7D:85:05:A3 server=dhcp11 add address=100.64.9.226 client-id=1:80:47:86:61:f3:28 mac-address=80:47:86:61:F3:28 server=dhcp11 add address=100.64.12.100 client-id=1:10:f0:5:94:9:8f mac-address=10:F0:05:94:09:8F server=dhcp14 add address=100.64.31.205 client-id=1:b0:99:d7:40:9:a8 mac-address=B0:99:D7:40:09:A8 server=dhcp33 add address=100.64.36.224 client-id=1:70:9c:d1:9e:c9:1 mac-address=70:9C:D1:9E:C9:01 server=dhcp38 add address=100.64.8.236 mac-address=34:2F:BD:73:F8:53 server=dhcp10 add address=192.168.11.89 client-id=1:fa:10:6e:a4:91:bc mac-address=FA:10:6E:A4:91:BC server=dhcp1 add address=192.168.102.79 client-id=1:e0:3:6b:bf:c:cd mac-address=E0:03:6B:BF:0C:CD server=ser_apts_phones add address=100.64.9.239 client-id=1:62:d:b:df:b4:16 mac-address=62:0D:0B:DF:B4:16 server=dhcp11 add address=192.168.103.28 client-id=1:80:47:86:9f:8a:11 mac-address=80:47:86:9F:8A:11 server=ser_apts_tv add address=100.64.12.37 client-id=1:6e:f1:42:71:76:9e mac-address=6E:F1:42:71:76:9E server=dhcp14 add address=100.64.9.5 client-id=1:ea:3a:5c:56:f:4e mac-address=EA:3A:5C:56:0F:4E server=dhcp11 add address=100.64.8.51 client-id=1:54:3a:d6:52:48:d0 mac-address=54:3A:D6:52:48:D0 server=dhcp10 add address=100.64.37.47 client-id=1:a:f5:d4:26:1:b0 mac-address=0A:F5:D4:26:01:B0 server=dhcp39 add address=100.64.5.16 client-id=1:c6:6e:e7:48:bc:27 mac-address=C6:6E:E7:48:BC:27 server=dhcp7 add address=100.64.7.100 client-id=1:54:f1:5f:13:1d:9f mac-address=54:F1:5F:13:1D:9F server=dhcp9 add address=192.168.11.82 client-id=1:e6:92:38:dd:6:9a mac-address=E6:92:38:DD:06:9A server=dhcp1 add address=100.64.5.19 client-id=1:44:e5:17:99:90:21 mac-address=44:E5:17:99:90:21 server=dhcp7 add address=100.64.5.12 client-id=1:da:ae:b8:a2:8a:1 mac-address=DA:AE:B8:A2:8A:01 server=dhcp7 /ip dhcp-server network add address=100.64.0.0/24 gateway=100.64.0.1 add address=100.64.1.0/24 gateway=100.64.1.1 add address=100.64.2.0/24 gateway=100.64.2.1 add address=100.64.3.0/24 gateway=100.64.3.1 add address=100.64.4.0/24 gateway=100.64.4.1 add address=100.64.5.0/24 gateway=100.64.5.1 add address=100.64.6.0/24 gateway=100.64.6.1 add address=100.64.7.0/24 gateway=100.64.7.1 add address=100.64.8.0/24 gateway=100.64.8.1 add address=100.64.9.0/24 gateway=100.64.9.1 add address=100.64.10.0/24 gateway=100.64.10.1 add address=100.64.11.0/24 gateway=100.64.11.1 add address=100.64.12.0/24 gateway=100.64.12.1 add address=100.64.13.0/24 gateway=100.64.13.1 add address=100.64.14.0/24 gateway=100.64.14.1 add address=100.64.15.0/24 gateway=100.64.15.1 add address=100.64.16.0/24 gateway=100.64.16.1 add address=100.64.17.0/24 gateway=100.64.17.1 add address=100.64.18.0/24 gateway=100.64.18.1 add address=100.64.19.0/24 gateway=100.64.19.1 add address=100.64.20.0/24 gateway=100.64.20.1 add address=100.64.21.0/24 gateway=100.64.21.1 add address=100.64.22.0/24 gateway=100.64.22.1 add address=100.64.23.0/24 gateway=100.64.23.1 add address=100.64.24.0/24 gateway=100.64.24.1 add address=100.64.25.0/24 gateway=100.64.25.1 add address=100.64.26.0/24 gateway=100.64.26.1 add address=100.64.27.0/24 gateway=100.64.27.1 add address=100.64.28.0/24 gateway=100.64.28.1 add address=100.64.29.0/24 gateway=100.64.29.1 add address=100.64.30.0/24 gateway=100.64.30.1 add address=100.64.31.0/24 gateway=100.64.31.1 add address=100.64.32.0/24 gateway=100.64.32.1 add address=100.64.33.0/24 gateway=100.64.33.1 add address=100.64.34.0/24 gateway=100.64.34.1 add address=100.64.35.0/24 gateway=100.64.35.1 add address=100.64.36.0/24 gateway=100.64.36.1 add address=100.64.37.0/24 gateway=100.64.37.1 add address=100.64.38.0/24 gateway=100.64.38.1 add address=100.64.39.0/24 gateway=100.64.39.1 add address=100.64.40.0/24 gateway=100.64.40.1 add