Вот конфиг устройства:
> /export compact
# nov/27/2015 22:44:52 by RouterOS 6.33.1
# software id = *******
#
/interface bridge
add name=bridge_WiFi
add mtu=1500 name=bridge_local
/interface ethernet
set [ find default-name=ether1 ] comment=WAN
set [ find default-name=ether6 ] comment=LAN
set [ find default-name=ether7 ] comment="POS terminal"
set [ find default-name=ether8 ] comment=LAN master-port=ether6
set [ find default-name=ether9 ] master-port=ether6
set [ find default-name=ether10 ] master-port=ether6
set [ find default-name=sfp1 ] disabled=yes
/interface pppoe-client
add add-default-route=yes disabled=no interface=ether1 max-mru=1480 max-mtu=1480 name=\
pppoeWP password=********** use-peer-dns=yes user=**********
/ip neighbor discovery
set ether1 comment=WAN
set ether6 comment=LAN
set ether7 comment="POS terminal"
set ether8 comment=LAN
/interface wireless security-profiles
add authentication-types=wpa-psk,wpa2-psk eap-methods="" management-protection=allowed \
mode=dynamic-keys name=FACTORY supplicant-identity="" wpa-pre-shared-key=******** \
wpa2-pre-shared-key=********
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g/n disabled=no frequency=2462 mode=ap-bridge \
security-profile=FACTORY ssid=FACTORYOFHEALTH wireless-protocol=unspecified
/ip ipsec proposal
set [ find default=yes ] enc-algorithms=3des
/ip pool
add name=dhcp_pool1 ranges=192.168.0.50-192.168.0.200
add name=dhcp_WiFi ranges=192.168.1.1-192.168.1.254
add name=dhcp_pool2 ranges=192.168.2.2-192.168.2.10
/ip dhcp-server
add address-pool=dhcp_pool1 disabled=no interface=bridge_local lease-time=2d name=dhcp1
add address-pool=dhcp_WiFi disabled=no interface=bridge_WiFi name=dhcp2
add address-pool=dhcp_pool2 always-broadcast=yes authoritative=yes disabled=no interface=\
ether7 lease-time=2d name=dhcp3
/queue simple
add name=queue1 target=bridge_local
/queue type
add kind=pcq name=WiFi_download pcq-classifier=dst-address pcq-dst-address6-mask=64 \
pcq-rate=5M pcq-src-address6-mask=64
add kind=pcq name=WiFi_Upload pcq-classifier=src-address pcq-dst-address6-mask=64 pcq-rate=\
5M pcq-src-address6-mask=64
/queue simple
add max-limit=60M/60M name=WiFi_limits queue=WiFi_Upload/WiFi_download target=bridge_WiFi
/system logging action
set 0 memory-lines=100
set 1 disk-lines-per-file=100
/interface bridge port
add bridge=bridge_local interface=ether6
add bridge=bridge_WiFi interface=wlan1
/ip address
add address=192.168.0.1/24 interface=bridge_local network=192.168.0.0
add address=192.168.1.1/24 interface=bridge_WiFi network=192.168.1.0
add address=192.168.2.1/24 interface=ether7 network=192.168.2.0
/ip dhcp-client
add default-route-distance=0 dhcp-options=hostname,clientid disabled=no interface=ether1
/ip dhcp-server network
add address=192.168.0.0/24 gateway=192.168.0.1
add address=192.168.1.0/24 gateway=192.168.1.1
add address=192.168.2.0/24 gateway=192.168.2.1
/ip firewall filter
add chain=input protocol=igmp
add chain=input dst-port=5000 protocol=udp
add chain=input dst-port=2000 protocol=udp
add chain=input protocol=icmp
add chain=input connection-state=established in-interface=pppoeWP
add chain=input connection-state=related in-interface=pppoeWP
add chain=customer connection-state=established
add chain=customer connection-state=related
add action=drop chain=input disabled=yes in-interface=pppoeWP
add action=jump chain=forward in-interface=pppoeWP jump-target=customer
add action=drop chain=customer
add action=drop chain=input dst-address-list=192.168.1.0/24 src-address-list=192.168.0.0/24
add action=drop chain=input dst-address-list=192.168.0.0/24 src-address-list=192.168.1.0/24
/ip firewall nat
add action=masquerade chain=srcnat out-interface=pppoeWP to-addresses=0.0.0.0
add action=masquerade chain=srcnat out-interface=ether1
/ip service
set telnet disabled=yes
set ftp disabled=yes
set www disabled=yes
set ssh port=******
set api disabled=yes
set api-ssl disabled=yes
/lcd
set backlight-timeout=5m default-screen=informative-slideshow time-interval=hour
/routing igmp-proxy
set query-interval=3m10s
/routing igmp-proxy interface
add alternative-subnets=0.0.0.0/0 interface=ether1 upstream=yes
add interface=bridge_local
/system clock
set time-zone-name=Europe/Kiev
/system ntp client
set enabled=yes primary-ntp=91.198.10.1 secondary-ntp=79.142.192.130
