I have been having a problem for quite some time now, between 2 AP's.
I have AP1, and AP2.
The registration table on AP1 says that AP2 is connected with a signal strength of -62dBM Signal to Noise is at 42dB.
The registration table on AP2 says that AP1 is connected with a signal strength of -58dBM Signal to Noise is at 39dB.
When I do a ping between the 2 AP's, the majority of the ping replies are an average of 11ms, but occasionally, I get large amounts of timeouts, or extremely high latency for up to 10 minutes at a time.
The puzzling thing is this...
AP1: run winbox ---- clk wireless ---- clk registration ---- dbl clk "AP2 connection".
the part where it says 'last ip' I assume it is suppose to say the ip address of AP2, which it does. -- 10.4.0.253, and it never changes, whereas...
AP2: run winbox ---- clk wireless ---- clk registration ---- dbl clk "AP1 connection".
the part where it says 'last ip' occasionally -and that is when I get 0(zero) timeouts- it says the ip address of AP1 --- 10.4.0.254, but it changes constantly, and it changes to an ip address that a client is accessing on the internet, or if i do remote administration from home, it will change to an ip address on the network, like my server at the office.
Regardless of what it my change to, that is when I get a constant timeout.
Also, it seems to timeout allot when there is a burst in data, for instance if I try to access a pc at my office using explorer (\\10.254.0.6\e$) I get timeouts, but as I am typing this I am actually copying something from that same pc, and I get 0 timeouts. (I am using Copy Handler)
Just for interest sake, I am seeing all the info from home, at this moment sometimes from office, but the connection between home and AP2 never times out, with an average of 9ms.
I would like to put my configuration here, but it is a huge amount, so I exported my config, and saved it to a file, which I will attach. ok nevermind, I will post it here.... it says the extension is not allowed .txt, and it says the same thing when i do not use an extension.
AP1 CONFIG
Code: Select all
[admin@VCOMP] > export
# jan/30/2000 03:52:46 by RouterOS 2.9.50
# software id = REMOVED FOR MY PARANOIA
#
/ interface ethernet
set ether1 name="ether1" mtu=1500 mac-address=00:0C:42:04:47:12 arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default mdix-enable=yes speed=100Mbps comment="" disabled=no
set ether2 name="ether2" mtu=1500 mac-address=00:0C:42:04:47:13 arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=no
set ether3 name="ether3" mtu=1500 mac-address=00:0C:42:04:47:14 arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=yes
/ interface wireless
set WOWCOMPCIVICGRID name="WOWCOMPCIVICGRID" mtu=1500 mac-address=00:0B:6B:37:1A:08 arp=enabled disable-running-check=no radio-name="WOWCOMPCIVICGRID" \
mode=bridge ssid="WOWCOMPWDS" area="" frequency-mode=manual-txpower country="south africa" antenna-gain=0 frequency=2437 band=2.4ghz-onlyg \
scan-list=default rate-set=default supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \
basic-rates-b=1Mbps basic-rates-a/g=6Mbps max-station-count=2007 ack-timeout=dynamic tx-power-mode=default noise-floor-threshold=default \
periodic-calibration=default periodic-calibration-interval=60 burst-time=disabled dfs-mode=none antenna-mode=ant-a wds-mode=static \
wds-default-bridge=wdsjunkbridge wds-default-cost=100 wds-cost-range=50-150 wds-ignore-ssid=no update-stats-interval=disabled default-authentication=no \
default-forwarding=no default-ap-tx-limit=0 default-client-tx-limit=0 proprietary-extensions=post-2.9.25 hide-ssid=no security-profile=default \
disconnect-timeout=3s on-fail-retry-time=100ms hw-retries=15 preamble-mode=both compression=no allow-sharedkey=no comment="" disabled=no
set wlan2 name="wlan2" mtu=1500 mac-address=00:0B:6B:37:1B:44 arp=enabled disable-running-check=no radio-name="VCompSector2" mode=ap-bridge \
ssid="VComp/Sector2" area="" frequency-mode=manual-txpower country="south africa" antenna-gain=0 frequency=2427 band=2.4ghz-b/g scan-list=default \
rate-set=default supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \
basic-rates-b=1Mbps basic-rates-a/g=6Mbps max-station-count=2007 ack-timeout=dynamic tx-power-mode=default noise-floor-threshold=default \
periodic-calibration=default periodic-calibration-interval=60 burst-time=disabled dfs-mode=none antenna-mode=ant-a wds-mode=disabled \
wds-default-bridge=none wds-default-cost=100 wds-cost-range=50-150 wds-ignore-ssid=no update-stats-interval=disabled default-authentication=no \
default-forwarding=no default-ap-tx-limit=0 default-client-tx-limit=0 proprietary-extensions=post-2.9.25 hide-ssid=no security-profile=default \
disconnect-timeout=3s on-fail-retry-time=100ms hw-retries=15 preamble-mode=both compression=no allow-sharedkey=no comment="" disabled=no
set wlan3 name="wlan3" mtu=1500 mac-address=00:80:48:56:5F:41 arp=enabled disable-running-check=no radio-name="VCompSector3" mode=ap-bridge \
ssid="VCOMP/Sector3" area="" frequency-mode=manual-txpower country="south africa" antenna-gain=0 frequency=2447 band=2.4ghz-b/g scan-list=default \
rate-set=default supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \
basic-rates-b=1Mbps basic-rates-a/g=6Mbps max-station-count=2007 ack-timeout=dynamic tx-power-mode=default noise-floor-threshold=default \
periodic-calibration=default periodic-calibration-interval=60 burst-time=disabled dfs-mode=none antenna-mode=ant-a wds-mode=static wds-default-bridge=none \
wds-default-cost=100 wds-cost-range=50-150 wds-ignore-ssid=no update-stats-interval=disabled default-authentication=no default-forwarding=no \
