User Tools

Site Tools


networking:router:mikrotik_sonora

This is an old revision of the document!


Sonora Comm Default MikroTik Configuration Script

Configuration Procedure

  1. Reset the router to no configuration
    • /system reset-configuration
  2. Copy, edit and save the script as configscript.rsc
  3. Reconnect to the router using Winbox
  4. Drag and drop the script into the File List window
  5. Import the script
    • /import configscript.rsc

Script

/interface bridge
add l2mtu=1598 name=bridge-local protocol-mode=rstp
/interface wireless
set 0 band=2ghz-b/g/n channel-width=20/40mhz-ht-above country="united states" \
    disabled=no distance=indoors ht-rxchains=0,1 ht-txchains=0,1 l2mtu=2290 \
    mode=ap-bridge ssid=MyWIFI tx-power-mode=card-rates wireless-protocol=any
/interface ethernet
set 0 name=ether1-gateway
set 1 name=ether2-master-local
set 2 master-port=ether2-master-local name=ether3-slave-local
set 3 master-port=ether2-master-local name=ether4-slave-local
set 4 master-port=ether2-master-local name=ether5-slave-local
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa-psk,wpa2-psk mode=\
    dynamic-keys wpa-pre-shared-key=baaaaaaaad wpa2-pre-shared-key=baaaaaaaad
/ip hotspot user profile
set [ find default=yes ] idle-timeout=none keepalive-timeout=2m
/ip pool
add name=dhcp_pool1 ranges=192.168.1.65-192.168.1.199
/ip dhcp-server
add address-pool=dhcp_pool1 disabled=no interface=bridge-local name=dhcp1
/interface bridge port
add bridge=bridge-local interface=ether2-master-local
add bridge=bridge-local interface=wlan1
/ip address
add address=192.168.1.1/24 comment="Sonora Default LAN" interface=bridge-local
/ip dhcp-client
add comment="WAN Interface" disabled=no interface=ether1-gateway
/ip dhcp-server network
add address=192.168.1.0/24 dns-server=192.168.1.1,8.8.8.8 gateway=192.168.1.1
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=192.168.1.1 name=router
/ip firewall filter
add chain=input comment="Allow All ICMP" protocol=icmp
add chain=input comment="Allow Established Connections" connection-state=established
add chain=input comment="Allow Related Connections" connection-state=related
add chain=input comment="Allow all from Sonora Comm" src-address=\
    209.193.64.248/29
add action=drop chain=input comment="Drop Everything Else" in-interface=\
    ether1-gateway
/ip firewall nat
add action=masquerade chain=srcnat comment="NAT Internet" \
    out-interface=ether1-gateway to-addresses=0.0.0.0
/ip neighbor discovery
set ether1-gateway disabled=yes
set wlan1 disabled=yes
/system clock
set time-zone-name=America/Phoenix
/system leds
set 0 interface=wlan1
/system ntp client
set enabled=yes mode=unicast primary-ntp=199.102.46.73 secondary-ntp=\
    64.16.214.60
/tool mac-server
add disabled=no interface=ether2-master-local
add disabled=no interface=ether3-slave-local
add disabled=no interface=ether4-slave-local
add disabled=no interface=ether5-slave-local
add disabled=no interface=wlan1
add disabled=no interface=bridge-local
/tool mac-server mac-winbox
set [ find default=yes ] disabled=yes
add interface=ether2-master-local
add interface=ether3-slave-local
add interface=ether4-slave-local
add interface=ether5-slave-local
add interface=wlan1
add interface=bridge-local
/user set admin password=bad1egg!
networking/router/mikrotik_sonora.1354390208.txt.gz · Last modified: 2012/12/01 12:30 by gcooper