# Generated for:
# RouterOSv4.7+
:log info "Unsolclic for 2407-GurbCEPAST3 going to be executed."
#
# Configuration for RouterOS 4.7 and newer 4.x
# Device: 2407-GurbCEPAST3
#
# Methods to upload/execute this script:
# 1.-As a script. Upload this output as a script either with:
#     a.Winbox (with Linux, wine required)
#     b.Terminal (telnet, ssh...)
#    Then execute the script with:
#      > /system script run script_name
# 2.-Imported file:
#     Save this output to a file, then upload it to the router
#     using ftp using a name like "script_name.rsc".
#     (note that extension ".rsc" is required)
#     Run the import file using the command:
#      > /import script_name
# 3.-Telnet cut&paste:
#     Open a terminal session, and cut&paste this output
#     directly on the terminal input.
#
# Notes:
# -routing-test package is required if you use RouterOSv2.9 , be sure you have it enabled at system packages
# -wlans should be enabled manually, be sure to set the correct antenna (a or b)
#   according in how did you connect the cable to the miniPCI. Keep the
#   power at the minimum possible and check the channel.
# -The script doesn't reset the router, you might have to do it manually
# -You must have write access to the router
# -MAC access (winbox, MAC telnet...) method is recommended
#   (the script reconfigures some IP addresses, so communication can be lost)
# -No changes are done in user passwords on the device
# -A Read Only guest account with no password will be created to allow guest access
#   to the router with no danger of damage but able to see the config.
# -Be sure that all packages are activated.
# -Don't run the script from telnet and being connected through an IP connection at
#   the wLan/Lan interface: This interface will be destroyed during the script.
#
/ system identity set name=GurbCEPAST3
#
# DNS (client & server cache) zone: 2451
/ip dns set servers=10.138.0.2,10.138.0.2 allow-remote-requests=yes
:delay 1
#
# NTP (client & server cache) zone: 2451
/system ntp client set enabled=yes mode=unicast primary-ntp=10.138.0.2 secondary-ntp=10.138.0.2
:delay 1
#
# Bandwidth-server
/ tool bandwidth-server set enabled=yes authenticate=no allocate-udp-ports-from=2000
#
# SNMP
/snmp set contact="guifi@guifi.net" enabled=yes location="GurbCEPA"
#
# Guest user
/user
:foreach i in [find group=read] do={/user remove $i;}
add name="guest" group=read address=0.0.0.0/0 comment="" disabled=no
#
# Graphing
/tool graphing interface add
# Remove current wLan/Lan bridge if exists
:foreach i in [/interface bridge find name=wLan/Lan] \
do={:foreach i in [/interface bridge port find bridge=wLan/Lan] \
do={/interface bridge port remove $i; \
:foreach i in [/ip address find interface=wLan/Lan] \
do={/ip address remove $i;};};
/interface bridge remove $i;}
# Construct main bridge on wlan1 & ether1
/ interface bridge
add name="wLan/Lan"
/ interface bridge port
add interface=ether1 bridge=wLan/Lan
add interface=wlan1 bridge=wLan/Lan
:delay 1
#
# Radio#: 0 GurbCEPAZEsportiva
/interface wireless set wlan1 name="wlan1" \
radio-name="GurbCEPAZEsportiva" mode=ap-bridge ssid="guifi.net-GurbCEPAZEsportiva" \
band="2.4ghz-b" \
frequency-mode=regulatory-domain country=spain antenna-gain=14 \
frequency=2472 \
dfs-mode=none \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wLan/Lan
/ip address
:foreach i in [find address="10.138.14.97/27"] do={remove $i}
/ ip address add address=10.138.14.97/27 network=10.138.14.96 broadcast=10.138.14.127 interface=wLan/Lan disabled=no
/ routing bgp network
:foreach i in [/routing bgp network find network=10.138.14.96/27] do={/routing bgp network remove $i;}
add network=10.138.14.96/27 disabled=no
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wLan/Lan] do={/routing ospf interface remove $i;}
add interface=wLan/Lan