default-ap-tx-limit=0 default-client-tx-limit=0 proprietary-extensions=post-2.9.25 hide-ssid=no security-profile=default disconnect-timeout=3s \
on-fail-retry-time=100ms hw-retries=15 preamble-mode=both compression=no allow-sharedkey=no comment="" disabled=no
/ interface wireless nstreme
set WOWCOMPCIVICGRID enable-nstreme=no enable-polling=yes framer-policy=none framer-limit=3200
set wlan2 enable-nstreme=no enable-polling=yes framer-policy=none framer-limit=3200
set wlan3 enable-nstreme=no enable-polling=yes framer-policy=none framer-limit=3200
/ interface wireless manual-tx-power-table
set WOWCOMPCIVICGRID manual-tx-powers=1Mbps:17,2Mbps:17,5.5Mbps:17,11Mbps:17,6Mbps:17,9Mbps:17,12Mbps:17,18Mbps:17,24Mbps:17,36Mbps:17,48Mbps:17,54Mbps:17
set wlan2 manual-tx-powers=1Mbps:17,2Mbps:17,5.5Mbps:17,11Mbps:17,6Mbps:17,9Mbps:17,12Mbps:17,18Mbps:17,24Mbps:17,36Mbps:17,48Mbps:17,54Mbps:17
set wlan3 manual-tx-powers=1Mbps:17,2Mbps:17,5.5Mbps:17,11Mbps:17,6Mbps:17,9Mbps:17,12Mbps:17,18Mbps:17,24Mbps:17,36Mbps:17,48Mbps:17,54Mbps:17
/ interface wireless security-profiles
set default name="default" mode=none authentication-types="" unicast-ciphers="" group-ciphers="" wpa-pre-shared-key="" wpa2-pre-shared-key="" \
tls-mode=no-certificates tls-certificate=none static-algo-0=none static-key-0="" static-algo-1=none static-key-1="" static-algo-2=none static-key-2="" \
static-algo-3=none static-key-3="" static-transmit-key=key-0 static-sta-private-algo=none static-sta-private-key="" radius-mac-authentication=no \
group-key-update=5m
/ interface wireless wds
add name="junkwds" mtu=1500 arp=enabled disable-running-check=no master-interface=WOWCOMPCIVICGRID wds-address=00:80:48:55:A7:51 comment="" disabled=no
/ interface wireless align
set frame-size=300 active-mode=yes receive-all=no audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 ssid-all=no frames-per-second=25 audio-min=-100 \
audio-max=-20
/ interface wireless connect-list
add interface=WOWCOMPCIVICGRID connect=yes mac-address=00:80:48:55:A7:51 ssid="WOWCOMPWDS" min-signal-strength=-120 area-prefix="" security-profile=default \
comment="" disabled=no
/ interface wireless access-list
add mac-address=00:02:6F:40:C7:29 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004008 Smit" disabled=no
add mac-address=00:80:48:7E:B1:83 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004014 Strydom" disabled=no
add mac-address=00:80:48:47:6F:25 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004004 Fouche" disabled=no
add mac-address=00:80:48:55:A7:7B interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004007 Oosthuizen" disabled=no
add mac-address=00:80:48:7E:B1:B9 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004016 Pand" disabled=no
add mac-address=00:80:48:55:A7:78 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="Ruth" disabled=no
add mac-address=00:02:6F:43:38:E4 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004011 Bosch" disabled=no
add mac-address=00:02:6F:40:C9:BD interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004001 Afriscapes" disabled=no
add mac-address=00:80:48:55:AC:79 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="OWNER BOYD" disabled=no
add mac-address=00:19:F6:00:03:F6 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004012 Jones" disabled=no
add mac-address=00:80:48:55:A7:51 interface=WOWCOMPCIVICGRID authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none \
private-key="" comment="JUNK RELAY" disabled=no
add mac-address=00:80:48:55:A6:59 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="OWNER FOURIE" disabled=no
add mac-address=00:19:F6:00:04:50 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004015 Quick" disabled=no
add mac-address=00:80:48:55:AE:33 interface=wlan3 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="Chen" disabled=no
add mac-address=00:0B:6B:37:1B:4F interface=wlan3 authentication=no forwarding=no ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" comment="" \
disabled=no
add mac-address=00:19:F6:00:04:50 interface=wlan2 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none private-key="" \
comment="004015 Quick" disabled=no
/ interface wireless snooper
set multiple-channels=yes channel-time=200ms receive-errors=no
/ interface wireless sniffer
set multiple-channels=no channel-time=200ms only-headers=no receive-errors=no memory-limit=10 file-name="" file-limit=10 streaming-enabled=no \
streaming-server=0.0.0.0 streaming-max-rate=0
/ interface l2tp-server server
set enabled=no max-mtu=1460 max-mru=1460 authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption
/ interface pptp-server server
set enabled=no max-mtu=1460 max-mru=1460 authentication=mschap1,mschap2 keepalive-timeout=30 default-profile=default-encryption
/ interface bridge
add name="wdsjunkbridge" mtu=1500 arp=enabled stp=no priority=32768 ageing-time=5m forward-delay=15s garbage-collection-interval=5s hello-time=2s \
max-message-age=20s comment="" disabled=no
/ interface bridge port
add interface=junkwds bridge=wdsjunkbridge priority=128 path-cost=10 comment="" disabled=no
add interface=WOWCOMPCIVICGRID bridge=wdsjunkbridge priority=128 path-cost=10 comment="" disabled=no
/ ip pool
add name="dhcp_pool2" ranges=10.254.0.21-10.254.0.30
/ ip ipsec proposal
add name="default" auth-algorithms=sha1 enc-algorithms=3des lifetime=30m lifebytes=0 pfs-group=modp1024 disabled=no
/ ip proxy
set enabled=no src-address=0.0.0.0 port=8080 parent-proxy=0.0.0.0:0 cache-administrator="webmaster" max-disk-cache-size=none max-ram-cache-size=unlimited \
cache-only-on-disk=no maximal-client-connections=1000 maximal-server-connections=1000 max-object-size=4096KiB max-fresh-time=3d
/ ip proxy access
