# Generado por:
# RouterOSv5.x
:log info "Unsolclic for 4327-BellmuntSud going to be executed."
#
# Configuration for RouterOSv5.x
# Dispositivo: 4327-BellmuntSud
#
# Métodos para subir/ejecutar este script:
# 1.-Como un script. Sube este texto como un script bien con:
# a.Winbox (con Linux es necesario wine)
# b.Terminal (telnet, ssh...)
# Entonces ejecuta el script con:
# > /system script run nombre_del_script
# 2.-Fichero importado:
# Guarda este texto en un fichero, luego súbelo al router
# utilizando ftp con un nombre como "script_name.rsc".
# (ten en cuenta que la extensión ".rsc" es necesaria)
# Ejecuta el fichero importado utilizando el comando:
# > /import nombre_del_script
# 3.-Telnet copiar&pegar:
# Abre una sesión de terminal, y copia y pega el texto
# directamente en la ventana de la terminal.
#
# Notas:
# -routing-test package is required if you use RouterOSv2.9 , be sure you have it enabled at system packages
# -las wlans deberían activarse de forma manual. Asegúrate de que están establecidas en la antena correcta (a/b)
# de acuerdo con cómo has conectado el cable a la miniPCI. Mantén la
# potencia al mínimo posible y comprueba el canal.
# -El script no reinicia el router. Quizá tengas que hacerlo de forma manual
# -Debes tener acceso de escritura al router
# -Se recomienda el método de acceso por MAC (winbox, telnet a la MAC...)
# (el script reconfigura algunas direcciones IP, así que se puede perder la comunicación)
# -No se realizan cambios en las contraseñas de usuario del dispositivo
# -Se creará una cuenta de invitado de Sólo Lectura para permitir el acceso de invitados
# al router sin riesgo de daño pero con capacidad para ver la configuración.
# -Asegúrate de que todos los paquetes están activados.
# -No ejecutes el script desde telnet si estás conectado mediante una conexión IP en
# la interfaz: Esta interfaz será desctruida durante la ejecución del script.
#
/ system identity set name=BellmuntSud
#
# DNS (client & server cache) zone: 8152
/ip dns set servers=10.138.0.2,10.138.160.98 allow-remote-requests=yes
:delay 1
#
# NTP (client & server cache) zone: 8152
/system ntp client set enabled=yes mode=unicast primary-ntp=10.138.0.2
:delay 1
#
# Servidor de ancho de banda
/ tool bandwidth-server set enabled=yes authenticate=no allocate-udp-ports-from=2000
#
# SNMP
/snmp set contact="guifi@guifi.net" enabled=yes location="SPTStDeBellmunt"
#
# Guest user
/user
:foreach i in [find group=read] do={/user remove $i;}
add name="guest" group=read address=0.0.0.0/0 comment="" disabled=no
#
# Gráficas
/tool graphing interface add
# Eliminar el puente (bridge) actual wLan/Lan si existe
:foreach i in [/interface bridge find name=wLan/Lan] \
do={:foreach i in [/interface bridge port find bridge=wLan/Lan] \
do={/interface bridge port remove $i; \
:foreach i in [/ip address find interface=wLan/Lan] \
do={/ip address remove $i;};};
/interface bridge remove $i;}
# Crear puente (bridge) principal entre wlan1 y ether1
/ interface bridge
add name="wLan/Lan"
/ interface bridge port
add interface=ether1 bridge=wLan/Lan
add interface=wlan1 bridge=wLan/Lan
:delay 1
#
# Radio#: 0 BellmuntSudAP
/interface wireless set wlan1 name="wlan1" \
radio-name="BellmuntSudAP" mode=ap-bridge ssid="guifi.net-BellmuntSudAP" \
band="2ghz-b" channel-width=20mhz \
frequency-mode=regulatory-domain country=spain antenna-gain=14 \
frequency=2427 \
dfs-mode=none \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wLan/Lan
/ip address
:foreach i in [find address="10.138.192.65/27"] do={remove $i}
/ ip address add address=10.138.192.65/27 network=10.138.192.64 broadcast=10.138.192.95 interface=wLan/Lan disabled=no
/ routing bgp network
:foreach i in [/routing bgp network find network=10.138.192.64/27] do={/routing bgp network remove $i;}
add network=10.138.192.64/27 disabled=no
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wLan/Lan] do={/routing ospf interface remove $i;}
add interface=wLan/Lan
/ routing ospf network
:foreach i in [/routing ospf network find network=10.138.192.64/27] do={/routing ospf network remove $i;}
add network=10.138.192.64/27 area=backbone disabled=no
:delay 1
#
# DHCP
:foreach i in [/ip pool find name=dhcp-wLan/Lan] do={/ip pool remove $i;}
/ip pool add name=dhcp-wLan/Lan ranges=10.138.192.71-10.138.192.94
:foreach i in [/ip dhcp-server find name=dhcp-wLan/Lan] do={/ip dhcp-server remove $i;}