address=100.64.41.0/24 gateway=100.64.41.1 add address=100.64.42.0/25 gateway=100.64.42.1 add address=192.168.11.0/24 dns-server=192.168.11.254 gateway=192.168.11.254 add address=192.168.101.0/24 dns-server=192.168.101.1 gateway=192.168.101.1 add address=192.168.102.0/24 dns-server=192.168.102.1 gateway=192.168.102.1 add address=192.168.103.0/24 dns-server=192.168.103.1 gateway=192.168.103.1 add address=192.168.111.0/24 dns-server=192.168.111.1 gateway=192.168.111.1 /ip dns set allow-remote-requests=yes servers=8.8.8.8,8.8.4.4 /ip firewall address-list add address=valve-space-router.qld.valvenetworks.net comment="valve office" list=TrustedIPs add address=valve-koki-router.vic.valvenetworks.net comment="valve office" list=TrustedIPs add address=nms.valvenetworks.net comment=NMS list=TrustedIPs add address=oxidized.valvenetworks.net comment=Rancid list=TrustedIPs add address=syd1.smartolt.com comment=SmartOLT list=TrustedIPs add address=103.96.4.252 comment=valve-space-router.qld.valvenetworks.net list=TrustedIPs add address=110.175.218.210 comment="TrueTelco Office" list=TrustedIPs add address=123.243.205.175 comment="Daniel Watson Home" disabled=yes list=TrustedIPs add address=1.145.156.97 comment="Daniel Watson Home" disabled=yes list=TrustedIPs add address=office.fixtel.com.au comment="True Telco Office Address" list=TrustedIPs add address=office.truetelco.com.au comment="True Telco Office Address" list=TrustedIPs add address=office.corefibre.com.au comment="True Telco Office Address" list=TrustedIPs add address=zabbix.corefibre.com.au comment=zabbix.corefibre.com.au list=TrustedIPs add address=103.66.134.62 list=TrustedIPs add address=103.26.71.131 list=TrustedIPs add address=103.67.56.0/23 list=TrustedIPs add address=103.80.8.0/23 comment=office.fixtel.com.au list=TrustedIPs add address=acl.manisp.au list=TrustedIPs /ip firewall filter add action=accept chain=input comment="Allow ICMP in from anywhere" protocol=icmp add action=accept chain=input comment="Allow input from trusted ips" src-address-list=TrustedIPs add action=drop chain=input comment="Drop external using DNS inbound requests" connection-state=new dst-port=53 in-interface=ether7-backhaul protocol=udp add action=accept chain=input comment="Allow established & related in WAN" connection-state=established,related in-interface=ether7-backhaul add action=accept chain=input comment="Allow OSPF from MLB-BDR-R-1" in-interface=ether7-backhaul protocol=ospf src-address=10.211.200.1 add action=drop chain=input comment="Drop all in WAN" in-interface=ether7-backhaul add action=accept chain=forward comment="Allow established & related forwards" connection-state=established,related /ip firewall mangle add action=mark-connection chain=input in-interface=ether6-4g new-connection-mark=IN-4G passthrough=no add action=mark-routing chain=output connection-mark=IN-4G new-routing-mark=VIA-4G passthrough=yes /ip firewall nat add action=accept chain=srcnat comment="SmartOLT-VPN traffic excluded from NAT" out-interface=SmartOLT-VPN add action=masquerade chain=srcnat comment="NAT out WAN" out-interface-list=WAN add action=masquerade chain=srcnat comment="NAT to MT network for VPN" dst-address=192.168.111.0/24 src-address=192.168.33.0/24 add action=src-nat chain=srcnat comment="NAT out set IP for hotel admin traffic" src-address=192.168.11.0/24 to-addresses=103.96.4.24 add action=src-nat chain=srcnat comment="NAT out set IP for OLT traffic" src-address=10.11.104.0/24 to-addresses=103.96.4.24 add action=src-nat chain=srcnat comment="NAT out set IP for management traffic" src-address=192.168.111.0/24 to-addresses=103.96.4.24 add action=src-nat chain=srcnat comment="NAT out set IP for CSA WiFi traffic TEMP RULE FOR