add dst-port=23-25 action=deny comment="block telnet & spam e-mail relaying" disabled=no
/ ip hotspot service-port
set ftp ports=21 disabled=no
/ ip hotspot profile
set default name="default" hotspot-address=0.0.0.0 dns-name="" html-directory=hotspot rate-limit="" http-proxy=0.0.0.0:0 smtp-server=0.0.0.0 \
login-by=cookie,http-chap http-cookie-lifetime=3d split-user-domain=no use-radius=no
/ ip hotspot user profile
set default name="default" idle-timeout=none keepalive-timeout=2m status-autorefresh=1m shared-users=1 transparent-proxy=yes open-status-page=always \
advertise=no
/ ip dhcp-server
add name="dhcp1" interface=ether2 lease-time=3d address-pool=dhcp_pool2 bootp-support=static authoritative=after-2sec-delay disabled=no
/ ip dhcp-server config
set store-leases-disk=5m
/ ip dhcp-server lease
/ ip dhcp-server network
add address=10.254.0.0/16 gateway=10.254.0.254 dns-server=10.0.0.1 comment=""
/ ip route
add dst-address=0.0.0.0/0 gateway=10.0.0.1 distance=1 scope=255 target-scope=10 comment="" disabled=no
add dst-address=10.5.0.0/16 gateway=10.4.0.253 distance=1 scope=255 target-scope=10 comment="" disabled=no
add dst-address=192.168.0.239/32 gateway=10.4.0.253 distance=1 scope=255 target-scope=10 comment="" disabled=no
/ ip service
set telnet port=23 address=0.0.0.0/0 disabled=no
set ftp port=21 address=0.0.0.0/0 disabled=no
set www port=80 address=0.0.0.0/0 disabled=no
set ssh port=22 address=0.0.0.0/0 disabled=no
set www-ssl port=443 address=0.0.0.0/0 certificate=none disabled=yes
/ ip upnp
set enabled=no allow-disable-external-interface=yes show-dummy-rule=yes
/ ip arp
/ ip socks
set enabled=no port=1080 connection-idle-timeout=2m max-connections=200
/ ip dns
set primary-dns=10.0.0.1 secondary-dns=196.43.1.11 allow-remote-requests=yes cache-size=2048KiB cache-max-ttl=1w
/ ip traffic-flow
set enabled=no interfaces=all cache-entries=4k active-flow-timeout=30m inactive-flow-timeout=15s
/ ip address
add address=10.2.0.254/16 network=10.2.0.0 broadcast=10.2.255.255 interface=wlan2 comment="" disabled=no
add address=10.3.0.254/16 network=10.3.0.0 broadcast=10.3.255.255 interface=wlan3 comment="" disabled=no
add address=10.0.0.254/16 network=10.0.0.0 broadcast=10.0.255.255 interface=ether1 comment="" disabled=no
add address=10.4.0.254/16 network=10.4.0.0 broadcast=10.4.255.255 interface=wdsjunkbridge comment="" disabled=no
add address=10.254.0.254/16 network=10.254.0.0 broadcast=10.254.255.255 interface=ether2 comment="" disabled=no
/ ip accounting
set enabled=no account-local-traffic=no threshold=256
/ ip accounting web-access
set accessible-via-web=no address=0.0.0.0/0
/ ip neighbor discovery
set ether1 discover=yes
set ether2 discover=yes
set ether3 discover=yes
set WOWCOMPCIVICGRID discover=yes
set wlan2 discover=yes
set wlan3 discover=yes
set junkwds discover=yes
set wdsjunkbridge discover=yes
/ ip firewall nat
add chain=srcnat action=masquerade comment="" disabled=no
/ ip firewall filter
add chain=forward action=drop comment="Drop all connections" disabled=yes
add chain=forward action=drop p2p=all-p2p in-interface=wlan3 comment="Drop P2P" disabled=no
add chain=forward action=drop p2p=all-p2p in-interface=ether1 comment="Drop all P2P" disabled=no
add chain=forward action=accept connection-state=established comment="allow established connections" disabled=no
add chain=forward action=accept connection-state=related comment="allow related connections" disabled=no
add chain=forward action=drop connection-state=invalid comment="drop invalid connections" disabled=no
add chain=virus action=drop dst-port=81 protocol=tcp comment="Drop Bagle az bb bd" disabled=no
add chain=virus action=drop dst-port=82 protocol=tcp comment="Drop Netsky x" disabled=no
add chain=virus action=drop dst-port=135-139 protocol=tcp comment="Drop Blaster Worm" disabled=no
add chain=virus action=drop dst-port=135-139 protocol=udp comment="Drop Messenger Worm" disabled=no
add chain=virus action=drop dst-port=445 protocol=tcp comment="Drop Blaster Worm" disabled=yes
add chain=virus action=drop dst-port=445 protocol=udp comment="Drop Blaster Worm" disabled=no
add chain=virus action=drop dst-port=593 protocol=tcp comment="________" disabled=no
add chain=virus action=drop dst-port=665 protocol=tcp comment="Drop Netsky z" disabled=no
add chain=virus action=drop dst-port=1024-1030 protocol=tcp comment="________" disabled=no
add chain=virus action=drop dst-port=1034 protocol=tcp comment="Drop MyDoom o bb" disabled=no
add chain=virus action=drop dst-port=1042 protocol=tcp comment="Drop Mydoom n" disabled=no
add chain=virus action=drop dst-port=1080 protocol=tcp comment="Drop MyDoom b f g h, Bugbear b, Bagle af ag ai" disabled=no
add chain=virus action=drop dst-port=1214 protocol=tcp comment="________" disabled=no
add chain=virus action=drop dst-port=1234 protocol=tcp comment="Drop Bagle ad" disabled=no
add chain=virus action=drop dst-port=1363 protocol=tcp comment="ndm requester" disabled=no
add chain=virus action=drop dst-port=1364 protocol=tcp comment="ndm server" disabled=no
add chain=virus action=drop dst-port=1368 protocol=tcp comment="screen cast" disabled=no
add chain=virus action=drop dst-port=1373 protocol=tcp comment="hromgrafx" disabled=no
add chain=virus action=drop dst-port=1377 protocol=tcp comment="cichlid" disabled=no
add chain=virus action=drop dst-port=1433-1434 protocol=tcp comment="Worm" disabled=no
add chain=virus action=drop dst-port=1549 protocol=tcp comment="Netsky y" disabled=no
add chain=virus action=drop dst-port=1639 protocol=tcp comment="MyDoom ah" disabled=no
add chain=virus action=drop dst-port=2283 protocol=tcp comment="Drop Dumaru.Y" disabled=no
add chain=virus action=drop dst-port=2339 protocol=tcp comment="Drop Bagle bj bk" disabled=no