/ routing ospf network
:foreach i in [/routing ospf network find network=10.138.14.96/27] do={/routing ospf network remove $i;}
add network=10.138.14.96/27 area=backbone disabled=no
/ip address
:foreach i in [find address="10.138.16.129/27"] do={remove $i}
/ ip address add address=10.138.16.129/27 network=10.138.16.128 broadcast=10.138.16.159 interface=wLan/Lan disabled=no
/ routing bgp network
:foreach i in [/routing bgp network find network=10.138.16.128/27] do={/routing bgp network remove $i;}
add network=10.138.16.128/27 disabled=no
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wLan/Lan] do={/routing ospf interface remove $i;}
add interface=wLan/Lan
/ routing ospf network
:foreach i in [/routing ospf network find network=10.138.16.128/27] do={/routing ospf network remove $i;}
add network=10.138.16.128/27 area=backbone disabled=no
:delay 1
#
# DHCP
:foreach i in [/ip pool find name=dhcp-wLan/Lan] do={/ip pool remove $i;}
/ip pool add name=dhcp-wLan/Lan ranges=10.138.16.135-10.138.16.158
:foreach i in [/ip dhcp-server find name=dhcp-wLan/Lan] do={/ip dhcp-server remove $i;}
/ip dhcp-server add name=dhcp-wLan/Lan interface=wLan/Lan address-pool=dhcp-wLan/Lan disabled=no
:foreach i in [/ip dhcp-server network find address="10.138.16.128/27"] do={/ip dhcp-server network remove $i;}
/ip dhcp-server network add address=10.138.16.128/27 gateway=10.138.16.129 domain=guifi.net comment=dhcp-wLan/Lan
/ip dhcp-server lease
:foreach i in [find comment=""] do={remove $i;}
:delay 1
add address=10.138.16.130 mac-address=00:14:BF:EB:86:96 client-id=VicMasBigues server=dhcp-wLan/Lan
add address=10.138.16.131 mac-address=00:15:6D:B1:35:C2 client-id=VicBA25Rd1 server=dhcp-wLan/Lan
add address=10.138.16.132 mac-address=ff:ff:ff:ff:ff:ff client-id=GURBMTeixidorRadio1 server=dhcp-wLan/Lan
add address=10.138.16.133 mac-address=00:12:17:C7:1E:68 client-id=VicFFerrer server=dhcp-wLan/Lan
add address=10.138.16.134 mac-address=00:16:B6:39:80:DB client-id=GurbDParesRadio server=dhcp-wLan/Lan
add address=10.138.16.135 mac-address=00:1C:10:13:98:C8 client-id=GurbCasanovaNadalRadio1 server=dhcp-wLan/Lan
add address=10.138.16.137 mac-address=ff:ff:ff:ff:ff:ff client-id=VicUEVicWRT1 server=dhcp-wLan/Lan
add address=10.138.16.138 mac-address=00:18:39:C6:83:8F client-id=VicAlbergCanongeRadio1 server=dhcp-wLan/Lan
add address=10.138.16.139 mac-address=00:16:01:AE:F7:4A client-id=GurbColomRadio1 server=dhcp-wLan/Lan
add address=10.138.16.140 mac-address=00:16:01:84:7A:DE client-id=VicAtoBisbeRadio2 server=dhcp-wLan/Lan
add address=10.138.16.141 mac-address=00:18:39:AE:44:4B client-id=GurbRaymondRadio1 server=dhcp-wLan/Lan
add address=10.138.16.142 mac-address=00:15:6D:DA:A4:BB client-id=VicSalvadorAllendeRd2 server=dhcp-wLan/Lan
add address=10.138.16.143 mac-address=00:1D:7E:27:F1:6F client-id=VicAngladaRadio1 server=dhcp-wLan/Lan
add address=10.138.16.144 mac-address=00:16:01:AF:EF:5C client-id=VicTxellRadio1 server=dhcp-wLan/Lan
add address=10.138.16.145 mac-address=00:14:BF:77:75:26 client-id=GurbStRoc28 server=dhcp-wLan/Lan
add address=10.138.16.147 mac-address=00:16:01:AF:F7:08 client-id=GurbToniRadio1 server=dhcp-wLan/Lan
add address=10.138.16.148 mac-address=00:15:6D:AA:BD:40 client-id=FutbolRemeiVicRd1 server=dhcp-wLan/Lan
add address=10.138.16.149 mac-address=00:16:01:AF:EB:52 client-id=VicIbanaRadio1 server=dhcp-wLan/Lan
add address=10.138.16.150 mac-address=00:15:6D:D9:17:CB client-id=GurbCamprubiRd2 server=dhcp-wLan/Lan
add address=10.138.16.151 mac-address=ff:ff:ff:ff:ff:ff client-id=VicVilatortellaRadio1 server=dhcp-wLan/Lan
add address=10.138.16.152 mac-address=00:1C:10:14:15:BF client-id=GurbFAmblasRadio server=dhcp-wLan/Lan
add address=10.138.16.153 mac-address=00:1D:7E:4B:10:8C client-id=VicTotiRadio1 server=dhcp-wLan/Lan