CGNAT. NEED TO CREATE FULL CGNAT RULES!!!!" disabled=yes src-address=100.64.0.0/16 to-addresses=103.96.4.24 add action=src-nat chain=srcnat comment="NAT out set IP for voice traffic" src-address=192.168.102.0/24 to-addresses=103.96.4.24 add action=src-nat chain=srcnat comment="NAT out set IP for InHouse Monitoring Setup" src-address=192.168.90.0/24 to-addresses=103.96.4.24 add action=src-nat chain=srcnat comment="NAT out set IP for TV traffic" src-address=192.168.103.0/24 to-addresses=103.96.4.24 add action=dst-nat chain=dstnat comment="winbox switch" dst-port=8292 protocol=tcp src-address-list=TrustedIPs to-addresses=192.168.111.248 to-ports=8291 add action=dst-nat chain=dstnat comment="SNMP switch" dst-port=163 protocol=udp src-address-list=TrustedIPs to-addresses=192.168.11.249 to-ports=161 add action=dst-nat chain=dstnat comment="InHouse Monitoring Setup 18006" dst-address=103.96.4.24 dst-port=18006 protocol=tcp to-addresses=192.168.90.2 to-ports=8006 add action=dst-nat chain=dstnat comment="InHouse Monitoring Setup 10050" dst-address=103.96.4.24 dst-port=10050 protocol=tcp to-addresses=192.168.90.2 to-ports=10050 add action=dst-nat chain=dstnat comment="winbox to apt101 studio ap" dst-port=8293 protocol=tcp src-address-list=TrustedIPs to-addresses=192.168.111.253 to-ports=8291 add action=dst-nat chain=dstnat comment="main switch winbox" dst-port=8294 protocol=tcp src-address-list=TrustedIPs to-addresses=192.168.11.249 to-ports=8291 add action=dst-nat chain=dstnat comment="main switch SSH" dst-port=2222 protocol=tcp src-address-list=TrustedIPs to-addresses=192.168.11.249 to-ports=22 add action=dst-nat chain=dstnat comment="main switch winbox" dst-port=8296 protocol=tcp src-address-list=TrustedIPs to-addresses=192.168.111.226 to-ports=8291 add action=dst-nat chain=dstnat comment="main switch winbox" dst-port=8297 protocol=tcp src-address-list=TrustedIPs to-addresses=192.168.111.231 to-ports=8291 add action=dst-nat chain=dstnat comment="SSH to OLT" disabled=yes dst-address=103.96.4.24 dst-port=2222 protocol=tcp src-address-list=TrustedIPs to-addresses=10.11.104.2 to-ports=22 add action=dst-nat chain=dstnat comment="Telnet to OLT" disabled=yes dst-address=103.96.4.24 dst-port=2223 log-prefix=TELOLT protocol=tcp src-address-list=TrustedIPs to-addresses=10.11.104.2 to-ports=23 add action=dst-nat chain=dstnat comment="SNMP to OLT" disabled=yes dst-address=103.96.4.24 dst-port=2161 protocol=udp src-address-list=TrustedIPs to-addresses=10.11.104.2 to-ports=161 add action=dst-nat chain=dstnat comment=NVR dst-address=103.96.4.24 dst-port=37777-37778 protocol=tcp to-addresses=192.168.11.240 to-ports=37777-37778 add action=dst-nat chain=dstnat comment=PBX dst-address=103.96.4.24 dst-port=5060-5080 protocol=udp to-addresses=192.168.102.5 to-ports=5060-5080 add action=dst-nat chain=dstnat comment="For gate remote opening" dst-address=103.96.4.24 dst-port=5004 protocol=udp to-addresses=192.168.102.248 to-ports=5004 add action=dst-nat chain=dstnat comment="Grandstream Gate controller" dst-address=103.96.4.24 dst-port=10000-20000 protocol=udp to-addresses=192.168.102.5 to-ports=10000-20000 add action=dst-nat chain=dstnat comment="Grandstream Gate controller" dst-address=103.96.4.24 dst-port=10000-20000 protocol=tcp to-addresses=192.168.102.5 to-ports=10000-20000 add action=src-nat chain=srcnat comment="SRCNAT Public IP for ICMP for CGNAT" protocol=icmp src-address=100.64.0.0/16 to-addresses=103.96.4.29 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.0.0/24" protocol=tcp src-address=100.64.0.0/24 to-addresses=103.96.4.29 to-ports=10000-10999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.0.0/24" protocol=udp src-address=100.64.0.0/24 to-addresses=103.96.4.29 