add chain=virus action=drop dst-port=2745 protocol=tcp comment="Bagle Virus" disabled=no
add chain=virus action=drop dst-port=2535 protocol=tcp comment="Drop Beagle" disabled=no
add chain=virus action=drop dst-port=2745 protocol=tcp comment="Drop Beagle.C-K" disabled=no
add chain=virus action=drop dst-port=3127-3128 protocol=tcp comment="Drop MyDoom" disabled=no
add chain=virus action=drop dst-port=3332 protocol=tcp comment="Drop Cycle a" disabled=no
add chain=virus action=drop dst-port=3410 protocol=tcp comment="Drop Backdoor OptixPro" disabled=no
add chain=virus action=drop dst-port=4444 protocol=tcp comment="Worm" disabled=no
add chain=virus action=drop dst-port=4444 protocol=udp comment="Worm" disabled=no
add chain=virus action=drop dst-port=4751 protocol=tcp comment="Drop Bagle v" disabled=no
add chain=virus action=drop dst-port=5503 protocol=tcp comment="Drop Rst a" disabled=no
add chain=virus action=drop dst-port=5554 protocol=tcp comment="Drop Sasser" disabled=no
add chain=virus action=drop dst-port=6000 protocol=tcp comment="Drop Lovgate v" disabled=no
add chain=virus action=drop dst-port=6777 protocol=tcp comment="Drop Bagle a" disabled=no
add chain=virus action=drop dst-port=6789 protocol=tcp comment="Drop Netsky s t u" disabled=no
add chain=virus action=drop dst-port=7094 protocol=tcp comment="Drop Mutbo a" disabled=no
add chain=virus action=drop dst-port=8181 protocol=tcp comment="Drop Zafi d" disabled=no
add chain=virus action=drop dst-port=8594 protocol=tcp comment="Drop IRCbot.worm!MS05-039" disabled=no
add chain=virus action=drop dst-port=8866 protocol=tcp comment="Drop Beagle.B" disabled=no
add chain=virus action=drop dst-port=9030 protocol=tcp comment="Drop Bagle cb" disabled=no
add chain=virus action=drop dst-port=9898 protocol=tcp comment="Drop Dabber.A-B" disabled=no
add chain=virus action=drop dst-port=9995 protocol=tcp comment="Drop Sasser d" disabled=no
add chain=virus action=drop dst-port=9996 protocol=tcp comment="Drop Sasser a b c f" disabled=no
add chain=virus action=drop dst-port=10000 protocol=tcp comment="Drop Dumaru.Y" disabled=no
add chain=virus action=drop dst-port=10080 protocol=tcp comment="Drop MyDoom.B" disabled=no
add chain=virus action=drop dst-port=11768 protocol=tcp comment="Drop DipNet b" disabled=no
add chain=virus action=drop dst-port=12345 protocol=tcp comment="Drop NetBus" disabled=no
add chain=virus action=drop dst-port=17300 protocol=tcp comment="Drop Kuang2" disabled=no
add chain=virus action=drop dst-port=27374 protocol=tcp comment="Drop SubSeven" disabled=no
add chain=virus action=drop dst-port=33333 protocol=tcp comment="Drop Zotob a b c" disabled=no
add chain=virus action=drop dst-port=65506 protocol=tcp comment="Drop PhatBot, Agobot, Gaobot" disabled=no
add chain=forward action=jump jump-target=virus comment="jump to the virus chain" disabled=no
add chain=forward action=accept dst-port=80 protocol=tcp comment="Allow HTTP" disabled=no
add chain=forward action=accept dst-port=25 protocol=tcp comment="Allow SMTP" disabled=no
add chain=forward action=accept protocol=tcp comment="allow TCP" disabled=no
add chain=forward action=accept protocol=icmp comment="allow ping" disabled=no
add chain=forward action=accept protocol=udp comment="allow udp" disabled=no
add chain=forward action=drop comment="drop everything else" disabled=no
/ ip firewall service-port
set ftp ports=21 disabled=no
set tftp ports=69 disabled=no
set irc ports=6667 disabled=no
set h323 disabled=no
set quake3 disabled=no
set gre disabled=no
set pptp disabled=no
/ ip firewall connection tracking
set enabled=yes tcp-syn-sent-timeout=5s tcp-syn-received-timeout=5s tcp-established-timeout=1d tcp-fin-wait-timeout=10s tcp-close-wait-timeout=10s \
tcp-last-ack-timeout=10s tcp-time-wait-timeout=10s tcp-close-timeout=10s udp-timeout=10s udp-stream-timeout=3m icmp-timeout=10s generic-timeout=10m \
tcp-syncookie=no
/ system ntp server
set enabled=no broadcast=no multicast=no manycast=yes
/ system ntp client
set enabled=yes mode=unicast primary-ntp=143.128.82.200 secondary-ntp=146.64.241.229
/ system routerboard settings
set baud-rate=115200 boot-delay=1s boot-device=nand-if-fail-then-ethernet enter-setup-on=any-key cpu-mode=power-save memory-test=no cpu-frequency=264MHz \
boot-protocol=bootp enable-jumper-reset=yes
/ system logging
add topics=info prefix="" action=disk disabled=no
add topics=critical,error,warning,firewall prefix="" action=disk disabled=no
/ system logging action
set memory name="memory" target=memory memory-lines=100 memory-stop-on-full=no
set disk name="disk" target=disk disk-lines=10000 disk-stop-on-full=no
set echo name="echo" target=echo remember=yes
set remote name="remote" target=remote remote=10.0.0.206:514
/ system upgrade mirror
set enabled=no primary-server=0.0.0.0 secondary-server=0.0.0.0 check-interval=1d user=""
/ system clock manual
set time-zone=+00:02 dst-delta=+01:00 dst-start="jan/01/1970 00:00:00" dst-end="jan/01/1970 00:00:00"
/ system watchdog
set reboot-on-failure=yes watch-address=none watchdog-timer=yes no-ping-delay=5m automatic-supout=yes auto-send-supout=no
/ system console
add port=serial0 term="vt102" disabled=no
/ system identity
set name="VCOMP"
/ system note
set show-at-login=yes note=""
/ port
set serial0 name="serial0" baud-rate=auto data-bits=8 parity=none stop-bits=1 flow-control=hardware
/ ppp profile
set default name="default" use-compression=default use-vj-compression=default use-encryption=default only-one=default change-tcp-mss=default comment=""
set default-encryption name="default-encryption" use-compression=default use-vj-compression=default use-encryption=yes only-one=default change-tcp-mss=default \
