Skip to content

Instantly share code, notes, and snippets.

@henno
Created April 6, 2024 14:26
Show Gist options
  • Save henno/1a40f0ebdce8229e2a299f92ee5379e6 to your computer and use it in GitHub Desktop.
Save henno/1a40f0ebdce8229e2a299f92ee5379e6 to your computer and use it in GitHub Desktop.
mikrotik hAP AC CAP ei lase 5GHz wifisse seadmeid,aga sama CApsmanageri küljes olev AC3 laseb
MikroTik RouterOS 7.14.1 (c) 1999-2024 https://www.mikrotik.com/
Press F1 for help
[T0nu@MikroTik CRS326-24G-2S+IN] > /caps-man/
[T0nu@MikroTik CRS326-24G-2S+IN] /caps-man> export terse
# 2024-04-06 17:19:39 by RouterOS 7.14.1
# software id = TJ0X-IPUB
#
# model = CRS326-24G-2S+
# serial number = CDA80CB15960
/caps-man datapath add bridge=bridge name=datapath1
/caps-man security add authentication-types=wpa2-psk name=WiFi_Password
/caps-man configuration add country=estonia datapath=datapath1 installation=indoor mode=ap name=2G rates.basic=12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps security=WiFi_Password ssid="5G TestTower 2"
/caps-man configuration add country=estonia datapath=datapath1 installation=indoor mode=ap name=5G rates.basic=12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps security=WiFi_Password ssid="5G TestTower 5"
/caps-man manager set enabled=yes
/caps-man provisioning add action=create-dynamic-enabled hw-supported-modes=g,gn master-configuration=2G name-format=prefix-identity name-prefix=2G
/caps-man provisioning add action=create-dynamic-enabled hw-supported-modes=ac,an master-configuration=2G name-format=prefix-identity name-prefix=5G
[T0nu@MikroTik CRS326-24G-2S+IN] /caps-man> /
[T0nu@MikroTik CRS326-24G-2S+IN] > export terse
# 2024-04-06 17:20:18 by RouterOS 7.14.1
# software id = TJ0X-IPUB
#
# model = CRS326-24G-2S+
# serial number = CDA80CB15960
/interface bridge add admin-mac=48:8F:5A:82:4B:B9 auto-mac=no comment=defconf dhcp-snooping=yes igmp-snooping=yes name=bridge port-cost-mode=short
/interface ethernet set [ find default-name=ether1 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether2 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether3 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether4 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether5 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether6 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether7 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether8 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether9 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether10 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether11 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether12 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether13 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether14 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether15 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether16 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether17 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether18 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether19 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether20 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether21 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether22 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether23 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/interface ethernet set [ find default-name=ether24 ] advertise=10M-baseT-half,10M-baseT-full,100M-baseT-half,100M-baseT-full,1G-baseT-half,1G-baseT-full,2.5G-baseT,5G-baseT,10G-baseT
/caps-man datapath add bridge=bridge name=datapath1
/caps-man security add authentication-types=wpa2-psk name=WiFi_Password
/caps-man configuration add country=estonia datapath=datapath1 installation=indoor mode=ap name=2G rates.basic=12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps security=WiFi_Password ssid="5G TestTower 2"
/caps-man configuration add country=estonia datapath=datapath1 installation=indoor mode=ap name=5G rates.basic=12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps security=WiFi_Password ssid="5G TestTower 5"
/interface list add name=WAN
/interface list add name=LAN
/interface lte apn set [ find default=yes ] ip-type=ipv4 use-network-apn=no
/interface wifi configuration add country=Estonia datapath.bridge=bridge disabled=no name="5G TestTower 2" security.authentication-types=wpa2-psk ssid="5G TestTower 2"
/interface wifi configuration add country=Estonia datapath.bridge=bridge disabled=no name="5G TestTower 5" security.authentication-types=wpa2-psk ssid="5G TestTower 5"
/interface wireless security-profiles set [ find default=yes ] supplicant-identity=MikroTik
/ip pool add name=dhcp ranges=192.168.77.10-192.168.77.254
/ip dhcp-server add address-pool=dhcp interface=bridge lease-time=10m name=dhcp2
/port set 0 name=serial0
/caps-man manager set enabled=yes
/caps-man provisioning add action=create-dynamic-enabled hw-supported-modes=g,gn master-configuration=2G name-format=prefix-identity name-prefix=2G
/caps-man provisioning add action=create-dynamic-enabled hw-supported-modes=ac,an master-configuration=2G name-format=prefix-identity name-prefix=5G
