# Generated for:
# RouterOSv2.9
:log info "Unsolclic for 4049-SFLLCampanarST2 going to be executed."
#
# Configuration for RouterOSv2.9
# Device: 4049-SFLLCampanarST2
#
# Methods to upload/execute this script:
# 1.-As a script. Upload this output as a script either with:
#     a.Winbox (with Linux, wine required)
#     b.Terminal (telnet, ssh...)
#    Then execute the script with:
#      > /system script run script_name
# 2.-Imported file:
#     Save this output to a file, then upload it to the router
#     using ftp using a name like "script_name.rsc".
#     (note that extension ".rsc" is required)
#     Run the import file using the command:
#      > /import script_name
# 3.-Telnet cut&paste:
#     Open a terminal session, and cut&paste this output
#     directly on the terminal input.
#
# Notes:
# -routing-test package is required if you use RouterOSv2.9 , be sure you have it enabled at system packages
# -wlans should be enabled manually, be sure to set the correct antenna (a or b)
#   according in how did you connect the cable to the miniPCI. Keep the
#   power at the minimum possible and check the channel.
# -The script doesn't reset the router, you might have to do it manually
# -You must have write access to the router
# -MAC access (winbox, MAC telnet...) method is recommended
#   (the script reconfigures some IP addresses, so communication can be lost)
# -No changes are done in user passwords on the device
# -A Read Only guest account with no password will be created to allow guest access
#   to the router with no danger of damage but able to see the config.
# -Be sure that all packages are activated.
# -Don't run the script from telnet and being connected through an IP connection at
#   the wLan/Lan interface: This interface will be destroyed during the script.
#
/ system identity set name=SFLLCampanarST2
#
# DNS (client & server cache) zone: 4722
/ip dns set primary-dns=10.138.73.3 secondary-dns=10.138.73.162 allow-remote-requests=yes
:delay 1
#
# NTP (client & server cache) zone: 4722
/system ntp client set enabled=yes mode=unicast primary-ntp=10.138.73.162
/system ntp server set manycast=no enabled=yes
:delay 1
#
# Bandwidth-server
/ tool bandwidth-server set enabled=yes authenticate=no allocate-udp-ports-from=2000
#
# SNMP
/snmp set contact="guifi@guifi.net" enabled=yes location="SFLLCampanar"
#
# Guest user
/user
:foreach i in [find group=read] do={/user remove $i;}
add name="guest" group=read address=0.0.0.0/0 comment="" disabled=no
#
# Graphing
/tool graphing interface add
# Remove current wLan/Lan bridge if exists
:foreach i in [/interface bridge find name=wLan/Lan] \
do={:foreach i in [/interface bridge port find bridge=wLan/Lan] \
do={/interface bridge port remove $i; \
:foreach i in [/ip address find interface=wLan/Lan] \
do={/ip address remove $i;};};
/interface bridge remove $i;}
# Construct main bridge on wlan1 & ether1
/ interface bridge
add name="wLan/Lan"
/ interface bridge port
add interface=ether1 bridge=wLan/Lan
add interface=wlan1 bridge=wLan/Lan
:delay 1
#
# Radio#: 0 SFLLCampanarAP2
/interface wireless set wlan1 name="wlan1" \
radio-name="SFLLCampanarAP2" mode=ap-bridge ssid="guifi.net-SFLLCampanarAP2" \
band="2.4ghz-b" \
frequency-mode=regulatory-domain country=spain antenna-gain=14 \
dfs-mode=radar-detect \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: HotSpot
#
# HotSpot
/interface wireless
:foreach i in [find name=hotspot1] do={remove $i}
add name="hotspot1" arp=enabled master-interface=wlan1 ssid="guifi.net-AccesObert" disabled="no"
/ip address
:foreach i in [find address="192.168.100.1/24"] do={remove $i}
/ip address add address=192.168.100.1/24 interface=hotspot1 disabled=no
/ip pool
:foreach i in [find name=hs-pool-100] do={remove $i}
add name="hs-pool-100" ranges=192.168.100.2-192.168.100.254
/ip dhcp-server
:foreach i in [find name=hs-dhcp-100] do={remove $i}
add name="hs-dhcp-100" interface=hotspot1 lease-time=1h address-pool=hs-pool-100 bootp-support=static authoritative=after-2sec-delay disabled=no
/ip dhcp-server network
:foreach i in [find address="192.168.100.0/24"] do={remove $i}
add address=192.168.100.0/24 gateway=192.168.100.1 domain=guifi.net comment=dhcp-0
/ip hotspot profile
:foreach i in [find name=hsprof1] do={remove $i}
add name="hsprof1" hotspot-address=192.168.100.1 dns-name="guests.guifi.net" html-directory=hotspot smtp-server=0.0.0.0 login-by=http-pap,trial split-user-domain=no trial-uptime=30m/1d trial-user-profile=default use-radius=no
/ip hotspot user profile
set default name="default" advertise-url=http://guifi.net/trespassos/
/ip hotspot
:foreach i in [find name=hotspot1] do={remove $i}
add name="hotspot1" interface=hotspot1 address-pool=hs-pool-100 profile=hsprof1 idle-timeout=5m keepalive-timeout=none addresses-per-mac=2 disabled=no
# end of HotSpot
:delay 1
#
:delay 1
# Type: wLan/Lan
/ip address
:foreach i in [find address="10.138.73.65/27"] do={remove $i}
/ ip address add address=10.138.73.65/27 network=10.138.73.64 broadcast=10.138.73.95 interface=wLan/Lan disabled=no
/ routing bgp network
:foreach i in [/routing bgp network find network=10.138.73.64/27] do={/routing bgp network remove $i;}
add network=10.138.73.64/27 disabled=no
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wLan/Lan] do={/routing ospf interface remove $i;}
add interface=wLan/Lan
/ routing ospf network
:foreach i in [/routing ospf network find network=10.138.73.64/27] do={/routing ospf network remove $i;}
add network=10.138.73.64/27 area=backbone disabled=no
:delay 1
#
# DHCP
:foreach i in [/ip pool find name=dhcp-wLan/Lan] do={/ip pool remove $i;}
/ip pool add name=dhcp-wLan/Lan ranges=10.138.73.71-10.138.73.94
:foreach i in [/ip dhcp-server find name=dhcp-wLan/Lan] do={/ip dhcp-server remove $i;}
/ip dhcp-server add name=dhcp-wLan/Lan interface=wLan/Lan address-pool=dhcp-wLan/Lan disabled=no
:foreach i in [/ip dhcp-server network find address="10.138.73.64/27"] do={/ip dhcp-server network remove $i;}
/ip dhcp-server network add address=10.138.73.64/27 gateway=10.138.73.65 domain=guifi.net comment=dhcp-wLan/Lan
/ip dhcp-server lease
:foreach i in [find comment=""] do={remove $i;}
:delay 1
add address=10.138.73.66 mac-address=00:13:E8:08:E5:11 client-id=SFLLBezerik server=dhcp-wLan/Lan
add address=10.138.73.67 mac-address=00:27:22:02:4D:79 client-id=SfllCastellbell79Rd1 server=dhcp-wLan/Lan
add address=10.138.73.68 mac-address=00:15:6D:D2:E0:CD client-id=SFLLLlorencMarti5 server=dhcp-wLan/Lan
add address=10.138.73.69 mac-address=ff:ff:ff:ff:ff:ff client-id=SFLLCarmeRadio1 server=dhcp-wLan/Lan
add address=10.138.73.70 mac-address=00:15:6D:E4:7D:5B client-id=SFLLAlbertRd1 server=dhcp-wLan/Lan
add address=10.138.73.71 mac-address=00:15:6D:5F:B9:CB client-id=SFLLBaliRd1 server=dhcp-wLan/Lan
#
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan1] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
#
:delay 1
#
# Radio#: 1 SFLLCampanarAP3
/interface wireless set wlan2 name="wlan2" \
radio-name="SFLLCampanarAP3" mode=ap-bridge ssid="guifi.net-SFLLCampanarAP3" \
band="2.4ghz-b" \
frequency-mode=regulatory-domain country=spain antenna-gain=14 \
dfs-mode=radar-detect \
wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: HotSpot
#
# HotSpot
/interface wireless
:foreach i in [find name=hotspot2] do={remove $i}
add name="hotspot2" arp=enabled master-interface=wlan2 ssid="guifi.net-AccesObert" disabled="no"
/ip address
:foreach i in [find address="192.168.101.1/24"] do={remove $i}
/ip address add address=192.168.101.1/24 interface=hotspot2 disabled=no
/ip pool
:foreach i in [find name=hs-pool-101] do={remove $i}
add name="hs-pool-101" ranges=192.168.101.2-192.168.101.254
/ip dhcp-server
:foreach i in [find name=hs-dhcp-101] do={remove $i}
add name="hs-dhcp-101" interface=hotspot2 lease-time=1h address-pool=hs-pool-101 bootp-support=static authoritative=after-2sec-delay disabled=no