comment=""
/ ppp aaa
set use-radius=no accounting=yes interim-update=0s
/ queue type
set default name="default" kind=pfifo pfifo-limit=50
set ethernet-default name="ethernet-default" kind=pfifo pfifo-limit=50
set wireless-default name="wireless-default" kind=sfq sfq-perturb=5 sfq-allot=1514
set synchronous-default name="synchronous-default" kind=red red-limit=60 red-min-threshold=10 red-max-threshold=50 red-burst=20 red-avg-packet=1000
set hotspot-default name="hotspot-default" kind=sfq sfq-perturb=5 sfq-allot=1514
add name="default-small" kind=pfifo pfifo-limit=10
/ queue interface
set ether1 queue=ethernet-default
set ether2 queue=ethernet-default
set ether3 queue=ethernet-default
set WOWCOMPCIVICGRID queue=wireless-default
set wlan2 queue=wireless-default
set wlan3 queue=wireless-default
set junkwds queue=wireless-default
set wdsjunkbridge queue=default
/ queue simple
add name="Boyd_ANT" target-addresses=10.3.0.2/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 queue=default-small/default-small \
limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="MICROSOFT LIMIT" dst-address=65.52.0.0/14 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 \
max-limit=0/0 total-queue=default-small disabled=yes
add name="P2P" dst-address=0.0.0.0/0 interface=ether1 parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 \
max-limit=33000/33000 total-queue=default-small p2p=all-p2p disabled=yes
add name="DHCP 28" target-addresses=10.254.0.28/32 dst-address=0.0.0.0/0 interface=ether2 parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004011 Jacques Bosch" target-addresses=10.3.0.20/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/96000 total-queue=default-small disabled=no
add name="004013 Lodewikus Conradie I" target-addresses=10.3.0.42/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004012 Chris Jones_PC" target-addresses=10.3.0.101/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004016 Ons Pand_ANT" target-addresses=10.3.0.10/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004004 Heidi Fouch _ANT" target-addresses=10.2.0.2/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004015 Anthony Quick_ANT" target-addresses=10.3.0.30/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004001 Afriscapes_I" target-addresses=10.3.0.19/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004001 Afriscapes_II" target-addresses=10.3.0.3/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004001 Afriscapes_ANT" target-addresses=10.3.0.18/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004012 Chris Jones_ANT" target-addresses=10.3.0.100/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004007 Sarel Oosthuizen" target-addresses=10.3.0.15/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004008 Johan J Smit_ANT" target-addresses=10.3.0.8/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004011 Jacques Bosch_PC" target-addresses=10.3.0.21/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="004014 Jaco Strydom" target-addresses=10.3.0.200/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004013 Lodewikus Conradie II" target-addresses=10.3.0.43/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=20000/128000 total-queue=default-small disabled=no
add name="004005" dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=0/0 \
total-queue=default-small disabled=yes
add name="004006" dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=0/0 \
total-queue=default-small disabled=yes
add name="004009" dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=0/0 \
total-queue=default-small disabled=yes
add name="004010" dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=0/0 \
total-queue=default-small disabled=yes
add name="004017" dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=0/0 \
total-queue=default-small disabled=yes
add name="004017 RUTH" target-addresses=10.3.0.1/32 dst-address=0.0.0.0/0 interface=all parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="INET4" target-addresses=10.254.0.4/32 dst-address=0.0.0.0/0 interface=ether2 parent=none direction=both priority=8 queue=default-small/default-small \
limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="INET3" target-addresses=10.254.0.3/32 dst-address=0.0.0.0/0 interface=ether2 parent=none direction=both priority=8 queue=default-small/default-small \
limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="DHCP 22" target-addresses=10.254.0.22/32 dst-address=0.0.0.0/0 interface=ether2 parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
add name="DHCP 24" target-addresses=10.254.0.24/32 dst-address=0.0.0.0/0 interface=ether2 parent=none direction=both priority=8 \
queue=default-small/default-small limit-at=0/0 max-limit=0/0 total-queue=default-small disabled=no
/ tool user-manager customer
add subscriber=vcomp login="vcomp" password="pa2Sp0rt7" time-zone=+00:00 permissions=owner parent=vcomp comment="" disabled=no
/ tool bandwidth-server
set enabled=yes authenticate=yes allocate-udp-ports-from=2000 max-sessions=10
/ tool e-mail
set server=0.0.0.0 from="<>"
/ tool mac-server ping
set enabled=yes
/ tool sniffer
set interface=all only-headers=no memory-limit=10 file-name="" file-limit=10 streaming-enabled=no streaming-server=0.0.0.0 filter-stream=yes \
filter-protocol=ip-only filter-address1=0.0.0.0/0:0-65535 filter-address2=0.0.0.0/0:0-65535
/ tool graphing
set store-every=5min
/ tool graphing interface
add interface=all allow-address=0.0.0.0/0 store-on-disk=yes disabled=no
/ user
add name="admin" group=full address=0.0.0.0/0 comment="system default user" disabled=no
/ user group
add name="read" policy=local,telnet,ssh,reboot,read,test,winbox,password,web,sniff,!ftp,!write,!policy