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether2 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether3 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether4 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether5 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether6 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether7 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether8 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether9 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether10 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether11 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether12 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether13 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether14 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether15 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether16 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether17 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether18 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether19 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether20 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether21 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether22 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether23 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=ether24 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=sfp-sfpplus1 internal-path-cost=10 path-cost=10
/interface bridge port add bridge=bridge comment=defconf ingress-filtering=no interface=sfp-sfpplus2 internal-path-cost=10 path-cost=10
/ip firewall connection tracking set udp-timeout=10s
/ip neighbor discovery-settings set discover-interface-list=!dynamic
/ip settings set max-neighbor-entries=8192
/ipv6 settings set disable-ipv6=yes
/interface list member add interface=ether1 list=WAN
/interface list member add interface=ether2 list=LAN
/interface list member add interface=ether3 list=LAN
/interface list member add interface=ether4 list=LAN
/interface list member add interface=ether5 list=LAN
/interface list member add interface=ether6 list=LAN
/interface list member add interface=ether7 list=LAN
/interface list member add interface=ether8 list=LAN
/interface list member add interface=ether9 list=LAN
/interface list member add interface=ether10 list=LAN
/interface list member add interface=ether11 list=LAN
/interface list member add interface=ether12 list=LAN
/interface list member add interface=ether13 list=LAN
/interface list member add interface=ether14 list=LAN
/interface list member add interface=ether15 list=LAN
/interface list member add interface=ether16 list=LAN
/interface list member add interface=ether17 list=LAN
/interface list member add interface=ether18 list=LAN
/interface list member add interface=ether19 list=LAN
/interface list member add interface=ether20 list=LAN
/interface list member add interface=ether21 list=LAN
/interface list member add interface=ether22 list=LAN
/interface list member add interface=ether23 list=LAN
/interface list member add interface=ether24 list=LAN
/interface list member add interface=sfp-sfpplus1 list=LAN
/interface list member add interface=sfp-sfpplus2 list=LAN
/interface list member add interface=bridge list=LAN
/interface ovpn-server server set auth=sha1,md5
/interface wifi capsman set package-path="" require-peer-certificate=no upgrade-policy=none
/interface wifi provisioning add action=create-dynamic-enabled disabled=no master-configuration="5G TestTower 2" slave-configurations="5G TestTower 5"
/interface wifi provisioning add action=create-dynamic-enabled disabled=no master-configuration="5G TestTower 2" slave-configurations="5G TestTower 5"
/ip address add address=192.168.77.1/24 interface=bridge network=192.168.77.0
/ip dhcp-client add interface=ether1
/ip dhcp-server add address-pool=*1 disabled=yes interface=bridge lease-time=10m name=dhcp1 relay=192.168.88.1
/ip dhcp-server lease add address=192.168.77.230 client-id=1:5a:9c:d4:c0:36:fc mac-address=5A:9C:D4:C0:36:FC server=dhcp2
/ip dhcp-server lease add address=192.168.77.242 client-id=1:44:8a:5b:d2:b8:99 mac-address=44:8A:5B:D2:B8:99 server=dhcp2
/ip dhcp-server lease add address=192.168.77.224 client-id=1:78:c8:81:90:f8:9a mac-address=78:C8:81:90:F8:9A server=dhcp2
/ip dhcp-server lease add address=192.168.77.221 client-id=1:74:56:3c:b2:95:f8 mac-address=74:56:3C:B2:95:F8 server=dhcp2
/ip dhcp-server lease add address=192.168.77.220 client-id=1:0:e:8c:e6:c:86 mac-address=00:0E:8C:E6:0C:86 server=dhcp2
/ip dhcp-server network add address=192.168.77.0/24 dns-server=8.8.8.8,1.1.1.1 gateway=192.168.77.1
/ip dns set servers=1.1.1.1,8.8.8.8
/ip firewall filter add action=fasttrack-connection chain=forward connection-state=established,related,new hw-offload=yes
/ip firewall nat add action=masquerade chain=srcnat out-interface-list=WAN
/routing bfd configuration add disabled=no interfaces=all min-rx=200ms min-tx=200ms multiplier=5
/system clock set time-zone-name=Europe/Tallinn
/system identity set name="MikroTik CRS326-24G-2S+IN"
/system note set show-at-login=no
/system routerboard settings set boot-os=router-os
[T0nu@MikroTik CRS326-24G-2S+IN] >
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment