# routerboard: yes # model: CCR2116-12G-4S+ # serial-number: HCZ086R0KGQ # firmware-type: al64v3 # factory-firmware: 7.2 # current-firmware: 7.15.3 # upgrade-firmware: 7.15.3 # # channel: stable # installed-version: 7.15.3 # status: ERROR: could not resolve dns name # # Flags: U - UNDOABLE # Columns: ACTION, BY, POLICY, TIME # ACTION BY POLICY TIME # U filter-rule-173 changed marcos write 2024-09-25 15:41:27 # U filter-rule-11 changed marcos write 2024-09-25 15:41:17 # U route 2803:d8c0:c000::/34 changed marcos write 2024-09-25 15:35:01 # U route 2803:d8c0:c000::/34 added marcos write 2024-09-25 15:34:55 # U route 2803:d8c0:8000::/34 added marcos write 2024-09-25 15:34:25 # U route 2803:d8c0:4000::/34 changed marcos write 2024-09-25 15:33:57 # U route 2803:d8c0:4000::/34 added marcos write 2024-09-25 15:33:49 # U route 2803:d8c0::/34 added marcos write 2024-09-25 15:33:09 # U route 2803:d8c0::/32 changed marcos write 2024-09-25 15:31:51 # U route 2803:d8c0::/34 changed marcos write 2024-09-25 15:31:45 # U address list entry removed marcos write 2024-09-25 15:31:03 # U address list entry removed marcos write 2024-09-25 15:30:59 # U address list entry changed marcos write 2024-09-25 15:29:51 # U address list entry changed marcos write 2024-09-25 15:29:48 # U address list entry changed marcos write 2024-09-25 15:29:42 # U address list entry added marcos write 2024-09-25 15:29:28 # U address list entry added marcos write 2024-09-25 15:29:12 # U address list entry added marcos write 2024-09-25 15:28:56 # U dns changed marcos write 2024-09-25 15:18:52 # U route 2803:d8c0::/34 added marcos write 2024-09-23 15:44:12 # U CDN_SILICA-IPv6 - MZA changed marcos write 2024-09-23 13:57:22 # U CDN_SILICA-IPv6 - MZA changed marcos write 2024-09-23 13:56:14 # U filter-rule-173 changed marcos write 2024-09-23 13:55:03 # U filter-rule-11 changed marcos write 2024-09-23 13:54:54 # U filter-rule-173 changed marcos write 2024-09-23 13:51:04 # U filter-rule-11 changed marcos write 2024-09-23 13:50:49 # U filter6 rule added marcos write 2024-09-23 13:46:32 # U filter6 rule changed marcos write 2024-09-23 13:45:53 # U filter6 rule changed marcos write 2024-09-23 13:45:36 # U filter6 rule added marcos write 2024-09-23 13:45:29 # U filter6 rule added marcos write 2024-09-23 13:43:53 # U CDN_SILICA-IPv6 - SLS changed andres write 2024-09-23 12:50:28 # U SILICA-IPv6 - Backup changed andres write 2024-09-23 12:50:26 # U SILICA-IPv6 - Master changed andres write 2024-09-23 12:49:45 # U CDN_SILICA-IPv6 - MZA changed andres write 2024-09-23 12:49:42 # U SILICA-IPv6 - Master changed marcos write 2024-09-19 12:27:54 # U SILICA-IPv6 - Backup changed marcos write 2024-09-19 12:27:52 # U CDN_SILICA-IPv6 - SLS changed marcos write 2024-09-19 12:27:51 # U CDN_SILICA-IPv6 - MZA changed marcos write 2024-09-19 12:27:49 # U CDN_SILICA-IPv6 - SLS changed marcos write 2024-09-19 12:25:20 # U CDN_SILICA-IPv6 - MZA changed marcos write 2024-09-19 12:25:19 # U SILICA-IPv6 - Master changed marcos write 2024-09-19 12:25:18 # U SILICA-IPv6 - Backup changed marcos write 2024-09-19 12:25:17 # U address list entry changed marcos write 2024-09-19 12:24:05 # U route 2803:d8c0:1000::/36 removed marcos write 2024-09-19 10:38:34 # U IPv6 address changed marcos write 2024-09-19 10:37:08 # U IPv6 address changed marcos write 2024-09-19 10:36:58 # U raw rule changed marcos write 2024-09-15 20:11:02 # U raw rule added marcos write 2024-09-15 20:10:15 # U filter rule moved marcos write 2024-09-15 19:55:08 # U filter rule added marcos write 2024-09-15 19:55:04 # U filter rule moved marcos write 2024-09-15 19:54:04 # U filter rule moved marcos write 2024-09-15 19:54:04 # U filter rule moved marcos write 2024-09-15 19:53:43 # U route 192.168.200.0/24 changed marcos write 2024-09-15 19:53:09 # U route 10.100.2.0/24 changed marcos write 2024-09-15 19:53:06 # U ospf-interface-1 added marcos write 2024-09-15 19:51:41 # U ospf-backbone_v2 added marcos write 2024-09-15 19:51:23 # U insta_backbone_v2 added marcos write 2024-09-15 19:51:02 # U address changed marcos write 2024-09-15 19:50:40 # U address added marcos write 2024-09-15 19:50:33 # U filter rule changed marcos write 2024-09-15 19:47:55 # U filter rule changed marcos write 2024-09-15 19:47:47 # U filter rule changed marcos write 2024-09-15 19:47:40 # U filter rule added marcos write 2024-09-15 19:47:29 # U mangle rule removed marcos write 2024-09-11 08:55:03 # U raw rule removed andres write 2024-09-10 16:48:46 # U raw rule removed andres write 2024-09-10 16:48:46 # U address list entry removed andres write 2024-09-10 16:47:49 # U address list entry removed andres write 2024-09-10 16:47:49 # U address list entry removed andres write 2024-09-10 16:47:49 # U address list entry removed andres write 2024-09-10 16:47:49 # U address list entry removed andres write 2024-09-10 16:47:47 # U address list entry removed andres write 2024-09-10 16:47:47 # U address list entry removed andres write 2024-09-10 16:47:47 # U address list entry removed andres write 2024-09-10 16:47:47 # U address list entry removed andres write 2024-09-10 16:47:47 # U address list entry removed andres write 2024-09-10 16:47:47 # U address list entry removed andres write 2024-09-10 16:47:38 # U address list entry removed andres write 2024-09-10 16:47:38 # U address list entry removed andres write 2024-09-10 16:47:38 # U address list entry removed andres write 2024-09-10 16:47:38 # U address list entry removed andres write 2024-09-10 16:47:28 # U address list entry removed andres write 2024-09-10 16:47:21 # U address list entry removed andres write 2024-09-10 16:47:18 # U address list entry removed andres write 2024-09-10 16:40:37 # U address list entry removed andres write 2024-09-10 16:38:32 # U address list entry removed andres write 2024-09-10 16:33:55 # U address list entry removed andres write 2024-09-10 16:33:27 # U address list entry removed andres write 2024-09-10 16:33:25 # U address list entry removed marcos write 2024-09-08 11:45:20 # U address list entry changed marcos write 2024-09-08 11:38:49 # U address list entry changed marcos write 2024-09-08 11:38:46 # U address list entry changed marcos write 2024-09-07 14:14:45 # U changed email settings marcos write 2024-09-02 10:00:24 # U address list entry changed marcos write 2024-08-31 20:10:43 # U changed marcos write 2024-08-23 11:40:34 # U route 0.0.0.0/0 changed marcos write 2024-08-22 16:29:08 # U mangle rule changed marcos write 2024-08-22 16:25:15 # U mangle rule changed marcos write 2024-08-22 16:25:14 # # 2024-09-25 16:10:30 by RouterOS 7.15.3 # software id = TC8X-H33I # # model = CCR2116-12G-4S+ # serial number = HCZ086R0KGQ /interface bridge add name=bridge_vlan99 port-cost-mode=short add name=lo0 port-cost-mode=short /interface ethernet set [ find default-name=ether13 ] comment="MGMT - UNTAGGED VLAN99" set [ find default-name=sfp-sfpplus1 ] comment=BOND_INSIDE set [ find default-name=sfp-sfpplus2 ] comment=BOND_OUTSIDE set [ find default-name=sfp-sfpplus4 ] comment="TRUNK_MAIN (INSIDE)" /interface vlan add interface=sfp-sfpplus4 name=vlan_99 vlan-id=99 /interface bonding add comment="TRUNK_MAIN (INSIDE)" mode=802.3ad name=bond_INSIDE slaves=sfp-sfpplus1 transmit-hash-policy=layer-2-and-3 add comment="TRUNK_ MAIN (SILICA + CDN-SILICA + MEGAS + WESTNET)" mode=802.3ad name=bond_OUTSIDE slaves=sfp-sfpplus2,sfp-sfpplus3 transmit-hash-policy=layer-2-and-3 /interface vlan add interface=bond_OUTSIDE name="vlan203 - MEGAS" vlan-id=203 add interface=bond_OUTSIDE name="vlan1402 - CDN_APZ005" vlan-id=1402 add interface=bond_OUTSIDE name="vlan1455 - SILICA_APZ002" vlan-id=1455 add interface=bond_OUTSIDE name=vlan_3315-Westnet vlan-id=3315 add interface=vlan_3315-Westnet name=vlan_10-WestnetService vlan-id=10 add interface=vlan_3315-Westnet name=vlan_20-Monitoring vlan-id=20 /interface list add name=adm-lan /ip pool add name=dhcp_pool0 ranges=192.168.210.2-192.168.210.254 add name=dhcp_pool1 ranges=192.168.210.2-192.168.210.254 /ip smb users set [ find default=yes ] disabled=yes /port set 0 name=serial0 /routing ospf instance add disabled=no name=insta_backbone_v2 router-id=10.255.255.12 /routing ospf area add disabled=no instance=insta_backbone_v2 name=ospf-backbone_v2 /routing table add disabled=no fib name=to_riot-games add disabled=no fib name=to_silica add disabled=no fib name=to_westnet add disabled=no fib name=to_megas /routing bgp template set default disabled=yes routing-table=main add as=264787 disabled=no name=AS264787 output.network=bgp-networks .no-client-to-client-reflection=no routing-table=main /snmp community add addresses=192.168.200.253/32,192.168.200.155/32 authentication-protocol=SHA1 encryption-protocol=AES name=pnet /system logging action add disk-file-count=5 disk-file-name=Critical name=CriticalLogs target=disk add disk-file-count=5 disk-file-name=Error name=ErrorLogs target=disk add disk-file-count=5 disk-file-name=Info name=InfoLogs target=disk add disk-file-count=5 disk-file-name=Interfaces name=InterfacesLogs target=disk add disk-file-count=5 disk-file-name=Warning name=WarningLogs target=disk add bsd-syslog=yes name=GrafanaLogs remote=192.168.200.168 src-address=10.99.0.99 syslog-severity=emergency target=remote add bsd-syslog=yes name=GrafanaLogsAlert remote=192.168.200.168 src-address=10.99.0.99 syslog-facility=local1 syslog-severity=alert target=remote add bsd-syslog=yes name=GrafanaLogsInfo remote=192.168.200.168 src-address=10.0.0.1 syslog-facility=local1 syslog-severity=info target=remote add bsd-syslog=yes name=DudeLogs remote=192.168.200.253 syslog-facility=local6 target=remote /interface bridge port add bridge=bridge_vlan99 interface=ether13 internal-path-cost=10 path-cost=10 add bridge=bridge_vlan99 interface=vlan_99 internal-path-cost=10 path-cost=10 /ip firewall connection tracking set enabled=no udp-timeout=10s /ip neighbor discovery-settings set discover-interface-list=adm-lan /ip settings set tcp-syncookies=yes /interface list member add interface=bridge_vlan99 list=adm-lan /ip address add address=10.32.48.210/30 comment="Peer SILICA" interface="vlan1455 - SILICA_APZ002" network=10.32.48.208 add address=10.32.64.186/30 interface="vlan1455 - SILICA_APZ002" network=10.32.64.184 add address=168.197.196.1 interface=lo0 network=168.197.196.1 add address=10.99.0.99/24 comment=MGMT interface=bridge_vlan99 