add address=10.138.16.154 mac-address=00:1E:E5:36:34:44 client-id=VicJCaliRadio1 server=dhcp-wLan/Lan
add address=10.138.16.155 mac-address=00:15:6D:DB:C9:17 client-id=GurbPinteRd1 server=dhcp-wLan/Lan
add address=10.138.16.156 mac-address=00:1D:7E:27:F0:37 client-id=VicPantadesauRadio1 server=dhcp-wLan/Lan
add address=10.138.16.157 mac-address=00:1D:7E:BC:CC:F0 client-id=VicTrikRadio1 server=dhcp-wLan/Lan
add address=10.138.16.158 mac-address=00:16:01:4B:69:4E client-id=GurbSalvadorPRadio1 server=dhcp-wLan/Lan
#
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan1] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
#
:delay 1
#
# Radio#: 1 GurbCEPASud
/interface wireless set wlan2 name="wlan2" \
radio-name="GurbCEPASud" mode=ap-bridge ssid="guifi.net-GurbCEPASud" \
band="5ghz" \
frequency-mode=regulatory-domain country=spain antenna-gain=18 \
frequency=5600 \
dfs-mode=none \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan2] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
/ interface wireless wds
add name="wds_VicVictoriaST133" master-interface=wlan2 wds-address=00:0C:42:1B:52:43 disabled=no
/ ip address add address=172.25.10.202/30 network=172.25.10.200 broadcast=172.25.10.203 interface=wds_VicVictoriaST133 disabled=no comment="wds_VicVictoriaST133"
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wds_VicVictoriaST133] do={/routing ospf interface remove $i;}
add interface=wds_VicVictoriaST133
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.10.200/30] do={/routing ospf network remove $i;}
add network=172.25.10.200/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=VicVictoriaST133] do={/routing bgp peer remove $i;}
add name="VicVictoriaST133" instance=default remote-address=172.25.10.201 remote-as=240 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
#
:delay 1
#
# Radio#: 2 CEPAEst
/interface wireless set wlan3 name="wlan3" \
radio-name="CEPAEst" mode=ap-bridge ssid="guifi.net-CEPAEst" \
band="2.4ghz-b" \
frequency-mode=regulatory-domain country=spain antenna-gain=18 \
frequency=2472 \
dfs-mode=none \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan3] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
/ interface wireless wds
add name="wds_VicSeminariOest" master-interface=wlan3 wds-address=00:12:17:BC:E5:89 disabled=no
/ ip address add address=172.25.1.105/30 network=172.25.1.104 broadcast=172.25.1.107 interface=wds_VicSeminariOest disabled=no comment="wds_VicSeminariOest"
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wds_VicSeminariOest] do={/routing ospf interface remove $i;}
add interface=wds_VicSeminariOest
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.1.104/30] do={/routing ospf network remove $i;}
add network=172.25.1.104/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=VicSeminariOest] do={/routing bgp peer remove $i;}
add name="VicSeminariOest" instance=default remote-address=172.25.1.106 remote-as=3 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
#
:delay 1
#
# Radio#: 3 GurbCEPA-SSebastia
/interface wireless set wlan4 name="wlan4" \
radio-name="GurbCEPA-SSebastia" mode=ap-bridge ssid="guifi.net-GurbCEPA-SSebastia" \
band="5ghz" \
frequency-mode=regulatory-domain country=spain antenna-gain=21 \
frequency=5520 \
dfs-mode=none \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan4] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
/ interface wireless wds
add name="wds_VicSSebastiaST1" master-interface=wlan4 wds-address=00:0C:42:0C:F4:E0 disabled=no
/ ip address add address=172.25.10.154/30 network=172.25.10.152 broadcast=172.25.10.155 interface=wds_VicSSebastiaST1 disabled=no comment="wds_VicSSebastiaST1"
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wds_VicSSebastiaST1] do={/routing ospf interface remove $i;}
add interface=wds_VicSSebastiaST1
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.10.152/30] do={/routing ospf network remove $i;}