add name="write" policy=local,telnet,ssh,reboot,read,write,test,winbox,password,web,sniff,!ftp,!policy
add name="full" policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,winbox,password,web,sniff
/ user aaa
set use-radius=no accounting=yes interim-update=0s default-group=read
/ routing ospf
set router-id=0.0.0.0 distribute-default=never redistribute-connected=no redistribute-static=no redistribute-rip=no redistribute-bgp=no metric-default=1 \
metric-connected=20 metric-static=20 metric-rip=20 metric-bgp=20
/ routing ospf area
set backbone area-id=0.0.0.0 type=default translator-role=translate-candidate authentication=none disabled=no
/ routing bgp instance
set default name="default" as=1 router-id=0.0.0.0 redistribute-connected=no redistribute-static=no redistribute-rip=no redistribute-ospf=no \
redistribute-other-bgp=no out-filter="" client-to-client-reflection=yes ignore-as-path-len=no comment="" disabled=no
/ routing rip
set distribute-default=never redistribute-static=no redistribute-connected=no redistribute-ospf=no redistribute-bgp=no metric-default=1 metric-static=1 \
metric-connected=1 metric-ospf=1 metric-bgp=1 update-timer=30s timeout-timer=3m garbage-timer=2m
/ routing rip interface
add interface=all receive=v2 send=v2 authentication=none authentication-key="" key-chain="" in-filter="" out-filter="" disabled=no
/ radius incoming
set accept=no port=1700
/ snmp
set enabled=yes contact="" location=""
/ snmp community
set public name="public" address=0.0.0.0/0 read-access=yes
[admin@VCOMP] >
Code: Select all
[admin@WOWCOMPJUNK] > export
# jan/12/2000 23:08:21 by RouterOS 2.9.50
# software id = REMOVED FOR MY PARANOIA
#
/ interface ethernet
set ether1 name="ether1" mtu=1500 mac-address=00:0C:42:22:54:09 arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=no
set ether2 name="ether2" mtu=1500 mac-address=00:0C:42:22:54:0A arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=no
set ether3 name="ether3" mtu=1500 mac-address=00:0C:42:22:54:0B arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=yes
/ interface wireless
set WOWCOMPJUNKSECTOR1 name="WOWCOMPJUNKSECTOR1" mtu=1500 mac-address=00:80:48:56:5F:65 arp=enabled disable-running-check=no radio-name="WOWCOMPJUNKSECTOR1" \
mode=ap-bridge ssid="WOWCOMPJUNKSECTOR1" area="" frequency-mode=manual-txpower country="south africa" antenna-gain=0 frequency=2472 band=2.4ghz-onlyg \
scan-list=default rate-set=default supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \
basic-rates-b=1Mbps basic-rates-a/g=6Mbps max-station-count=2007 ack-timeout=dynamic tx-power-mode=default noise-floor-threshold=default \
periodic-calibration=default periodic-calibration-interval=60 burst-time=disabled dfs-mode=none antenna-mode=ant-a wds-mode=disabled \
wds-default-bridge=none wds-default-cost=100 wds-cost-range=50-150 wds-ignore-ssid=no update-stats-interval=disabled default-authentication=no \
default-forwarding=no default-ap-tx-limit=0 default-client-tx-limit=0 proprietary-extensions=post-2.9.25 hide-ssid=no security-profile=default \
disconnect-timeout=3s on-fail-retry-time=100ms hw-retries=15 preamble-mode=both compression=no allow-sharedkey=no comment="" disabled=no
set WOWCOMPJUNKGRID name="WOWCOMPJUNKGRID" mtu=1500 mac-address=00:80:48:55:A7:51 arp=enabled disable-running-check=no radio-name="WOWCOMPJUNKGRID" \
mode=ap-bridge ssid="WOWCOMPWDS" area="" frequency-mode=manual-txpower country="south africa" antenna-gain=0 frequency=2437 band=2.4ghz-onlyg \
scan-list=default rate-set=default supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \
basic-rates-b=1Mbps basic-rates-a/g=6Mbps max-station-count=2007 ack-timeout=dynamic tx-power-mode=default noise-floor-threshold=default \
periodic-calibration=default periodic-calibration-interval=60 burst-time=disabled dfs-mode=none antenna-mode=ant-a wds-mode=static wds-default-bridge=none \
wds-default-cost=100 wds-cost-range=50-150 wds-ignore-ssid=no update-stats-interval=disabled default-authentication=no default-forwarding=no \
default-ap-tx-limit=0 default-client-tx-limit=0 proprietary-extensions=post-2.9.25 hide-ssid=no security-profile=default disconnect-timeout=3s \
on-fail-retry-time=100ms hw-retries=15 preamble-mode=both compression=no allow-sharedkey=no comment="" disabled=no
/ interface wireless nstreme
set WOWCOMPJUNKSECTOR1 enable-nstreme=no enable-polling=yes framer-policy=none framer-limit=3200
set WOWCOMPJUNKGRID enable-nstreme=no enable-polling=yes framer-policy=none framer-limit=3200
/ interface wireless manual-tx-power-table
set WOWCOMPJUNKSECTOR1 manual-tx-powers=1Mbps:17,2Mbps:17,5.5Mbps:17,11Mbps:17,6Mbps:17,9Mbps:17,12Mbps:17,18Mbps:17,24Mbps:17,36Mbps:17,48Mbps:17,54Mbps:17
set WOWCOMPJUNKGRID manual-tx-powers=1Mbps:17,2Mbps:17,5.5Mbps:17,11Mbps:17,6Mbps:17,9Mbps:17,12Mbps:17,18Mbps:17,24Mbps:17,36Mbps:17,48Mbps:17,54Mbps:17
/ interface wireless security-profiles
set default name="default" mode=none authentication-types="" unicast-ciphers="" group-ciphers="" wpa-pre-shared-key="" wpa2-pre-shared-key="" \
eap-methods=passthrough tls-mode=no-certificates tls-certificate=none static-algo-0=none static-key-0="" static-algo-1=none static-key-1="" \
static-algo-2=none static-key-2="" static-algo-3=none static-key-3="" static-transmit-key=key-0 static-sta-private-algo=none static-sta-private-key="" \
radius-mac-authentication=no group-key-update=5m
/ interface wireless wds
add name="junkwds" mtu=1500 arp=enabled disable-running-check=no master-interface=WOWCOMPJUNKGRID wds-address=00:0B:6B:37:1A:08 comment="" disabled=no
/ interface wireless align
set frame-size=300 active-mode=yes receive-all=no audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 ssid-all=no frames-per-second=25 audio-min=-100 \