network=10.99.0.0 add address=10.32.48.14/30 comment="Peer CDN SILICA" interface="vlan1402 - CDN_APZ005" network=10.32.48.12 add address=10.32.65.14/30 interface="vlan1402 - CDN_APZ005" network=10.32.65.12 add address=10.0.0.1/30 comment=FROM_INSIDE interface=sfp-sfpplus4 network=10.0.0.0 add address=172.28.251.38/30 comment="Peer WESTNET" interface=vlan_10-WestnetService network=172.28.251.36 add address=172.28.252.34/30 comment="Monitoreo ICMP Westnet" interface=vlan_20-Monitoring network=172.28.252.32 add address=172.16.40.2/30 comment="Peer MEGAS" interface="vlan203 - MEGAS" network=172.16.40.0 add address=10.255.255.12 comment=loopback interface=lo network=10.255.255.12 /ip dhcp-client add disabled=yes interface=ether12 /ip dns set servers=1.1.1.1,2606:4700:4700::1111,8.8.8.8,2001:4860:4860::8888 /ip firewall address-list add address=168.197.196.0/22 list=bgp-networks add address=168.197.196.0/24 list=bgp-networks add address=168.197.197.0/24 list=bgp-networks add address=168.197.198.0/24 list=bgp-networks add address=168.197.199.0/24 list=bgp-networks add address=45.7.39.0/24 list=riot-games add address=45.7.37.0/24 list=riot-games add address=45.7.36.0/24 list=riot-games add address=138.0.15.0/24 list=riot-games add address=138.0.14.0/24 list=riot-games add address=138.0.13.0/24 list=riot-games add address=138.0.12.0/24 list=riot-games add address=45.164.156.0/22 list=riot-games add address=192.168.200.155 list=snmp add address=192.168.200.253 list=snmp /ip firewall filter add action=fasttrack-connection chain=forward comment="default configuration" connection-state=established,related hw-offload=yes add action=accept chain=forward comment="accept established and related connections" connection-state=established,related add action=accept chain=input comment=MEGA dst-port=179 in-interface="vlan203 - MEGAS" protocol=tcp src-address=172.16.40.1 add action=drop chain=input dst-port=179 in-interface="vlan203 - MEGAS" protocol=tcp add action=accept chain=input comment=WESTNET dst-port=179 in-interface=vlan_10-WestnetService protocol=tcp src-address=172.28.251.37 add action=drop chain=input dst-port=179 in-interface=vlan_10-WestnetService protocol=tcp add action=accept chain=input comment="TIP SILICA - MASTER_BACKUP" dst-port=179 in-interface="vlan1455 - SILICA_APZ002" protocol=tcp src-address=10.32.64.185 add action=accept chain=input dst-port=179 in-interface="vlan1455 - SILICA_APZ002" protocol=tcp src-address=10.32.48.209 add action=drop chain=input dst-port=179 in-interface="vlan1455 - SILICA_APZ002" protocol=tcp add action=accept chain=input comment="CDN SILICA - MASTER_BACKUP" dst-port=179 in-interface="vlan1402 - CDN_APZ005" protocol=tcp src-address=10.32.65.13 add action=accept chain=input dst-port=179 in-interface="vlan1402 - CDN_APZ005" protocol=tcp src-address=10.32.48.13 add action=drop chain=input dst-port=179 in-interface="vlan1402 - CDN_APZ005" protocol=tcp add action=accept chain=input comment=Oxidized dst-port=22 in-interface=bridge_vlan99 protocol=tcp src-address=192.168.200.155 add action=drop chain=input dst-port=22 in-interface=bridge_vlan99 protocol=tcp add action=accept chain=input comment="Allow ICMP" protocol=icmp add action=accept chain=input comment="Allow TCP" disabled=yes dst-port=2000 in-interface=bridge_vlan99 protocol=tcp src-address=192.168.200.0/24 add action=drop chain=input disabled=yes dst-port=2000 in-interface=bridge_vlan99 protocol=tcp add action=accept chain=input comment="Allow UDP" dst-port=161 in-interface=bridge_vlan99 protocol=udp src-address-list=snmp add action=drop chain=input dst-port=161 in-interface=bridge_vlan99 protocol=udp add action=accept chain=input comment="Allow OSPF" in-interface=bridge_vlan99 protocol=ospf add action=accept chain=input comment=WINBOX dst-port=8240 protocol=tcp /ip firewall raw add action=notrack chain=prerouting comment="Conntrack - fixed GRE protocol packet connection-state matching" protocol=gre add action=drop chain=prerouting comment="ICMP flood" icmp-options=8:0 limit=10,20:packet protocol=icmp /ip firewall service-port set ftp disabled=yes set tftp disabled=yes set h323 disabled=yes set sip disabled=yes set pptp disabled=yes /ip route add comment=RED_NOC disabled=yes distance=1 dst-address=192.168.200.0/24 gateway=10.99.0.1 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="RED VPN-L2TP" disabled=no distance=1 dst-address=10.100.0.0/24 gateway=10.99.0.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="RED VPN-WireGuard" disabled=yes distance=1 dst-address=10.100.2.0/24 gateway=10.99.0.1 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add blackhole comment="BLOQUE COMPLETO" disabled=no distance=1 dst-address=168.197.196.0/22 gateway="" pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO .198" disabled=no distance=1 dst-address=168.197.198.0/24 gateway=10.0.0.2 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO .196" disabled=no distance=1 dst-address=168.197.196.0/24 gateway=10.0.0.2 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO .197" disabled=no distance=1 dst-address=168.197.197.0/24 gateway=10.0.0.2 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO .199" disabled=no distance=1 dst-address=168.197.199.0/24 gateway=10.0.0.2 pref-src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.7.36.