to-ports=10000-10999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.1.0/24" protocol=tcp src-address=100.64.1.0/24 to-addresses=103.96.4.29 to-ports=11000-11999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.1.0/24" protocol=udp src-address=100.64.1.0/24 to-addresses=103.96.4.29 to-ports=11000-11999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.2.0/24" protocol=tcp src-address=100.64.2.0/24 to-addresses=103.96.4.29 to-ports=12000-12999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.2.0/24" protocol=udp src-address=100.64.2.0/24 to-addresses=103.96.4.29 to-ports=12000-12999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.3.0/24" protocol=tcp src-address=100.64.3.0/24 to-addresses=103.96.4.29 to-ports=13000-13999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.3.0/24" protocol=udp src-address=100.64.3.0/24 to-addresses=103.96.4.29 to-ports=13000-13999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.4.0/24" protocol=tcp src-address=100.64.4.0/24 to-addresses=103.96.4.29 to-ports=14000-14999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.4.0/24" protocol=udp src-address=100.64.4.0/24 to-addresses=103.96.4.29 to-ports=14000-14999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.5.0/24" protocol=tcp src-address=100.64.5.0/24 to-addresses=103.96.4.29 to-ports=15000-15999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.5.0/24" protocol=udp src-address=100.64.5.0/24 to-addresses=103.96.4.29 to-ports=15000-15999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.6.0/24" protocol=tcp src-address=100.64.6.0/24 to-addresses=103.96.4.29 to-ports=16000-16999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.6.0/24" protocol=udp src-address=100.64.6.0/24 to-addresses=103.96.4.29 to-ports=16000-16999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.7.0/24" protocol=tcp src-address=100.64.7.0/24 to-addresses=103.96.4.29 to-ports=17000-17999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.7.0/24" protocol=udp src-address=100.64.7.0/24 to-addresses=103.96.4.29 to-ports=17000-17999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.8.0/24" protocol=tcp src-address=100.64.8.0/24 to-addresses=103.96.4.29 to-ports=18000-18999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.8.0/24" protocol=udp src-address=100.64.8.0/24 to-addresses=103.96.4.29 to-ports=18000-18999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.9.0/24" protocol=tcp src-address=100.64.9.0/24 to-addresses=103.96.4.29 to-ports=19000-19999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.9.0/24" protocol=udp src-address=100.64.9.0/24 to-addresses=103.96.4.29 to-ports=19000-19999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.10.0/24" protocol=tcp src-address=100.64.10.0/24 to-addresses=103.96.4.29 to-ports=20000-20999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.10.0/24" protocol=udp src-address=100.64.10.0/24 to-addresses=103.96.4.29 to-ports=20000-20999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.11.0/24" protocol=tcp src-address=100.64.11.0/24 to-addresses=103.96.4.29 to-ports=21000-21999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.11.0/24" protocol=udp src-address=100.64.11.0/24 to-addresses=103.96.4.29 to-ports=21000-21999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.12.0/24" protocol=tcp src-address=100.64.12.0/24 to-addresses=103.96.4.29 to-ports=22000-22999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.12.0/24" protocol=udp src-address=100.64.12.0/24 to-addresses=103.96.4.29 to-ports=22000-22999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.13.0/24" protocol=tcp src-address=100.64.13.0/24 to-addresses=103.96.4.29 to-ports=23000-23999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.13.0/24" protocol=udp