/ip dhcp-server add name=dhcp-wLan/Lan interface=wLan/Lan address-pool=dhcp-wLan/Lan disabled=no
:foreach i in [/ip dhcp-server network find address="10.138.192.64/27"] do={/ip dhcp-server network remove $i;}
/ip dhcp-server network add address=10.138.192.64/27 gateway=10.138.192.65 domain=guifi.net comment=dhcp-wLan/Lan
/ip dhcp-server lease
:foreach i in [find comment=""] do={remove $i;}
:delay 1
add address=10.138.192.66 mac-address=00:1D:7E:55:B0:14 client-id=SPDTElSerratRadio1 server=dhcp-wLan/Lan
add address=10.138.192.67 mac-address=00:1D:7E:43:C1:25 client-id=SPDTRVaqueRadio1 server=dhcp-wLan/Lan
add address=10.138.192.68 mac-address=00:1C:10:BF:86:8F client-id=SPDTMateoRadio1 server=dhcp-wLan/Lan
add address=10.138.192.69 mac-address=00:27:22:14:0E:1C client-id=SPDTEnekoRadio1 server=dhcp-wLan/Lan
add address=10.138.192.70 mac-address=ff:ff:ff:ff:ff:ff client-id=SPDTOrdeigRadio1 server=dhcp-wLan/Lan
add address=10.138.192.71 mac-address=ff:ff:ff:ff:ff:ff client-id=SPDTVinyolasRadio1 server=dhcp-wLan/Lan
add address=10.138.192.72 mac-address=00:18:F8:F1:9C:31 client-id=SPDTvinyetaRadio2 server=dhcp-wLan/Lan
add address=10.138.192.73 mac-address=00:1D:7E:C8:CA:40 client-id=SPDTElSerratIIRadio1 server=dhcp-wLan/Lan
add address=10.138.192.74 mac-address=ff:ff:ff:ff:ff:ff client-id=BellmuntST4 server=dhcp-wLan/Lan
add address=10.138.192.75 mac-address=ff:ff:ff:ff:ff:ff client-id=BellmuntST5 server=dhcp-wLan/Lan
add address=10.138.192.76 mac-address=00:1D:7E:C6:BA:FF client-id=SPDTVigasRd1 server=dhcp-wLan/Lan
add address=10.138.192.77 mac-address=99:99:99:99:99:9A client-id=SPDTJosepFCRd1 server=dhcp-wLan/Lan
add address=10.138.192.78 mac-address=68:7F:74:0A:4F:28 client-id=SPDTSalviRd1 server=dhcp-wLan/Lan
add address=10.138.192.79 mac-address=00:15:6D:DB:CD:C4 client-id=SPDTARicartRd1 server=dhcp-wLan/Lan
add address=10.138.192.80 mac-address=00:15:6D:AD:D7:90 client-id=SPDTNuriaMRd1 server=dhcp-wLan/Lan
add address=10.138.192.81 mac-address=00:15:6D:E4:7E:D2 client-id=SPTTorneriaSRd1 server=dhcp-wLan/Lan
add address=10.138.192.83 mac-address=00:16:01:84:56:6D client-id=SPDTJMasRd1 server=dhcp-wLan/Lan
add address=10.138.192.84 mac-address=00:14:BF:EF:35:0B client-id=SPDTTdrRd1 server=dhcp-wLan/Lan
add address=10.138.192.85 mac-address=00:15:6D:F8:36:EC client-id=SPDTMartaPepRd2 server=dhcp-wLan/Lan
add address=10.138.192.86 mac-address=00:25:9C:C4:5E:3C client-id=SPDTIsernRd1 server=dhcp-wLan/Lan
add address=10.138.192.87 mac-address=00:25:9C:D7:8C:11 client-id=SPDTJordiFRd1 server=dhcp-wLan/Lan
add address=10.138.192.88 mac-address=00:15:6D:AE:D7:4E client-id=SPTPigrauOlgaRd1 server=dhcp-wLan/Lan
#
:delay 1
#
# Radio#: 1 BellmuntTorello
/interface wireless set wlan2 name="wlan2" \
radio-name="BellmuntTorello" mode=ap-bridge ssid="guifi.net-BellmuntTorello" \
band="5ghz-a" channel-width=20mhz \
frequency-mode=regulatory-domain country=spain antenna-gain=24 \
frequency=5700 \
dfs-mode=none \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wds/p2p
# Eliminar todas las interfaces wds existentes
:foreach i in [/interface wireless wds find master-interface=wlan2] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
/ interface wireless wds
add name="wds_TorelloDipSudBellmunt" master-interface=wlan2 wds-address=00:0B:6B:57:EF:4E disabled=no
/ ip address add address=172.25.0.17/30 network=172.25.0.16 broadcast=172.25.0.19 interface=wds_TorelloDipSudBellmunt disabled=no comment="wds_TorelloDipSudBellmunt"
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wds_TorelloDipSudBellmunt] do={/routing ospf interface remove $i;}
add interface=wds_TorelloDipSudBellmunt
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.0.16/30] do={/routing ospf network remove $i;}
add network=172.25.0.16/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=TorelloDipSudBellmunt] do={/routing bgp peer remove $i;}
add name="TorelloDipSudBellmunt" instance=default remote-address=172.25.0.18 remote-as=4356 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
#
:delay 1
#
# Radio#: 2 BllmntAP3wdspuigcubell
/interface wireless set wlan3 name="wlan3" \
radio-name="BllmntAP3wdspuigcubell" mode=ap-bridge ssid="guifi.net-BllmntAP3wdspuigcubell" \
band="5ghz-a" channel-width=20mhz \
frequency-mode=regulatory-domain country=spain antenna-gain=5 \
frequency=5500 \
dfs-mode=none \
antenna-mode=ant-a wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wds/p2p