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.7.37.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.7.39.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.12.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.13.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.15.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.14.0/24 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.164.156.0/22 gateway=10.32.64.185 pref-src=0.0.0.0 routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add check-gateway=ping disabled=no distance=20 dst-address=0.0.0.0/0 gateway=10.32.64.185 pref-src="" routing-table=to_silica scope=30 suppress-hw-offload=no target-scope=10 add check-gateway=ping disabled=no distance=20 dst-address=0.0.0.0/0 gateway=10.32.48.209 pref-src="" routing-table=to_silica scope=30 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.164.156.0/22 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.7.39.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.7.37.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=45.7.36.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.12.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.13.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.14.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add disabled=no distance=20 dst-address=138.0.15.0/24 gateway=10.32.48.209 pref-src="" routing-table=to_riot-games scope=40 suppress-hw-offload=no target-scope=10 add check-gateway=ping disabled=no dst-address=0.0.0.0/0 gateway=172.28.251.37 routing-table=to_westnet suppress-hw-offload=no add disabled=yes distance=1 dst-address=0.0.0.0/0 gateway=172.16.40.1 routing-table=to_megas scope=30 suppress-hw-offload=no target-scope=10 /ipv6 route add blackhole comment="PREFIJO COMPLETO" disabled=no distance=1 dst-address=2803:d8c0::/32 gateway=fd00:0:0:4::2222 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO 2803:D8C0::/34" disabled=no distance=1 dst-address=2803:d8c0::/34 gateway=fd00:0:0:4::2222 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO 2803:D8C0:4000::/34" disabled=no distance=1 dst-address=2803:d8c0:4000::/34 gateway=fd00:0:0:4::2222 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO 2803:D8C0:8000::/34" disabled=no distance=1 dst-address=2803:d8c0:8000::/34 gateway=fd00:0:0:4::2222 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="PREFIJO 2803:D8C0:C000::/34" disabled=no distance=1 dst-address=2803:d8c0:c000::/34 gateway=fd00:0:0:4::2222 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 /ip service set telnet disabled=yes set ftp disabled=yes set www port=8280 set ssh address=192.168.200.155/32 set api disabled=yes set winbox port=8240 set api-ssl disabled=yes /ip smb shares set [ find default=yes ] directory=/pub /ip traffic-flow set cache-entries=2M interfaces=sfp-sfpplus1,sfp-sfpplus2,sfp-sfpplus4 /ip traffic-flow target add dst-address=192.168.200.214 port=9991 /ipv6 address add address=2800:630:2010:2::2 advertise=no comment=TIP_SLS interface="vlan1455 - SILICA_APZ002" add address=2800:630:2810:6::2 advertise=no comment=TIP_MZA interface="vlan1455 - SILICA_APZ002" add address=2800:630:2810:4::2 advertise=no comment=CDN_MZA interface="vlan1402 - CDN_APZ005" add address=2800:630:2010:e::2 advertise=no comment=CDN_SLS interface="vlan1402 - CDN_APZ005" add address=fd00:0:0:4::1111 advertise=no comment=INSIDE interface=sfp-sfpplus4 /ipv6 firewall address-list add address=2803:d8c0::/32 list=bgp-networks-ipv6 add address=2803:d8c0::/34 list=bgp-networks-ipv6 add address=2803:d8c0:4000::/34 disabled=yes list=bgp-networks-ipv6 add address=2803:d8c0:8000::/34 disabled=yes list=bgp-networks-ipv6 add address=2803:d8c0:c000::/34 disabled=yes list=bgp-networks-ipv6 /ipv6 firewall filter add action=accept chain=input comment="TIP SILICA - MASTER_BACKUP" dst-port=179 in-interface="vlan1455 - SILICA_APZ002" protocol=tcp src-address=2800:630:2810:6::1/128 add action=accept chain=input comment="CDN SILICA - MASTER_BACKUP" dst-port=179 in-interface="vlan1402 - CDN_APZ005" protocol=tcp src-address=2800:630:2010:e::1/128 add action=accept chain=input dst-port=179 in-interface="vlan1402 - CDN_APZ005" protocol=tcp src-address=2800:630:2810:4::1/128 add action=drop chain=input dst-port=179 in-interface="vlan1402 - CDN_APZ005" protocol=tcp add action=accept chain=input dst-port=179 in-interface="vlan1455 - SILICA_APZ002" protocol=tcp src-address=2800:630:2010:2::1/128 add action=drop chain=input dst-port=179 in-interface="vlan1455 - SILICA_APZ002" protocol=tcp /ipv6 nd set [ find default=yes ] interface=bridge_vlan99 /routing bgp connection add address-families=ip as=264787 disabled=no input.filter=bck-silica-in local.role=ebgp name="SILICA - Backup" output.filter-chain=bck-silica-out .network=bgp-networks .no-client-to-client-reflection=no remote.address=10.32.48.209/32 .as=7049 router-id=168.196.198.1 routing-table=main templates=AS264787 add address-families=ip as=264787 disabled=no input.filter=silica-in local.role=ebgp name="SILICA - Master" output.filter-chain=silica-out .network=bgp-networks .no-client-to-client-reflection=no remote.address=10.32.64.185/32 .as=7049 router-id=168.196.198.1 routing-table=main templates=AS264787 add address-families=ipv6 as=264787 disabled=no input.filter=IN-SILICA-IPv6 local.role=ebgp name="SILICA-IPv6 - Master" output.filter-chain=OUT-SILICA-IPv6 .network=bgp-networks-ipv6 .no-client-to-client-reflection=no remote.address=2800:630:2810:6::1/128 .as=7049 routing-table=main templates=AS264787 add address-families=ipv6 as=264787 disabled=no input.filter=IN-BCK-SILICA-IPv6 local.role=ebgp name="SILICA-IPv6 - Backup" output.filter-chain=OUT-BCK-SILICA-IPv6 .network=bgp-networks-ipv6 .no-client-to-client-reflection=no remote.address=2800:630:2010:2::1/128 .as=7049 routing-table=main templates=AS264787 add address-families=ip as=264787 disabled=no input.filter=cdn-silica-in local.role=ebgp name="CDN_SILICA - MZA" output.filter-chain=cdn-silica-out .network=bgp-networks .no-client-to-client-reflection=no remote.address=10.32.65.13/32 .as=7049 router-id=168.196.198.1 routing-table=main templates=AS264787 add address-families=ip as=264787 disabled=no input.filter=sls-cdn-silica-in local.role=ebgp name="CDN_SILICA - SLS" output.filter-chain=sls-cdn-silica-out .network=bgp-networks .no-client-to-client-reflection=no remote.address=10.32.48.13/32 .as=7049 router-id=168.196.198.1 routing-table=main templates=AS264787 add address-families=ip as=264787 disabled=no input.filter=westnet-in local.address=172.28.251.38 .role=ebgp name=WESTNET output.filter-chain=westnet-out .network=bgp-networks .no-client-to-client-reflection=no remote.address=172.28.251.37/30 .as=264685 router-id=168.196.198.1 routing-table=main templates=AS264787 add address-families=ipv6 as=264787 cisco-vpls-nlri-len-fmt=auto-bits disabled=no input.filter=IN-SILICA-IPv6 local.role=ebgp name="CDN_SILICA-IPv6 - MZA" output.filter-chain=OUT-SILICA-IPv6 .network=bgp-networks-ipv6 .no-client-to-client-reflection=no remote.address=2800:630:2810:4::1/128 .as=7049 routing-table=main templates=AS264787 add address-families=ipv6 as=264787 cisco-vpls-nlri-len-fmt=auto-bits disabled=no input.filter=IN-BCK-SILICA-IPv6 local.role=ebgp name="CDN_SILICA-IPv6 - SLS" output.filter-chain=OUT-BCK-SILICA-IPv6 .network=bgp-networks-ipv6 .no-client-to-client-reflection=no remote.address=2800:630:2010:e::1/128 .as=7049 routing-table=main templates=AS264787 add address-families=ip as=264787 disabled=no input.filter=mega-in local.address=172.16.40.2 .role=ebgp name=MEGAS output.filter-chain=mega-out .network=bgp-networks .no-client-to-client-reflection=no remote.address=172.16.40.1/30 .as=264800 router-id=168.196.198.1 routing-table=main templates=AS264787 /routing filter rule add chain=IN-SILICA-IPv6 comment="TIP_SILICA_ IPv6" disabled=no rule="if (dst in 2000::/3 && dst-len in 0-48) {set bgp-local-pref 100; accept}" add chain=IN-SILICA-IPv6 disabled=no rule="if (dst-len in 0-128) { reject }" add chain=OUT-SILICA-IPv6 disabled=no rule="if (dst in 2803:d8c0::/32 && dst-len >= 34) { accept }" add chain=OUT-SILICA-IPv6 disabled=no rule="if (dst-len in 0-128) { reject }" add chain=IN-BCK-SILICA-IPv6 comment="TIP_BCK_SILICA_ IPv6" disabled=no rule="if (dst in 2000::/3 && dst-len in 0-48) {set bgp-local-pref 50; accept}" add chain=IN-BCK-SILICA-IPv6 disabled=no rule="if (dst-len in 0-128) { reject }" add chain=OUT-BCK-SILICA-IPv6 disabled=no rule="if (dst in 2803:d8c0::/32 && dst-len >= 34) { accept }" add chain=OUT-BCK-SILICA-IPv6 disabled=no rule="if (dst-len in 0-128) { reject }" add chain=silica-in comment="***** TIP_SILICA" disabled=no rule="if (dst in 0.0.0.0/0 && dst-len==0) {set bgp-local-pref 100; accept}" add chain=silica-in comment="TIP_SILICA-IN - RFC 5735" disabled=no rule="if (dst in 10.0.0.0/8 && dst-len in 8-32) { reject }" add chain=silica-in disabled=no rule="if (dst in 172.16.0.0/12 && dst-len in 12-32) { reject }" add chain=silica-in disabled=no rule="if (dst in 192.168.0.0/16 && dst-len in 16-32) { reject }" add chain=silica-in disabled=no rule="if (dst in 0.0.0.0/0 && dst-len in 25-32) { reject }" add chain=silica-in disabled=no rule="if (dst == 0.0.0.0/8) { reject }" add chain=silica-in disabled=no rule="if (dst == 127.0.0.0/8) { reject }" add chain=silica-in disabled=no rule="if (dst == 169.254.0.0/16) { reject }" add chain=silica-in disabled=no rule="if (dst == 198.51.100.0/24) { reject }" add chain=silica-in disabled=no rule="if (dst == 192.0.0.0/24) { reject }" add chain=silica-in disabled=no rule="if (dst == 192.0.2.0/24) { reject }" add chain=silica-in disabled=no rule="if (dst == 198.18.0.0/18) { reject }" add chain=silica-in disabled=no rule="if (dst == 203.0.113.0/24) { reject }" add chain=silica-in disabled=no rule="if (dst == 192.88.99.0/24) { reject }" add chain=silica-in disabled=no rule="if (dst == 224.0.0.0/4) { reject }" add chain=silica-in disabled=no rule="if (dst == 240.0.0.0/4) { reject }" add chain=silica-in disabled=no rule="if (dst == 100.64.0.0/10) { reject }" add chain=silica-in comment="Filtrado de prefijo PROPIO" disabled=no rule="if (dst in 168.197.196.0/22 && dst-len in 22-24) { reject }" add chain=silica-out comment=TIP_SILICA-OUT