audio-max=-20
/ interface wireless connect-list
add interface=WOWCOMPJUNKGRID connect=yes mac-address=00:0B:6B:37:1A:08 ssid="WOWCOMPWDS" min-signal-strength=-120 area-prefix="" security-profile=default \
comment="" disabled=no
/ interface wireless access-list
add mac-address=00:80:48:55:A6:59 interface=WOWCOMPJUNKSECTOR1 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none \
private-key="" comment="Fourie_owner" disabled=no
add mac-address=00:80:48:55:AE:33 interface=WOWCOMPJUNKSECTOR1 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none \
private-key="" comment="Tony Chen" disabled=no
add mac-address=00:80:48:47:6F:25 interface=WOWCOMPJUNKSECTOR1 authentication=yes forwarding=yes ap-tx-limit=0 client-tx-limit=0 private-algo=none \
private-key="" comment="Martie" disabled=no
/ interface wireless snooper
set multiple-channels=yes channel-time=200ms receive-errors=no
/ interface wireless sniffer
set multiple-channels=no channel-time=200ms only-headers=no receive-errors=no memory-limit=10 file-name="" file-limit=10 streaming-enabled=no \
streaming-server=0.0.0.0 streaming-max-rate=0
/ interface l2tp-server server
set enabled=no max-mtu=1460 max-mru=1460 authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption
/ interface pptp-server server
set enabled=no max-mtu=1460 max-mru=1460 authentication=mschap1,mschap2 keepalive-timeout=30 default-profile=default-encryption
/ interface bridge
add name="wdsjunkbridge" mtu=1500 arp=enabled stp=no priority=32768 ageing-time=5m forward-delay=15s garbage-collection-interval=5s hello-time=2s \
max-message-age=20s comment="" disabled=no
/ interface bridge port
add interface=junkwds bridge=wdsjunkbridge priority=128 path-cost=10 comment="" disabled=no
add interface=WOWCOMPJUNKGRID bridge=wdsjunkbridge priority=128 path-cost=10 comment="" disabled=no
/ ip pool
add name="dhcp_pool1" ranges=192.168.0.2-192.168.0.254
/ ip ipsec proposal
add name="default" auth-algorithms=sha1 enc-algorithms=3des lifetime=30m lifebytes=0 pfs-group=modp1024 disabled=no
/ ip route
add dst-address=0.0.0.0/0 gateway=10.4.0.254 distance=1 scope=255 target-scope=10 comment="" disabled=no
add dst-address=192.168.0.239/32 gateway=10.5.0.253 distance=1 scope=255 target-scope=10 comment="" disabled=yes
/ ip dhcp-server
add name="dhcp1" interface=ether1 lease-time=3d address-pool=dhcp_pool1 bootp-support=static authoritative=after-2sec-delay disabled=no
/ ip dhcp-server config
set store-leases-disk=5m
/ ip dhcp-server lease
/ ip dhcp-server network
add address=192.168.0.0/24 gateway=192.168.0.1 dns-server=192.168.0.1 comment=""
/ ip hotspot service-port
set ftp ports=21 disabled=no
/ ip hotspot profile
set default name="default" hotspot-address=0.0.0.0 dns-name="" html-directory=hotspot rate-limit="" http-proxy=0.0.0.0:0 smtp-server=0.0.0.0 \
login-by=cookie,http-chap http-cookie-lifetime=3d split-user-domain=no use-radius=no
/ ip hotspot user profile
set default name="default" idle-timeout=none keepalive-timeout=2m status-autorefresh=1m shared-users=1 transparent-proxy=yes open-status-page=always \
advertise=no
/ ip proxy
set enabled=no src-address=0.0.0.0 port=8080 parent-proxy=0.0.0.0:0 cache-administrator="webmaster" max-disk-cache-size=none max-ram-cache-size=unlimited \
cache-only-on-disk=no maximal-client-connections=1000 maximal-server-connections=1000 max-object-size=4096KiB max-fresh-time=3d
/ ip service
set telnet port=23 address=0.0.0.0/0 disabled=no
set ftp port=21 address=0.0.0.0/0 disabled=no
set www port=80 address=0.0.0.0/0 disabled=no
set ssh port=22 address=0.0.0.0/0 disabled=no
set www-ssl port=443 address=0.0.0.0/0 certificate=none disabled=yes
/ ip upnp
set enabled=no allow-disable-external-interface=yes show-dummy-rule=yes
/ ip arp
/ ip socks
set enabled=no port=1080 connection-idle-timeout=2m max-connections=200
/ ip dns
set primary-dns=10.0.0.1 secondary-dns=10.3.0.254 allow-remote-requests=yes cache-size=2048KiB cache-max-ttl=1w
/ ip traffic-flow
set enabled=no interfaces=all cache-entries=4k active-flow-timeout=30m inactive-flow-timeout=15s
/ ip address
add address=192.168.0.1/24 network=192.168.0.0 broadcast=192.168.0.255 interface=ether1 comment="" disabled=no
add address=10.5.0.254/16 network=10.5.0.0 broadcast=10.5.255.255 interface=WOWCOMPJUNKSECTOR1 comment="" disabled=no
add address=10.4.0.253/16 network=10.4.0.0 broadcast=10.4.255.255 interface=wdsjunkbridge comment="" disabled=no
/ ip accounting
set enabled=no account-local-traffic=no threshold=256
/ ip accounting web-access
set accessible-via-web=no address=0.0.0.0/0
/ ip neighbor discovery
set ether1 discover=yes
set ether2 discover=yes
set ether3 discover=yes
set WOWCOMPJUNKSECTOR1 discover=yes
set WOWCOMPJUNKGRID discover=yes
set junkwds discover=yes
set wdsjunkbridge discover=yes
/ ip firewall nat
add chain=srcnat action=masquerade comment="" disabled=no
/ ip firewall filter
add chain=forward action=accept p2p=all-p2p comment="P2P Connection Stats" disabled=no
add chain=forward action=accept dst-port=3724 protocol=tcp comment="WOW STATS" disabled=no
/ ip firewall service-port
set ftp ports=21 disabled=no
set tftp ports=69 disabled=no
set irc ports=6667 disabled=no
set h323 disabled=yes
set quake3 disabled=no
set gre disabled=yes
set pptp disabled=yes
/ ip firewall connection tracking
set enabled=yes tcp-syn-sent-timeout=5s tcp-syn-received-timeout=5s tcp-established-timeout=1d tcp-fin-wait-timeout=10s tcp-close-wait-timeout=10s \
tcp-last-ack-timeout=10s tcp-time-wait-timeout=10s tcp-close-timeout=10s udp-timeout=10s udp-stream-timeout=3m icmp-timeout=10s generic-timeout=10m \
tcp-syncookie=no
/ system ntp server