src-address=100.64.13.0/24 to-addresses=103.96.4.29 to-ports=23000-23999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.14.0/24" protocol=tcp src-address=100.64.14.0/24 to-addresses=103.96.4.29 to-ports=24000-24999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.14.0/24" protocol=udp src-address=100.64.14.0/24 to-addresses=103.96.4.29 to-ports=24000-24999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.15.0/24" protocol=tcp src-address=100.64.15.0/24 to-addresses=103.96.4.29 to-ports=25000-25999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.15.0/24" protocol=udp src-address=100.64.15.0/24 to-addresses=103.96.4.29 to-ports=25000-25999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.16.0/24" protocol=tcp src-address=100.64.16.0/24 to-addresses=103.96.4.29 to-ports=26000-26999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.16.0/24" protocol=udp src-address=100.64.16.0/24 to-addresses=103.96.4.29 to-ports=26000-26999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.17.0/24" protocol=tcp src-address=100.64.17.0/24 to-addresses=103.96.4.29 to-ports=27000-27999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.17.0/24" protocol=udp src-address=100.64.17.0/24 to-addresses=103.96.4.29 to-ports=27000-27999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.18.0/24" protocol=tcp src-address=100.64.18.0/24 to-addresses=103.96.4.29 to-ports=28000-28999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.18.0/24" protocol=udp src-address=100.64.18.0/24 to-addresses=103.96.4.29 to-ports=28000-28999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.19.0/24" protocol=tcp src-address=100.64.19.0/24 to-addresses=103.96.4.29 to-ports=29000-29999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.19.0/24" protocol=udp src-address=100.64.19.0/24 to-addresses=103.96.4.29 to-ports=29000-29999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.20.0/24" protocol=tcp src-address=100.64.20.0/24 to-addresses=103.96.4.29 to-ports=30000-30999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.20.0/24" protocol=udp src-address=100.64.20.0/24 to-addresses=103.96.4.29 to-ports=30000-30999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.21.0/24" protocol=tcp src-address=100.64.21.0/24 to-addresses=103.96.4.29 to-ports=31000-31999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.21.0/24" protocol=udp src-address=100.64.21.0/24 to-addresses=103.96.4.29 to-ports=31000-31999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.22.0/24" protocol=tcp src-address=100.64.22.0/24 to-addresses=103.96.4.29 to-ports=32000-32999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.22.0/24" protocol=udp src-address=100.64.22.0/24 to-addresses=103.96.4.29 to-ports=32000-32999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.23.0/24" protocol=tcp src-address=100.64.23.0/24 to-addresses=103.96.4.29 to-ports=33000-33999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.23.0/24" protocol=udp src-address=100.64.23.0/24 to-addresses=103.96.4.29 to-ports=33000-33999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.24.0/24" protocol=tcp src-address=100.64.24.0/24 to-addresses=103.96.4.29 to-ports=34000-34999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.24.0/24" protocol=udp src-address=100.64.24.0/24 to-addresses=103.96.4.29 to-ports=34000-34999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.25.0/24" protocol=tcp src-address=100.64.25.0/24 to-addresses=103.96.4.29 to-ports=35000-35999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.25.0/24" protocol=udp src-address=100.64.25.0/24 to-addresses=103.96.4.29 to-ports=35000-35999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.26.0/24" protocol=tcp