disabled=yes rule="if (dst in == 168.197.196.0/22 && dst-len in 22-24) {set bgp-path-prepend 3; accept}" add chain=silica-out disabled=yes rule="if (dst == 168.197.196.0/24) {set bgp-path-prepend 3; accept}" add chain=silica-out disabled=no rule="if (dst == 168.197.197.0/24) {set bgp-path-prepend 3; accept}" add chain=silica-out disabled=no rule="if (dst == 168.197.198.0/24) {set bgp-path-prepend 3; accept}" add chain=silica-out disabled=no rule="if (dst == 168.197.199.0/24) {accept}" add chain=silica-out disabled=no rule=reject add chain=bck-silica-in comment="***** TIP_BCK_SILICA" disabled=no rule="if (dst in 0.0.0.0/0 && dst-len==0) {set bgp-local-pref 50; accept}" add chain=bck-silica-in comment="Filtrado de prefijo PROPIO" disabled=no rule="if (dst in 168.197.196.0/22 && dst-len in 22-24) { reject }" add chain=bck-silica-in disabled=no rule=reject add chain=bck-silica-out disabled=yes rule="if (dst in == 168.197.196.0/22 && dst-len in 22-24) {set bgp-path-prepend 3; accept}" add chain=bck-silica-out disabled=yes rule="if (dst == 168.197.196.0/24) {set bgp-path-prepend 3; accept}" add chain=bck-silica-out disabled=no rule="if (dst == 168.197.197.0/24) {set bgp-path-prepend 3; accept}" add chain=bck-silica-out disabled=no rule="if (dst == 168.197.198.0/24) {set bgp-path-prepend 3; accept}" add chain=bck-silica-out disabled=no rule="if (dst == 168.197.199.0/24) {accept}" add chain=bck-silica-out disabled=no rule=reject add chain=cdn-silica-in comment="***** MZA CDN SILICA" disabled=no rule="if (dst-len in 22-24) {set bgp-local-pref 100; accept}" add chain=cdn-silica-in comment="Filtrado de prefijo PROPIO" disabled=no rule="if (dst in 168.197.196.0/22 && dst-len in 22-24) { reject }" add chain=cdn-silica-in disabled=no rule=reject add chain=cdn-silica-out disabled=yes rule="if (dst in == 168.197.196.0/22 && dst-len in 22-24) {set bgp-path-prepend 3; accept}" add chain=cdn-silica-out disabled=yes rule="if (dst == 168.197.196.0/24) {set bgp-path-prepend 3; accept}" add chain=cdn-silica-out disabled=no rule="if (dst == 168.197.197.0/24) {set bgp-path-prepend 3; accept}" add chain=cdn-silica-out disabled=no rule="if (dst == 168.197.198.0/24) {set bgp-path-prepend 3; accept}" add chain=cdn-silica-out disabled=no rule="if (dst == 168.197.199.0/24) {accept}" add chain=cdn-silica-out disabled=no rule=reject add chain=sls-cdn-silica-in comment="***** SLS CDN SILICA" disabled=no rule="if (dst-len in 22-24) {set bgp-local-pref 50; accept}" add chain=sls-cdn-silica-in comment="Filtrado de prefijo PROPIO" disabled=no rule="if (dst in 168.197.196.0/22 && dst-len in 22-24) { reject }" add chain=sls-cdn-silica-in disabled=no rule=reject add chain=sls-cdn-silica-out disabled=yes rule="if (dst in == 168.197.196.0/22\_&& dst-len in 22-24) {set bgp-path-prepend 3; accept}" add chain=sls-cdn-silica-out disabled=yes rule="if (dst == 168.197.196.0/24) {set bgp-path-prepend 3; accept}" add chain=sls-cdn-silica-out disabled=no rule="if (dst == 168.197.197.0/24) {set bgp-path-prepend 3; accept}" add chain=sls-cdn-silica-out disabled=no rule="if (dst == 168.197.198.0/24) {set bgp-path-prepend 3; accept}" add chain=sls-cdn-silica-out disabled=no rule="if (dst == 168.197.199.0/24) {accept}" add chain=sls-cdn-silica-out disabled=no rule=reject add chain=westnet-in comment="CDN_WESTNET (168.227.99.0/24)" disabled=yes rule="if (dst in 168.227.99.0/24 && dst-len==24) {accept}" add chain=westnet-in disabled=yes rule=reject add chain=westnet-in comment="***** WESTNET (Aceptar RUTA POR DEFAULT)" disabled=no rule="if (dst in 0.0.0.0/0 && dst-len == 0) {set bgp-weight 200; accept}" add chain=westnet-in disabled=no rule=reject add chain=westnet-out disabled=yes rule="if (dst in == 168.197.196.0/22 && dst-len in 22-24) {accept}" add chain=westnet-out disabled=no rule="if (dst in 168.197.196.0/24 && dst-len==24) {accept}" add chain=westnet-out disabled=no rule="if (dst in 168.197.197.0/24 && dst-len==24) {accept}" add chain=westnet-out disabled=no rule="if (dst in 168.197.198.0/24 && dst-len==24) {accept}" add chain=westnet-out disabled=no rule="if (dst in 168.197.199.0/24 && dst-len==24) {set bgp-path-prepend 3; accept}" add chain=westnet-out disabled=no rule=reject add chain=mega-in comment="***** MEGAS (Aceptar TABLA FULL)" disabled=no rule="if (dst-len in 22-24) {set bgp-weight 180; accept}" add chain=mega-in disabled=no rule=reject add chain=mega-out disabled=yes rule="if (dst in == 168.197.196.0/22 && dst-len in 22-24) {accept}" add chain=mega-out disabled=no rule="if (dst == 168.197.196.0/24) {accept}" add chain=mega-out disabled=no rule="if (dst == 168.197.197.0/24) {set bgp-path-prepend 3; accept}" add chain=mega-out disabled=no rule="if (dst == 168.197.198.0/24) {set bgp-path-prepend 3; accept}" add chain=mega-out disabled=no rule="if (dst == 168.197.199.0/24) {accept}" add chain=mega-out disabled=no rule=reject /routing ospf interface-template add area=ospf-backbone_v2 disabled=no networks=10.99.0.0/24 /routing rule add action=lookup-only-in-table disabled=no dst-address=45.7.36.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=45.7.37.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=45.7.39.