# Eliminar todas las interfaces wds existentes
:foreach i in [/interface wireless wds find master-interface=wlan3] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
/ interface wireless wds
add name="wds_VidraPuigCubellRd1" master-interface=wlan3 wds-address=00:0C:42:61:AB:AE disabled=no
/ ip address add address=172.25.224.41/30 network=172.25.224.40 broadcast=172.25.224.43 interface=wds_VidraPuigCubellRd1 disabled=no comment="wds_VidraPuigCubellRd1"
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wds_VidraPuigCubellRd1] do={/routing ospf interface remove $i;}
add interface=wds_VidraPuigCubellRd1
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.224.40/30] do={/routing ospf network remove $i;}
add network=172.25.224.40/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=VidraPuigCubellRd1] do={/routing bgp peer remove $i;}
add name="VidraPuigCubellRd1" instance=default remote-address=172.25.224.42 remote-as=19098 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
#
:delay 1
#
# Routed device
#
# Otra conexiones cableadas
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=ether2] do={/routing ospf interface remove $i;}
add interface=ether2
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.224.0/30] do={/routing ospf network remove $i;}
add network=172.25.224.0/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=BellmuntNord] do={/routing bgp peer remove $i;}
add name="BellmuntNord" instance=default remote-address=172.25.224.1 remote-as=4326 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
:foreach i in [/ip address find address="172.25.224.2/30"] do={/ip address remove $i;}
:delay 1
/ ip address add address=172.25.224.2/30 network=172.25.224.0 broadcast=172.25.224.3 interface=ether2 disabled=no comment="BellmuntNord"
#
# NAT de direcciones internas
:foreach i in [/ip firewall nat find src-address="172.16.0.0/12"] do={/ip firewall nat remove $i;}
:foreach i in [/ip firewall nat find src-address="192.168.0.0/16"] do={/ip firewall nat remove $i;}
/ip firewall nat
add chain=srcnat src-address="192.168.0.0/16" dst-address=!192.168.0.0/16 action=src-nat to-addresses=10.138.192.65 comment="" disabled=no
add chain=srcnat src-address="172.16.0.0/12" dst-address=!172.16.0.0/12 protocol=!ospf action=src-nat to-addresses=10.138.192.65 comment="" disabled=no
#
# Enrutamiento BMP
# BGP & OSPF Filters
:foreach i in [/routing filter find chain=ospf-in] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ospf-out] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ebgp-in] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ebgp-out] do={/routing filter remove $i;}
/ routing filter
add action=discard chain=ebgp-in comment="1. Discard insert non 10.x routes from BGP peer" disabled=no invert-match=no prefix=!10.0.0.0/8 prefix-length=!8-32
add action=discard chain=ebgp-out comment="2. Discard send non 10.x routes to BGP peer" disabled=no invert-match=no prefix=!10.0.0.0/8 prefix-length=!8-32
add action=accept chain=ospf-in comment="3. Accept insert 10.x routes from OSPF neighbor" disabled=no invert-match=no prefix=10.0.0.0/8 prefix-length=8-32
add action=accept chain=ospf-in comment="4. Accept insert 172.x routes from OSPF neighbor" disabled=no invert-match=no prefix=172.16.0.0/12 prefix-length=8-32
add action=discard chain=ospf-in comment="5. Discard insert non 10.x and 172.x from OSPF neighbor" disabled=no invert-match=no
add action=accept chain=ospf-out comment="6. Allow send 10.x routes to OSPF neighbor" disabled=no invert-match=no prefix=10.0.0.0/8 prefix-length=8-32
add action=accept chain=ospf-out comment="7. Allow send 172.x routes to OSPF neighbor" disabled=no invert-match=no prefix=172.16.0.0/12 prefix-length=8-32
add action=discard chain=ospf-out comment="8. Discard send non 10.x and 172.x to OSPF neighbor" disabled=no invert-match=no
#
# instancia BGP
/ routing bgp instance
set default name="default" as=4327 router-id=10.138.192.65 \
redistribute-connected=no redistribute-static=no redistribute-rip=no \
redistribute-ospf=yes redistribute-other-bgp=yes out-filter=ebgp-out \
client-to-client-reflection=yes comment="" disabled=no
#
# Enrutamiento OSPF
/routing ospf instance set default name=default router-id=10.138.192.65 comment="" disabled=no distribute-default=never \
redistribute-bgp=as-type-1 redistribute-connected=no redistribute-other-ospf=no redistribute-rip=no redistribute-static=no in-filter=ospf-in out-filter=ospf-out
#
:log info "Unsolclic for 4327-BellmuntSud executed."
/