# routerboard: yes # model: RB4011iGS+ # serial-number: 96B10A1DC2C8 # firmware-type: al2 # factory-firmware: 6.43.10 # current-firmware: 7.19.4 # upgrade-firmware: 7.19.4 # # channel: stable # installed-version: 7.19.4 # # Flags: U - UNDOABLE # Columns: ACTION, BY, POLICY, TIME # ACTION BY POLICY TIME # U address list entry added ispcube write 2025-10-01 00:51:03 # U address list entry removed ispcube write 2025-09-30 19:54:03 # U address list entry removed ispcube write 2025-09-27 10:48:13 # U address list entry added ispcube write 2025-09-27 00:51:02 # U IPv6 address removed marcos write 2025-09-26 21:11:28 # U server_WLAN changed marcos write 2025-09-26 21:11:15 # U item changed marcos write 2025-09-26 21:11:05 # U ospf-area-R60_v3 changed marcos write 2025-09-26 21:10:54 # U ospf-interface-4 changed marcos write 2025-09-26 21:10:52 # U ospf-interface-3 changed marcos write 2025-09-26 21:10:50 # U ospf-interface-5 removed marcos write 2025-09-26 21:10:47 # U ospf-instance-R60_v3 changed marcos write 2025-09-26 21:10:44 # U simple queue removed ispcube write 2025-09-25 15:02:04 # U simple queue removed ispcube write 2025-09-25 14:51:30 # U simple queue removed ispcube write 2025-09-25 14:28:00 # U address list entry removed ispcube write 2025-09-24 20:05:07 # U address list entry removed ispcube write 2025-09-24 11:57:08 # U address list entry removed ispcube write 2025-09-24 10:40:05 # U address list entry added ispcube write 2025-09-24 09:57:42 # U address list entry added ispcube write 2025-09-24 09:57:40 # U address list entry added ispcube write 2025-09-24 09:57:40 # U address list entry added ispcube write 2025-09-24 09:57:35 # U address list entry added ispcube write 2025-09-24 09:57:35 # U address list entry added ispcube write 2025-09-24 09:57:35 # U script removed marcos write 2025-09-24 08:41:50 # U script removed marcos write 2025-09-24 08:41:49 # U simple queue removed ispcube write 2025-09-23 11:54:57 # U changed script settings marcos write 2025-09-22 16:49:32 # U simple queue removed ispcube write 2025-09-22 12:29:53 # U simple queue added ispcube write 2025-09-22 10:54:44 # U simple queue removed ispcube write 2025-09-22 10:54:44 # U simple queue removed ispcube write 2025-09-22 10:53:30 # U simple queue added ispcube write 2025-09-16 18:25:17 # U simple queue removed ispcube write 2025-09-16 18:25:17 # U changed script settings marcos write 2025-09-13 17:34:44 # U changed script settings marcos write 2025-09-10 14:38:11 # U changed script settings marcos write 2025-09-05 14:21:41 # U script removed marcos write 2025-09-05 14:21:28 # U script removed marcos write 2025-09-05 14:21:24 # U address list entry removed ispcube write 2025-09-03 13:30:04 # U simple queue added ispcube write 2025-09-02 17:03:13 # U simple queue removed ispcube write 2025-09-02 17:03:13 # U device changed marcos write 2025-08-28 09:46:25 # U address list entry removed ispcube write 2025-08-27 09:15:02 # # 2025-10-01 06:16:11 by RouterOS 7.19.4 # software id = J2J4-DNL0 # # model = RB4011iGS+ # serial number = 96B10A1DC2C8 /interface bridge add dhcp-snooping=yes fast-forward=no igmp-snooping=yes igmp-version=3 mld-version=2 multicast-querier=yes name=bridge_LAN port-cost-mode=short add igmp-snooping=yes igmp-version=3 mld-version=2 multicast-querier=yes name=bridge_vlan10 port-cost-mode=short add fast-forward=no name=bridge_vlan99 port-cost-mode=short add name=bridge_vlan108 add igmp-snooping=yes igmp-version=3 multicast-querier=yes name=bridge_vlan1005 /interface ethernet set [ find default-name=ether1 ] comment="MGMT - UNTAGGED VLAN99" set [ find default-name=ether2 ] comment="POSIBLEMENTE ROTA - MUCHO ERROR TX" disabled=yes set [ find default-name=ether3 ] comment="Enlace de BACKUP R60-2-SB - DOWN" set [ find default-name=ether6 ] comment="Epoint1 - UP" set [ find default-name=ether7 ] comment="Servicio casa/negocio" set [ find default-name=ether8 ] comment="Servicio casa/negocio" set [ find default-name=ether9 ] comment="Sensor de Linea (TP-Link) - 172.22.0.183" set [ find default-name=ether10 ] comment="Servicio casa/negocio" set [ find default-name=sfp-sfpplus1 ] comment=TRUNK_MAIN /interface vlan add interface=sfp-sfpplus1 name=vlan10 vlan-id=10 add interface=sfp-sfpplus1 name=vlan99 vlan-id=99 add interface=sfp-sfpplus1 name=vlan108_IN_Andariego vlan-id=108 add comment=NETVIDEO+IPTV interface=sfp-sfpplus1 name=vlan1005 vlan-id=1005 add interface=ether3 name=vlan_10 vlan-id=10 add interface=ether6 name=vlan_99 vlan-id=99 add interface=ether6 name=vlan_108_OUT_Andariego vlan-id=108 add comment=NETVIDEO+IPTV interface=ether3 name=vlan_1005 vlan-id=1005 /interface list add name=MGMT /ip pool add name=pool_R60 ranges=172.22.0.10-172.22.0.254 /ip dhcp-server add address-pool=pool_R60 interface=bridge_LAN lease-time=4h name=server_R60 /ip smb users set [ find default=yes ] disabled=yes /ipv6 dhcp-server add disabled=yes interface=bridge_LAN name=server_WLAN prefix-pool=pool_WLAN /ipv6 pool add name=pool_WLAN prefix=2803:d8c0:4006::/48 prefix-length=60 /port set 0 name=serial0 set 1 name=serial1 /queue simple add max-limit=5120k/15360k name="Mamani Victor - 172.22.0.132" priority=7/7 target=172.22.0.132/32 add max-limit=7168k/25600k name="Tonetto Rocio Abril - 172.22.0.80" priority=6/6 target=172.22.0.80/32 add max-limit=7168k/25600k name="Villalobos Daniel Agust\EDn - 172.22.0.74" priority=6/6 target=172.22.0.74/32 add max-limit=5120k/15360k name="Benito Sergio Walter - 172.22.0.235" priority=7/7 target=172.22.0.235/32 add max-limit=7168k/25600k name="Quiroga Juan Pablo - 172.22.0.125" priority=6/6 target=172.22.0.125/32 add max-limit=5120k/15360k name="Saltaleggio Rafael Florencio - 172.22.0.150" priority=7/7 target=172.22.0.150/32 add max-limit=7168k/25600k name="Sarmiento Guillermo - 172.22.0.152" priority=6/6 target=172.22.0.152/32 add max-limit=7168k/25600k name="Saldivar Emilio - 172.22.0.157" priority=6/6 target=172.22.0.157/32 add max-limit=7168k/25600k name="Saravia Ezequiel - 172.22.0.64" priority=6/6 target=172.22.0.64/32 add max-limit=7168k/25600k name="Puebla Roberto Antonio - 172.22.0.129" priority=6/6 target=172.22.0.129/32 add max-limit=5120k/15360k name="Miralles Dario - 172.22.0.105" priority=7/7 target=172.22.0.105/32 add max-limit=5120k/15360k name="Fernandez Raul - 172.22.0.226" priority=7/7 target=172.22.0.226/32 add max-limit=30720k/51200k name="Figueroa Hernan - 172.22.0.176" priority=1/1 target=172.22.0.176/32 add max-limit=5120k/15360k name="Masso Santiago Francisco - 172.22.0.164" priority=7/7 target=172.22.0.164/32 add max-limit=5120k/15360k name="Miralles Mauricio - 172.22.0.141" priority=7/7 target=172.22.0.141/32 add max-limit=5120k/15360k name="Choque Magdaly - 172.22.0.167" priority=7/7 target=172.22.0.167/32 add max-limit=5120k/15360k name="Reyes Mario Mauricio - 172.22.0.29" priority=7/7 target=172.22.0.29/32 add max-limit=5120k/15360k name="Guerrero Angelica - 172.22.0.45" priority=7/7 target=172.22.0.45/32 add max-limit=5120k/15360k name="Castillo Jose