/ip dhcp-server network
:foreach i in [find address="192.168.101.0/24"] do={remove $i}
add address=192.168.101.0/24 gateway=192.168.101.1 domain=guifi.net comment=dhcp-1
/ip hotspot profile
:foreach i in [find name=hsprof2] do={remove $i}
add name="hsprof2" hotspot-address=192.168.101.1 dns-name="guests.guifi.net" html-directory=hotspot smtp-server=0.0.0.0 login-by=http-pap,trial split-user-domain=no trial-uptime=30m/1d trial-user-profile=default use-radius=no
/ip hotspot user profile
set default name="default" advertise-url=http://guifi.net/trespassos/
/ip hotspot
:foreach i in [find name=hotspot2] do={remove $i}
add name="hotspot2" interface=hotspot2 address-pool=hs-pool-101 profile=hsprof2 idle-timeout=5m keepalive-timeout=none addresses-per-mac=2 disabled=no
# end of HotSpot
:delay 1
#
:delay 1
# Type: wLan
/ip address
:foreach i in [find address="10.138.73.97/27"] do={remove $i}
/ ip address add address=10.138.73.97/27 network=10.138.73.96 broadcast=10.138.73.127 interface=wlan2 disabled=no
/ routing bgp network
:foreach i in [/routing bgp network find network=10.138.73.96/27] do={/routing bgp network remove $i;}
add network=10.138.73.96/27 disabled=no
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wlan2] do={/routing ospf interface remove $i;}
add interface=wlan2
/ routing ospf network
:foreach i in [/routing ospf network find network=10.138.73.96/27] do={/routing ospf network remove $i;}
add network=10.138.73.96/27 area=backbone disabled=no
:delay 1
#
# DHCP
:foreach i in [/ip pool find name=dhcp-wlan2] do={/ip pool remove $i;}
/ip pool add name=dhcp-wlan2 ranges=10.138.73.103-10.138.73.126
:foreach i in [/ip dhcp-server find name=dhcp-wlan2] do={/ip dhcp-server remove $i;}
/ip dhcp-server add name=dhcp-wlan2 interface=wlan2 address-pool=dhcp-wlan2 disabled=no
:foreach i in [/ip dhcp-server network find address="10.138.73.96/27"] do={/ip dhcp-server network remove $i;}
/ip dhcp-server network add address=10.138.73.96/27 gateway=10.138.73.97 domain=guifi.net comment=dhcp-wlan2
/ip dhcp-server lease
:foreach i in [find comment=""] do={remove $i;}
:delay 1
add address=10.138.73.98 mac-address=00:15:6D:F2:68:E9 client-id=SFLLAlfRSFRd1 server=dhcp-wlan2
add address=10.138.73.99 mac-address=00:15:6D:A7:20:BD client-id=SFLLQuimRd1 server=dhcp-wlan2
add address=10.138.73.100 mac-address=00:15:6D:E4:7D:92 client-id=SFLLSoniaRd1 server=dhcp-wlan2
add address=10.138.73.101 mac-address=00:15:6D:FE:77:6E client-id=SFLLGirona1Rd1 server=dhcp-wlan2
add address=10.138.73.102 mac-address=00:15:6D:72:11:3A client-id=joseRd2 server=dhcp-wlan2
add address=10.138.73.103 mac-address=00:15:6D:81:ED:5D client-id=Stvi126Rd1 server=dhcp-wlan2
#
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan2] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
#
:delay 1
#
# Radio#: 2 SFLLCamp-TorreRoser
/interface wireless set wlan3 name="wlan3" \
radio-name="SFLLCamp-TorreRoser" mode=ap-bridge ssid="guifi.net-SFLLCamp-TorreRoser" \
band="5ghz" \
frequency-mode=regulatory-domain country=spain antenna-gain=19 \
frequency=5660 \
dfs-mode=none \
antenna-mode=ant-a wds-mode=static wds-default-bridge=none wds-default-cost=100 \
wds-cost-range=50-150 wds-ignore-ssid=yes hide-ssid=no
:delay 1
# Type: wds/p2p
# Remove all existing wds interfaces
:foreach i in [/interface wireless wds find master-interface=wlan3] \
do={:foreach n in [/interface wireless wds get $i name] \
do={:foreach inum in [/ip address find interface=$n] \
do={/ip address remove $inum;};}; \
/interface wireless wds remove $i;}
/ interface wireless wds
add name="wds_SFLLTorredelRoserRd1" master-interface=wlan3 wds-address=00:0C:42:31:03:98 disabled=no
/ ip address add address=172.25.34.69/30 network=172.25.34.68 broadcast=172.25.34.71 interface=wds_SFLLTorredelRoserRd1 disabled=no comment="wds_SFLLTorredelRoserRd1"
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=wds_SFLLTorredelRoserRd1] do={/routing ospf interface remove $i;}