set enabled=no broadcast=no multicast=no manycast=yes
/ system ntp client
set enabled=yes mode=unicast primary-ntp=143.128.82.200 secondary-ntp=146.64.241.229
/ system routerboard settings
set baud-rate=115200 boot-delay=2s boot-device=nand-if-fail-then-ethernet enter-setup-on=any-key cpu-mode=power-save memory-test=no cpu-frequency=175MHz \
boot-protocol=bootp enable-jumper-reset=yes
/ system logging
add topics=info prefix="" action=disk disabled=no
add topics=error prefix="" action=disk disabled=no
add topics=warning prefix="" action=disk disabled=no
add topics=critical prefix="" action=disk disabled=no
add topics=firewall prefix="" action=disk disabled=no
add topics=wireless prefix="" action=disk disabled=no
/ system logging action
set memory name="memory" target=memory memory-lines=100 memory-stop-on-full=no
set disk name="disk" target=disk disk-lines=100 disk-stop-on-full=no
set echo name="echo" target=echo remember=yes
set remote name="remote" target=remote remote=0.0.0.0:514
/ system upgrade mirror
set enabled=no primary-server=0.0.0.0 secondary-server=0.0.0.0 check-interval=1d user=""
/ system clock manual
set time-zone=+02:00 dst-delta=+00:00 dst-start="jan/01/1970 00:00:00" dst-end="jan/01/1970 00:00:00"
/ system watchdog
set reboot-on-failure=yes watch-address=none watchdog-timer=yes no-ping-delay=5m automatic-supout=yes auto-send-supout=no
/ system console
add port=serial0 term="" disabled=no
/ system identity
set name="WOWCOMPJUNK"
/ system note
set show-at-login=yes note=""
/ port
set serial0 name="serial0" baud-rate=115200 data-bits=8 parity=none stop-bits=1 flow-control=none
/ ppp profile
set default name="default" use-compression=default use-vj-compression=default use-encryption=default only-one=default change-tcp-mss=yes comment=""
set default-encryption name="default-encryption" use-compression=default use-vj-compression=default use-encryption=yes only-one=default change-tcp-mss=yes \
comment=""
/ ppp aaa
set use-radius=no accounting=yes interim-update=0s
/ queue type
set default name="default" kind=pfifo pfifo-limit=50
set ethernet-default name="ethernet-default" kind=pfifo pfifo-limit=50
set wireless-default name="wireless-default" kind=sfq sfq-perturb=5 sfq-allot=1514
set synchronous-default name="synchronous-default" kind=red red-limit=60 red-min-threshold=10 red-max-threshold=50 red-burst=20 red-avg-packet=1000
set hotspot-default name="hotspot-default" kind=sfq sfq-perturb=5 sfq-allot=1514
add name="default-small" kind=pfifo pfifo-limit=10
/ queue interface
set ether1 queue=ethernet-default
set ether2 queue=ethernet-default
set ether3 queue=ethernet-default
set WOWCOMPJUNKSECTOR1 queue=wireless-default
set WOWCOMPJUNKGRID queue=wireless-default
set junkwds queue=wireless-default
set wdsjunkbridge queue=default
/ queue simple
add name="MICROSOFT LIMIT" dst-address=65.52.0.0/14 interface=all parent=none direction=both priority=8 queue=default-small/default-small limit-at=33000/33000 \
max-limit=33000/33000 total-queue=default-small disabled=yes
add name="ETHER" dst-address=0.0.0.0/0 interface=ether1 parent=none direction=both priority=8 queue=default-small/default-small limit-at=0/0 \
max-limit=20000/56000 total-queue=default-small disabled=no
/ user
add name="admin" group=full address=0.0.0.0/0 comment="system default user" disabled=no
/ user group
add name="read" policy=local,telnet,ssh,reboot,read,test,winbox,password,web,sniff,!ftp,!write,!policy
add name="write" policy=local,telnet,ssh,reboot,read,write,test,winbox,password,web,sniff,!ftp,!policy
add name="full" policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,winbox,password,web,sniff
/ user aaa
set use-radius=no accounting=yes interim-update=0s default-group=read
/ tool bandwidth-server
set enabled=yes authenticate=yes allocate-udp-ports-from=2000 max-sessions=10
/ tool e-mail
set server=0.0.0.0 from="<>"
/ tool mac-server ping
set enabled=yes
/ tool sniffer
set interface=all only-headers=no memory-limit=10 file-name="" file-limit=10 streaming-enabled=no streaming-server=0.0.0.0 filter-stream=yes \
filter-protocol=ip-only filter-address1=0.0.0.0/0:0-65535 filter-address2=0.0.0.0/0:0-65535
/ tool graphing
set store-every=5min
/ routing ospf
set router-id=0.0.0.0 distribute-default=never redistribute-connected=no redistribute-static=no redistribute-rip=no redistribute-bgp=no metric-default=1 \
metric-connected=20 metric-static=20 metric-rip=20 metric-bgp=20
/ routing ospf area
set backbone area-id=0.0.0.0 type=default translator-role=translate-candidate authentication=none disabled=no
/ routing ospf interface
set FIXME interface=WOWCOMPJUNKGRID cost=10 priority=1 authentication-key="" network-type=point-to-point retransmit-interval=5s transmit-delay=1s \
hello-interval=10s dead-interval=40s
/ routing bgp instance
set default name="default" as=65530 router-id=0.0.0.0 redistribute-connected=no redistribute-static=no redistribute-rip=no redistribute-ospf=no \
redistribute-other-bgp=no out-filter="" client-to-client-reflection=yes ignore-as-path-len=no comment="" disabled=no
/ routing rip
set distribute-default=never redistribute-static=no redistribute-connected=no redistribute-ospf=no redistribute-bgp=no metric-default=1 metric-static=1 \
metric-connected=1 metric-ospf=1 metric-bgp=1 update-timer=30s timeout-timer=3m garbage-timer=2m
/ routing rip interface
add interface=all receive=v2 send=v2 authentication=none authentication-key="" key-chain="" in-filter="" out-filter="" disabled=no
/ radius incoming
set accept=no port=1700
/ snmp
set enabled=no contact="" location=""
/ snmp community
set public name="public" address=0.0.0.0/0 read-access=yes
[admin@WOWCOMPJUNK] >
I would appreciate any help.
Thank you