MMM MMM KKK TTTTTTTTTTT KKK
MMMM MMMM KKK TTTTTTTTTTT KKK
MMM MMMM MMM III KKK KKK RRRRRR OOOOOO TTT III KKK KKK
MMM MM MMM III KKKKK RRR RRR OOO OOO TTT III KKKKK
MMM MMM III KKK KKK RRRRRR OOO OOO TTT III KKK KKK
MMM MMM III KKK KKK RRR RRR OOOOOO TTT III KKK KKK
MikroTik RouterOS 6.38.1 (c) 1999-2017
http://www.mikrotik.com/[admin@MikroTik] > export
# feb/21/2017 11:53:01 by RouterOS 6.38.1
# software id = ******
#
/interface bridge
add name=Bridge-DMZ
add name=Bridge-Local
/interface ethernet
set [ find default-name=ether6 ] name=DMZ6-Master
set [ find default-name=ether7 ] master-port=DMZ6-Master name=DMZ7-Slave
set [ find default-name=ether8 ] master-port=DMZ6-Master name=DMZ8-Slave
set [ find default-name=ether1 ] name=LAN1-Master
set [ find default-name=ether2 ] master-port=LAN1-Master name=LAN2-Slave
set [ find default-name=ether3 ] master-port=LAN1-Master name=LAN3-Slave
set [ find default-name=ether4 ] master-port=LAN1-Master name=LAN4-Slave
set [ find default-name=ether5 ] master-port=LAN1-Master name=LAN5-Slave
set [ find default-name=ether10 ] name=WAN1
set [ find default-name=sfp1 ] disabled=yes
/interface wireless
set [ find default-name=wlan1 ] adaptive-noise-immunity=ap-and-client-mode \
band=2ghz-b/g/n channel-width=20/40mhz-Ce country=russia disabled=no \
distance=indoors frequency-mode=regulatory-domain guard-interval=long \
hw-protection-mode=rts-cts mode=ap-bridge ssid="CK RiF" wireless-protocol=\
802.11 wmm-support=enabled
/interface pptp-client
add add-default-route=yes connect-to=10.251.1.253 disabled=no name=pptp-out1 \
password=****** user=******
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa2-psk eap-methods="" mode=\
dynamic-keys wpa2-pre-shared-key=88888888
/ip pool
add name=dhcp_pool0 ranges=192.168.111.10-192.168.111.100
add name=dhcp_pool1 ranges=192.168.3.10-192.168.3.100
/ip dhcp-server
add address-pool=dhcp_pool0 disabled=no interface=Bridge-Local name=dhcp1
add address-pool=dhcp_pool1 disabled=no interface=Bridge-DMZ name=dhcp2
/interface bridge port
add bridge=Bridge-Local interface=LAN1-Master
add bridge=Bridge-Local interface=wlan1
add bridge=Bridge-DMZ interface=DMZ6-Master
/ip address
add address=192.168.111.1/24 interface=Bridge-Local network=192.168.111.0
add address=192.168.3.1/24 interface=Bridge-DMZ network=192.168.3.0
/ip dhcp-client
add default-route-distance=0 dhcp-options=hostname,clientid disabled=no \
interface=WAN1
/ip dhcp-server network
add address=192.168.3.0/24 dns-server=192.168.3.1 gateway=192.168.3.1
add address=192.168.111.0/24 dns-server=192.168.111.1 gateway=192.168.111.1
/ip dns
set allow-remote-requests=yes servers=77.88.8.7,77.88.8.3
/ip firewall filter
add action=drop chain=input dst-port=53 in-interface=pptp-out1 log=yes \
log-prefix=query_in_drop protocol=udp
add action=drop chain=input dst-port=53 in-interface=WAN1 protocol=udp
/ip firewall nat
add action=masquerade chain=srcnat out-interface=pptp-out1
add action=masquerade chain=srcnat out-interface=WAN1
/ip service
set telnet disabled=yes
set ftp disabled=yes
set ssh disabled=yes
set api-ssl disabled=yes
/system clock
set time-zone-name=Europe/Moscow
[admin@MikroTik] >