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=138.0.12.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=138.0.13.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=138.0.15.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=138.0.14.0/24 table=to_riot-games add action=lookup-only-in-table disabled=no dst-address=45.164.156.0/22 table=to_riot-games add action=lookup-only-in-table comment="Forzando salida del NOC" disabled=yes src-address=168.197.198.10/32 table=to_riot-games add action=lookup-only-in-table comment="Forzando salida por SILICA - R50" disabled=yes src-address=168.197.197.128/29 table=to_silica add action=lookup-only-in-table comment="DNS Cloudflare por SILICA" disabled=no dst-address=1.1.1.1/32 table=to_silica add action=lookup-only-in-table comment="DNS Cloudflare por WESTNET" disabled=no dst-address=8.8.8.8/32 table=to_westnet add action=lookup-only-in-table comment="DNS Cloudflare por WESTNET" disabled=no dst-address=8.8.4.4/32 table=to_westnet add action=lookup-only-in-table comment="DNS Cloudflare por SILICA" disabled=no dst-address=1.0.0.1/32 src-address="" table=to_silica /snmp set contact=noc@puntonetinternet.com.ar enabled=yes location="Nodo SB" trap-community=pnet trap-generators=interfaces trap-interfaces=bridge_vlan99 trap-version=2 /system clock set time-zone-autodetect=no time-zone-name=America/Argentina/Mendoza /system clock manual set time-zone=-03:00 /system identity set name="BGP_Core (CCR2116-12G-4S+)" /system logging set 1 action=ErrorLogs set 2 action=WarningLogs set 3 action=CriticalLogs add action=GrafanaLogs topics=system,info,account add action=GrafanaLogsAlert topics=interface,info add action=GrafanaLogsAlert topics=script,info add action=GrafanaLogsAlert topics=firewall,info add action=GrafanaLogsAlert topics=bgp,info add action=DudeLogs topics=info add action=InterfacesLogs topics=interface /system note set show-at-login=no /system ntp client set enabled=yes /system ntp client servers add address=182.253.66.202 add address=146.164.48.5 add address=0.ar.pool.ntp.org /system routerboard settings set auto-upgrade=yes /system scheduler add disabled=yes interval=6w3d name="Envio de Backups por Correo" on-event=backup_mail policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2020-04-28 start-time=20:52:07 add name=Reboot0500 on-event="/system reboot" policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2024-08-12 start-time=05:00:00 add name=Reboot0510 on-event="/system reboot" policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2024-08-12 start-time=05:10:00 add disabled=yes name=send-router-reboot-report on-event=":delay 30\r\n/system script run router-reboot-report" policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-time=startup /system script add dont-require-permissions=no name=backup_mail owner=admin policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source=":log info \"backup beginning now\"\r\n:global backupfile ([/system identity get name] . \"-\" . [/system clock\_get time])\r\n/system backup save name=\$backupfile\r\n:log info \"backup pausing for 10s\"\r\n:delay 10s\r\n:log info \"backup being emailed\"\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com subject=([/system identity get name] . \\ \" Backup\") from=\"MKT BGP_Core (1036) \" file=\$backupfile \r\n:log info \"backup finished\"" add dont-require-permissions=no name=router-reboot-report owner=marcos policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source=":delay 1\r\n\r\n:local reportBody \"\"\r\n\r\n:local deviceName [/system identity get name]\r\n:local deviceDate [/system clock get date]\r\n:local deviceTime [/system clock get time]\r\n:local hwModel [/system routerboard get model]\r\n:local rosVersion [/system package get system version]\r\n:local currentFirmware [/system routerboard get current-firmware]\r\n:local upgradeFirmware [/system routerboard get upgrade-firmware]\r\n\r\n\r\n:set reportBody (\$reportBody . \"Router Reboot Report for \$deviceName\\n\")\r\n:set reportBody (\$reportBody . \"Report generated on \$deviceDate at \$deviceTime\\n\\n\")\r\n\r\n:set reportBody (\$reportBody . \"Hardware Model: \$hwModel\\n\")\r\n:set reportBody (\$reportBody . \"RouterOS Version: \$rosVersion\\n\")\r\n:set reportBody (\$reportBody . \"Current Firmware: \$currentFirmware\\n\")\r\n:set reportBody (\$reportBody . \"Upgrade Firmware: \$upgradeFirmware\")\r\nif ( \$currentFirmware < \$upgradeFirmware) do={\r\n:set reportBody (\$reportBody . \"NOTE: You should upgrade the RouterBOARD firmware!