add network=172.25.10.152/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=VicSSebastiaST1] do={/routing bgp peer remove $i;}
add name="VicSSebastiaST1" instance=default remote-address=172.25.10.153 remote-as=5847 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
#
:delay 1
#
# Routed device
#
# Other cable connections
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=ether3] do={/routing ospf interface remove $i;}
add interface=ether3
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.201.0/28] do={/routing ospf network remove $i;}
add network=172.25.201.0/28 area=backbone disabled=no
/ routing bgp peer
:foreach i in [find name=GurbCEPAST1] do={/routing bgp peer remove $i;}
add name="GurbCEPAST1" instance=default remote-address=172.25.201.1 remote-as=113 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=yes
:foreach i in [/ip address find address="172.25.201.3/28"] do={/ip address remove $i;}
:delay 1
/ ip address add address=172.25.201.3/28 network=172.25.201.0 broadcast=172.25.201.15 interface=ether3 disabled=no comment="GurbCEPAST1"
#
# Internal addresses NAT
:foreach i in [/ip firewall nat find src-address="172.16.0.0/12"] do={/ip firewall nat remove $i;}
:foreach i in [/ip firewall nat find src-address="192.168.0.0/16"] do={/ip firewall nat remove $i;}
/ip firewall nat
add chain=srcnat src-address="192.168.0.0/16" dst-address=!192.168.0.0/16 action=src-nat to-addresses=10.138.16.129 comment="" disabled=no
add chain=srcnat src-address="172.16.0.0/12" dst-address=!172.16.0.0/12 protocol=!ospf action=src-nat to-addresses=10.138.16.129 comment="" disabled=no
#
# BGP Routing
# BGP & OSPF Filters
:foreach i in [/routing filter find chain=ospf-in] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ospf-out] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ebgp-in] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ebgp-out] do={/routing filter remove $i;}
/ routing filter
add action=discard chain=ebgp-in comment="1. Discard insert non 10.x routes from BGP peer" disabled=no invert-match=no prefix=!10.0.0.0/8 prefix-length=!8-32
add action=discard chain=ebgp-out comment="2. Discard send non 10.x routes to BGP peer" disabled=no invert-match=no prefix=!10.0.0.0/8 prefix-length=!8-32
add action=accept chain=ospf-in comment="3. Accept insert 10.x routes from OSPF neighbor" disabled=no invert-match=no prefix=10.0.0.0/8 prefix-length=8-32
add action=accept chain=ospf-in comment="4. Accept insert 172.x routes from OSPF neighbor" disabled=no invert-match=no prefix=172.16.0.0/12 prefix-length=8-32
add action=discard chain=ospf-in comment="5. Discard insert non 10.x and 172.x from OSPF neighbor" disabled=no invert-match=no
add action=accept chain=ospf-out comment="6. Allow send 10.x routes to OSPF neighbor" disabled=no invert-match=no prefix=10.0.0.0/8 prefix-length=8-32
add action=accept chain=ospf-out comment="7. Allow send 172.x routes to OSPF neighbor" disabled=no invert-match=no prefix=172.16.0.0/12 prefix-length=8-32
add action=discard chain=ospf-out comment="8. Discard send non 10.x and 172.x to OSPF neighbor" disabled=no invert-match=no
#
# BGP instance
/ routing bgp instance
set default name="default" as=2407 router-id=10.138.16.129 \
redistribute-connected=no redistribute-static=no redistribute-rip=no \
redistribute-ospf=yes redistribute-other-bgp=yes out-filter=ebgp-out \
client-to-client-reflection=yes comment="" disabled=no
#
# OSPF Routing
/routing ospf instance set default name=default router-id=10.138.16.129 comment="" disabled=no distribute-default=never \
redistribute-bgp=as-type-1 redistribute-connected=no redistribute-other-ospf=no redistribute-rip=no redistribute-static=no in-filter=ospf-in out-filter=ospf-out
#
:log info "Unsolclic for 2407-GurbCEPAST3 executed."
/