add interface=wds_SFLLTorredelRoserRd1
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.34.68/30] do={/routing ospf network remove $i;}
add network=172.25.34.68/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=SFLLTorredelRoserRd1] do={/routing bgp peer remove $i;}
add name="SFLLTorredelRoserRd1" instance=default remote-address=172.25.34.70 remote-as=11435 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
#
:delay 1
#
# Routed device
#
# Other cable connections
/ routing ospf interface
:foreach i in [/routing ospf interface find interface=ether2] do={/routing ospf interface remove $i;}
add interface=ether2
/ routing ospf network
:foreach i in [/routing ospf network find network=172.25.4.144/30] do={/routing ospf network remove $i;}
add network=172.25.4.144/30 area=backbone disabled=yes
/ routing bgp peer
:foreach i in [find name=SFLLCampanarST1] do={/routing bgp peer remove $i;}
add name="SFLLCampanarST1" instance=default remote-address=172.25.4.146 remote-as=4047 \
multihop=no route-reflect=no ttl=default in-filter=ebgp-in out-filter=ebgp-out disabled=no
:foreach i in [/ip address find address="172.25.4.145/30"] do={/ip address remove $i;}
:delay 1
/ ip address add address=172.25.4.145/30 network=172.25.4.144 broadcast=172.25.4.147 interface=ether2 disabled=no comment="SFLLCampanarST1"
#
# Internal addresses NAT
:foreach i in [/ip firewall nat find src-address="172.16.0.0/12"] do={/ip firewall nat remove $i;}
:foreach i in [/ip firewall nat find src-address="192.168.0.0/16"] do={/ip firewall nat remove $i;}
/ip firewall nat
add chain=srcnat src-address="192.168.0.0/16" dst-address=!192.168.0.0/16 action=src-nat to-addresses=10.138.73.65 to-ports=0-65535 comment="" disabled=no
add chain=srcnat src-address="172.16.0.0/12" dst-address=!172.16.0.0/12 protocol=!ospf action=src-nat to-addresses=10.138.73.65 to-ports=0-65535 comment="" disabled=no
#
# BGP Routing
# BGP & OSPF Filters
:foreach i in [/routing filter find chain=ospf-in] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ospf-out] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ebgp-in] do={/routing filter remove $i;}
:foreach i in [/routing filter find chain=ebgp-out] do={/routing filter remove $i;}
/ routing filter
add action=discard chain=ebgp-in comment="1. Discard insert non 10.x routes from BGP peer" disabled=no invert-match=no prefix=!10.0.0.0/8 prefix-length=!8-32
add action=discard chain=ebgp-out comment="2. Discard send non 10.x routes to BGP peer" disabled=no invert-match=no prefix=!10.0.0.0/8 prefix-length=!8-32
add action=accept chain=ospf-in comment="3. Accept insert 10.x routes from OSPF neighbor" disabled=no invert-match=no prefix=10.0.0.0/8 prefix-length=8-32
add action=accept chain=ospf-in comment="4. Accept insert 172.x routes from OSPF neighbor" disabled=no invert-match=no prefix=172.16.0.0/12 prefix-length=8-32
add action=discard chain=ospf-in comment="5. Discard insert non 10.x and 172.x from OSPF neighbor" disabled=no invert-match=no
add action=accept chain=ospf-out comment="6. Allow send 10.x routes to OSPF neighbor" disabled=no invert-match=no prefix=10.0.0.0/8 prefix-length=8-32
add action=accept chain=ospf-out comment="7. Allow send 172.x routes to OSPF neighbor" disabled=no invert-match=no prefix=172.16.0.0/12 prefix-length=8-32
add action=discard chain=ospf-out comment="8. Discard send non 10.x and 172.x to OSPF neighbor" disabled=no invert-match=no
#
# BGP instance
/ routing bgp instance
set default name="default" as=4049 router-id=10.138.73.65 \
redistribute-connected=yes redistribute-static=yes redistribute-rip=yes \
redistribute-ospf=yes redistribute-other-bgp=yes out-filter=ebgp-out \
client-to-client-reflection=yes comment="" disabled=no
#
# OSPF Routing
/routing ospf set router-id=10.138.73.65 distribute-default=never redistribute-connected=no \
redistribute-static=no redistribute-rip=no redistribute-bgp=as-type-1
#
:log info "Unsolclic for 4049-SFLLCampanarST2 executed."
/