\\n\")\r\n}\r\n\r\n:set reportBody (\$reportBody . \"\\n\\n=== Critical Log Events ===\\n\"\_)\r\n\r\n:local x\r\n:local ts\r\n:local msg\r\nforeach i in=([/log find where topics~\"critical\"]) do={\r\n:set \$ts [/log get \$i time]\r\n:set \$msg [/log get \$i message]\r\n:set \$reportBody (\$reportBody . \$ts . \" \" . \$msg . \"\\n\" )\r\n}\r\n\r\n:set reportBody (\$reportBody . \"\\n=== end of report ===\\n\")\r\n\r\n/tool e-mail send subject=\"[\$deviceName] Router Reboot Report\" to=\"mjbenegas@gmail.com\" body=\$reportBody" add dont-require-permissions=no name="Contar Prefijos" owner=andres policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="/system script\r\nadd dont-require-permissions=no name=bgp-prefixes owner=admin policy=read \\\r\n source=\"/routing/bgp/session {\\r\\\r\n \\n :global prefixes ({});\\r\\\r\n \\n :local maxlen 0;\\r\\\r\n \\n :foreach ses in=[find] do={\\r\\\r\n \\n :set \\\$remote [get \\\$ses \\\"remote.address\\\"]\\r\\\r\n \\n :set \\\$name [get \\\$ses name]\\r\\\r\n \\n :if ([:len \\\$name] > \\\$maxlen) do={\\r\\\r\n \\n :set \\\$maxlen [:len \\\$name]\\r\\\r\n \\n }\\r\\\r\n \\n :set (\\\$prefixes->\\\$name) [/routing/route/print count-only where belongs-to=\\\"bgp-IP-\\\$remote\\\"]\\r\\\r\n \\n }\\r\\\r\n \\n :set \\\$name \\\"Session \\\"\\r\\\r\n \\n :set \\\$name [:pick \\\$name 0 \\\$maxlen]\\r\\\r\n \\n :put \\\"\\\"\\r\\\r\n \\n :put \\\"\\\$name : Prefixes\\\"\\r\\\r\n \\n :put \\\"---------------------------\\\"\\r\\\r\n \\n :foreach name,prefix in=\\\$prefixes do={\\r\\\r\n \\n :set \\\$name (\\\$name.\\\" \\\")\\r\\\r\n \\n :set \\\$name [:pick \\\$name 0 \\\$maxlen]\\r\\\r\n \\n :put \\\"\\\$name : \\\$prefix\\\"\\r\\\r\n \\n }\\r\\\r\n \\n}\\r\\\r\n \\n\"" add dont-require-permissions=no name=bgp-prefixes owner=admin policy=read source="/routing/bgp/session {\r\n :global prefixes ({});\r\n :local maxlen 0;\r\n :foreach ses in=[find] do={\r\n :set \$remote [get \$ses \"remote.address\"]\r\n :set \$name [get \$ses name]\r\n :if ([:len \$name] > \$maxlen) do={\r\n :set \$maxlen [:len \$name]\r\n }\r\n :set (\$prefixes->\$name) [/routing/route/print count-only where belongs-to=\"bgp-IP-\$remote\"]\r\n }\r\n :set \$name \"Session \"\r\n :set \$name [:pick \$name 0 \$maxlen]\r\n :put \"\"\r\n :put \"\$name : Prefixes\"\r\n :put \"---------------------------\"\r\n :foreach name,prefix in=\$prefixes do={\r\n :set \$name (\$name.\" \")\r\n :set \$name [:pick \$name 0 \$maxlen]\r\n :put \"\$name : \$prefix\"\r\n }\r\n}\r\n" /tool e-mail set from="BGP_Core (CCR2116-12G-4S+) " port=465 server=mail.puntonetinternet.com tls=yes user=noc@puntonetinternet.com /tool graphing resource add /tool netwatch add comment=CABASE-MZA-ROU-01 disabled=yes down-script=":log info \"Ping caido a CABASE-MZA-MZA-ROU-01\";" host=200.14.38.254 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a CABASE-MZA-ROU-01\";" add comment=CABASE-BSAS-SWITCH disabled=yes down-script=":log info \"Ping caido a CABASE-PEERING_MZA-ROU-03\";" host=200.14.38.243 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a CABASE-PEERING_MZA-ROU-03\";" add comment=SILICA-MASTER-PEER disabled=yes down-script=":log info \"Ping caido a Silica-Master\";\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping caido a SILICA-MASTER-PEER\" body=\"SILICA-MASTER CAIDO\"" host=10.32.64.185 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a Silica-Master\";\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping restablecido a SILICA-MASTER-PEER\" body=\"SILICA-MASTER OK\"" add comment=SILICA-BACKUP-PEER disabled=yes down-script=":log info \"Ping caido a Silica-Slave\";\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping caido a SILICA-BACKUP-PEER\" body=\"SILICA-BACKUP CAIDO\"" host=10.32.48.209 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a Silica-Slave\";\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping restablecido a SILICA-BACKUP-PEER\" body=\"SILICA-BACKUP OK\"" add comment=CABASE-BSAS-RUTEO-CENTRAL disabled=yes down-script=":log info \"Ping caido a Cabase-Router-BSAS\";\r\n#/routing bgp peer disable 01\r\n#/interface ethernet disable vlan 1420 - Cabase APZ003\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping caido a CABASE-BSAS-RUTEO-CENTRAL\" body=\"CABASE CAIDO\"\r\n#delay 60\r\n#/interface ethernet enable vlan 1420 - Cabase APZ003\r\n" host=200.14.38.201 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a Cabase-Router-BSAS\";\r\n#/routing bgp peer enable 01\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping restablecido a CABASE-BSAS-RUTEO-CENTRAL\" body=\"CABASE OK\"" add comment=CABASE-MZA-SWT-01 disabled=yes down-script=":log info \"Ping caido a CABASE-MZA-SWT-01\";" host=200.14.38.253 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a CABASE-MZA-SWT-01\";" add comment=PEERING-WESTNET disabled=yes down-script=":log info \"Ping caido a\_Peering-Westnet\";\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping caido a PEERING-WESTNET\" body=\"WESTNET CAIDO\"" host=172.28.251.37 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a Peering-Westnet\";\r\n/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com from=\"MKT BGP_Core (Puntonet) \" subject=\"Ping restablecido a PEERING-WESTNET\" body=\"WESTNET OK\"" add comment=MONITOREO-WESTNET disabled=yes down-script=":log info \"Ping caido a Monitoreo-Westnet\";" host=172.28.252.33 http-codes="" test-script="" timeout=2s type=simple up-script=":log info \"Ping restablecido a Monitoreo-Westnet\";" /user group add name=dude policy="local,reboot,read,write,test,web,rest-api,!telnet,!ssh,!ftp,!policy,!winbox,!password,!sniff,!sensitive,!api,!romon" add name=oxidized policy="ssh,read,!local,!telnet,!ftp,!reboot,!write,!policy,!test,!winbox,!password,!web,!sniff,!sensitive,!api,!romon,!rest-api"