]
# nov/27/2015 22:44:52 by RouterOS 6.33.1
# software id = *******
#
/interface bridge
add name=bridge_WiFi
add mtu=1500 name=bridge_local
/interface ethernet
set [ find default-name=ether1 ] comment=WAN
set [ find default-name=ether6 ] comment=LAN
set [ find default-name=ether7 ] comment="POS terminal"
set [ find default-name=ether8 ] comment=LAN master-port=ether6
set [ find default-name=ether9 ] master-port=ether6
set [ find default-name=ether10 ] master-port=ether6
set [ find default-name=sfp1 ] disabled=yes
/interface pppoe-client
add add-default-route=yes disabled=no interface=ether1 max-mru=1480 max-mtu=1480 name=\
pppoeWP password=********** use-peer-dns=yes user=**********
/ip neighbor discovery
set ether1 comment=WAN
set ether6 comment=LAN
set ether7 comment="POS terminal"
set ether8 comment=LAN
/interface wireless security-profiles
add authentication-types=wpa-psk,wpa2-psk eap-methods="" management-protection=allowed \
mode=dynamic-keys name=FACTORY supplicant-identity="" wpa-pre-shared-key=******** \
wpa2-pre-shared-key=********
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g/n disabled=no frequency=2462 mode=ap-bridge \
security-profile=FACTORY ssid=FACTORYOFHEALTH wireless-protocol=unspecified
/ip ipsec proposal
set [ find default=yes ] enc-algorithms=3des
/ip pool
add name=dhcp_pool1 ranges=192.168.0.50-192.168.0.200
add name=dhcp_WiFi ranges=192.168.1.1-192.168.1.254
add name=dhcp_pool2 ranges=192.168.2.2-192.168.2.10
/ip dhcp-server
add address-pool=dhcp_pool1 disabled=no interface=bridge_local lease-time=2d name=dhcp1
add address-pool=dhcp_WiFi disabled=no interface=bridge_WiFi name=dhcp2
add address-pool=dhcp_pool2 always-broadcast=yes authoritative=yes disabled=no interface=\
ether7 lease-time=2d name=dhcp3
/queue simple
add name=queue1 target=bridge_local
/queue type
add kind=pcq name=WiFi_download pcq-classifier=dst-address pcq-dst-address6-mask=64 \
pcq-rate=5M pcq-src-address6-mask=64
add kind=pcq name=WiFi_Upload pcq-classifier=src-address pcq-dst-address6-mask=64 pcq-rate=\
5M pcq-src-address6-mask=64
/queue simple
add max-limit=60M/60M name=WiFi_limits queue=WiFi_Upload/WiFi_download target=bridge_WiFi
/system logging action
set 0 memory-lines=100
set 1 disk-lines-per-file=100
/interface bridge port
add bridge=bridge_local interface=ether6
add bridge=bridge_WiFi interface=wlan1
/ip address
add address=192.168.0.1/24 interface=bridge_local network=192.168.0.0
add address=192.168.1.1/24 interface=bridge_WiFi network=192.168.1.0
add address=192.168.2.1/24 interface=ether7 network=192.168.2.0
/ip dhcp-client
add default-route-distance=0 dhcp-options=hostname,clientid disabled=no interface=ether1
/ip dhcp-server network
add address=192.168.0.0/24 gateway=192.168.0.1
add address=192.168.1.0/24 gateway=192.168.1.1
add address=192.168.2.0/24 gateway=192.168.2.1
/ip firewall filter
add chain=input protocol=igmp
add chain=input dst-port=5000 protocol=udp
add chain=input dst-port=2000 protocol=udp
add chain=input protocol=icmp
add chain=input connection-state=established in-interface=pppoeWP
add chain=input connection-state=related in-interface=pppoeWP
add chain=customer connection-state=established
add chain=customer connection-state=related
add action=drop chain=input disabled=yes in-interface=pppoeWP
add action=jump chain=forward in-interface=pppoeWP jump-target=customer
add action=drop chain=customer
add action=drop chain=input dst-address-list=192.168.1.0/24 src-address-list=192.168.0.0/24
add action=drop chain=input dst-address-list=192.168.0.0/24 src-address-list=192.168.1.0/24
/ip firewall nat
add action=masquerade chain=srcnat out-interface=pppoeWP to-addresses=0.0.0.0
add action=masquerade chain=srcnat out-interface=ether1
/ip service
set telnet disabled=yes
set ftp disabled=yes
set www disabled=yes
set ssh port=******
set api disabled=yes
set api-ssl disabled=yes
/lcd
set backlight-timeout=5m default-screen=informative-slideshow time-interval=hour
/routing igmp-proxy
set query-interval=3m10s
/routing igmp-proxy interface
add alternative-subnets=0.0.0.0/0 interface=ether1 upstream=yes
add interface=bridge_local
/system clock
set time-zone-name=Europe/Kiev
/system ntp client
set enabled=yes primary-ntp=91.198.10.1 secondary-ntp=79.142.192.130
]