src-address=100.64.26.0/24 to-addresses=103.96.4.29 to-ports=36000-36999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.26.0/24" protocol=udp src-address=100.64.26.0/24 to-addresses=103.96.4.29 to-ports=36000-36999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.27.0/24" protocol=tcp src-address=100.64.27.0/24 to-addresses=103.96.4.29 to-ports=37000-37999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.27.0/24" protocol=udp src-address=100.64.27.0/24 to-addresses=103.96.4.29 to-ports=37000-37999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.28.0/24" protocol=tcp src-address=100.64.28.0/24 to-addresses=103.96.4.29 to-ports=38000-38999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.28.0/24" protocol=udp src-address=100.64.28.0/24 to-addresses=103.96.4.29 to-ports=38000-38999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.29.0/24" protocol=tcp src-address=100.64.29.0/24 to-addresses=103.96.4.29 to-ports=39000-39999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.29.0/24" protocol=udp src-address=100.64.29.0/24 to-addresses=103.96.4.29 to-ports=39000-39999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.30.0/24" protocol=tcp src-address=100.64.30.0/24 to-addresses=103.96.4.29 to-ports=40000-40999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.30.0/24" protocol=udp src-address=100.64.30.0/24 to-addresses=103.96.4.29 to-ports=40000-40999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.31.0/24" protocol=tcp src-address=100.64.31.0/24 to-addresses=103.96.4.29 to-ports=41000-41999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.31.0/24" protocol=udp src-address=100.64.31.0/24 to-addresses=103.96.4.29 to-ports=41000-41999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.32.0/24" protocol=tcp src-address=100.64.32.0/24 to-addresses=103.96.4.29 to-ports=42000-42999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.32.0/24" protocol=udp src-address=100.64.32.0/24 to-addresses=103.96.4.29 to-ports=42000-42999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.33.0/24" protocol=tcp src-address=100.64.33.0/24 to-addresses=103.96.4.29 to-ports=43000-43999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.33.0/24" protocol=udp src-address=100.64.33.0/24 to-addresses=103.96.4.29 to-ports=43000-43999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.34.0/24" protocol=tcp src-address=100.64.34.0/24 to-addresses=103.96.4.29 to-ports=44000-44999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.34.0/24" protocol=udp src-address=100.64.34.0/24 to-addresses=103.96.4.29 to-ports=44000-44999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.35.0/24" protocol=tcp src-address=100.64.35.0/24 to-addresses=103.96.4.29 to-ports=45000-45999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.35.0/24" protocol=udp src-address=100.64.35.0/24 to-addresses=103.96.4.29 to-ports=45000-45999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.36.0/24" protocol=tcp src-address=100.64.36.0/24 to-addresses=103.96.4.29 to-ports=46000-46999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.36.0/24" protocol=udp src-address=100.64.36.0/24 to-addresses=103.96.4.29 to-ports=46000-46999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.37.0/24" protocol=tcp src-address=100.64.37.0/24 to-addresses=103.96.4.29 to-ports=47000-47999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.37.0/24" protocol=udp src-address=100.64.37.0/24 to-addresses=103.96.4.29 to-ports=47000-47999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.38.0/24" protocol=tcp src-address=100.64.38.0/24 to-addresses=103.96.4.29 to-ports=48000-48999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.38.0/24" protocol=udp src-address=100.64.38.0/24 to-addresses=103.96.4.29 to-ports=48000-48999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.39.0/24" protocol=tcp src-address=100.64.39.0/24 to-addresses=103.96.4.29 to-ports=49000-49999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.39.0/24" protocol=udp src-address=100.64.39.0/24 to-addresses=103.96.4.29 to-ports=49000-49999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.40.0/24" protocol=tcp src-address=100.64.40.0/24 to-addresses=103.96.4.29 to-ports=50000-50999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.40.0/24" protocol=udp src-address=100.64.40.0/24 to-addresses=103.96.4.29 to-ports=50000-50999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.41.0/24" protocol=tcp src-address=100.64.41.0/24 to-addresses=103.96.4.29 to-ports=51000-51999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.41.0/24" protocol=udp src-address=100.64.41.0/24 to-addresses=103.96.4.29 to-ports=51000-51999 add action=src-nat chain=srcnat comment="CGNAT - TCP - 100.64.42.0/24" protocol=tcp src-address=100.64.42.0/24 to-addresses=103.96.4.29 to-ports=52000-52999 add action=src-nat chain=srcnat comment="CGNAT - UDP - 100.64.42.0/24" protocol=udp src-address=100.64.42.0/24 to-addresses=103.96.4.29 to-ports=52000-52999 /ip firewall service-port set sip disabled=yes /ip route add distance=10 gateway=192.168.88.1 routing-mark=VIA-4G add comment="Main default route" distance=1 gateway=10.211.200.1 pref-src=103.96.4.24 /ip service set telnet disabled=yes set ftp address=10.11.104.0/24 disabled=yes set www disabled=yes set api disabled=yes set api-ssl disabled=yes /ppp secret add name=corefibretech password="Lfh2ldh\$hg" profile=VoIPVPN service=l2tp add local-address=192.168.33.1 name=valve password=heineken profile=default-encryption remote-address=192.168.33.2 service=l2tp add name=ttadmin password="Tru3t3lc0@\$" profile=VoIPVPN service=l2tp /radius add address=103.16.129.23 comment=radius-1.intervisp.net.au secret=cfbCXBV!!kk! service=login src-address=103.96.4.24 add address=43.229.61.238 comment=radius-2.intervisp.net.au secret=cfbCXBV!!kk! service=login src-address=103.96.4.24 /routing filter add action=discard chain=ospf-in comment="Discard all inputs from upstream" prefix=0.0.0.0/0 prefix-length=0-32 add action=accept chain=ospf-out comment="Allow Export of Valve IP address" prefix=103.96.4.0/22 prefix-length=22-32 add action=accept chain=ospf-out comment="Allow Export of the Router ID" prefix=10.255.255.67 prefix-length=32 add action=discard chain=ospf-out comment="Discard all inputs from upstream" prefix=100.64.0.0/16 prefix-length=16-32 add action=discard chain=ospf-out comment="Discard all inputs from upstream" prefix=10.0.0.0/8 prefix-length=8-32 add action=discard chain=ospf-out comment="Discard all inputs from upstream" prefix=192.168.0.0/16 prefix-length=16-32 add action=discard chain=ospf-out comment="Discard all inputs from upstream" prefix=172.16.0.0/12 prefix-length=12-32 add action=discard chain=ospf-out comment="Disable all other IP address" prefix=0.0.0.0/0 prefix-length=0-32 /routing ospf interface add interface=ether7-backhaul network-type=point-to-point /routing ospf network add area=backbone network=10.211.200.0/30 /snmp set contact=noc@corefibre.com.au enabled=yes location=Richmond,Victoria,Australia trap-community=CFNCOM trap-version=2 /system clock set time-zone-name=Australia/Melbourne /system identity set name=251-SWANST-R1.CFN.VIC.intervisp.net /system logging add action=valve disabled=yes topics=ovpn /system ntp client set enabled=yes server-dns-names=au.pool.ntp.org /system package update set channel=long-term /tool romon set enabled=yes secrets=CFN /user aaa set use-radius=yes