Antonio - 172.22.0.202" priority=7/7 target=172.22.0.202/32 add max-limit=7168k/25600k name="Figueroa M\F3nica - 172.22.0.139" priority=6/6 target=172.22.0.139/32 add max-limit=7168k/25600k name="Agrorosal S.A. - 172.22.0.102" priority=6/6 target=172.22.0.102/32 add max-limit=5120k/15360k name="Suarez Angela Maria - 172.22.0.182" priority=7/7 target=172.22.0.182/32 add max-limit=5120k/15360k name="Lopez Cordoba Noe Ignacio - 172.22.0.156" priority=7/7 target=172.22.0.156/32 add max-limit=5120k/15360k name="Cari Balcazar Rolando - 172.22.0.142" priority=7/7 target=172.22.0.142/32 add max-limit=5120k/15360k name="Lopez Alberto Daniel - 172.22.0.140" priority=7/7 target=172.22.0.140/32 add max-limit=5120k/15360k name="Lobato Hernan Augusto - 172.22.0.19" priority=7/7 target=172.22.0.19/32 add max-limit=7168k/25600k name="Cruz Carlos Alberto - 172.22.0.40" priority=6/6 target=172.22.0.40/32 add max-limit=5120k/15360k name="Copa Portales Pedro - 172.22.0.126" priority=7/7 target=172.22.0.126/32 add max-limit=7168k/25600k name="Gallardo Cardozo Evelin - 172.22.0.111" priority=6/6 target=172.22.0.111/32 add max-limit=5120k/15360k name="Garcia Romero Eudal - 172.22.0.107" priority=7/7 target=172.22.0.107/32 add max-limit=5120k/15360k name="Contreras Maria del Carmen - 172.22.0.106" priority=7/7 target=172.22.0.106/32 add max-limit=7168k/25600k name="Marcianesi Hugo - 172.22.0.103" priority=6/6 target=172.22.0.103/32 add max-limit=5120k/15360k name="Morales Sonia Cristina - 172.22.0.97" priority=7/7 target=172.22.0.97/32 add max-limit=5120k/15360k name="Garcia Mamani Juan - 172.22.0.96" priority=7/7 target=172.22.0.96/32 add max-limit=7168k/25600k name="Cruz Joel Alexander - 172.22.0.92" priority=6/6 target=172.22.0.92/32 add max-limit=7168k/25600k name="Avila Miguel Angel - 172.22.0.89" priority=6/6 target=172.22.0.89/32 add max-limit=5120k/15360k name="Manzano Jorge Alberto - 172.22.0.87" priority=7/7 target=172.22.0.87/32 add max-limit=5120k/15360k name="Ortega Alexandro - 172.22.0.86" priority=7/7 target=172.22.0.86/32 add max-limit=7168k/25600k name="Soto Reinaldo - 172.22.0.83" priority=6/6 target=172.22.0.83/32 add max-limit=5120k/15360k name="Dorado Cruz Edwin - 172.22.0.82" priority=7/7 target=172.22.0.82/32 add max-limit=5120k/15360k name="Cruz Rodrigo - 172.22.0.79" priority=7/7 target=172.22.0.79/32 add max-limit=7168k/25600k name="Giuliano Graciela Elizabeth Carolina - 172.22.0.76" priority=6/6 target=172.22.0.76/32 add max-limit=7168k/25600k name="Sosa Maximiliano - 172.22.0.72" priority=6/6 target=172.22.0.72/32 add max-limit=7168k/25600k name="Rivas Rolando Ariel - 172.22.0.70" priority=6/6 target=172.22.0.70/32 add max-limit=5120k/15360k name="Rossi Marina Alicia - 172.22.0.67" priority=7/7 target=172.22.0.67/32 add max-limit=7168k/25600k name="Arancibia Estela Maria - 172.22.0.66" priority=6/6 target=172.22.0.66/32 add max-limit=5120k/15360k name="Caballero Celeste - 172.22.0.65" priority=7/7 target=172.22.0.65/32 add max-limit=5120k/15360k name="Arriagada Daniel - 172.22.0.57" priority=7/7 target=172.22.0.57/32 add max-limit=7168k/25600k name="Bello Claudia Noemi - 172.22.0.56" priority=6/6 target=172.22.0.56/32 add max-limit=5120k/15360k name="Sotero Gomez Santos - 172.22.0.55" priority=7/7 target=172.22.0.55/32 add max-limit=5120k/15360k name="Lopez Sonia Haydee - 172.22.0.52" priority=7/7 target=172.22.0.52/32 add max-limit=7168k/25600k name="Borda Angel Gustavo - 172.22.0.50" priority=6/6 target=172.22.0.50/32 add max-limit=5120k/15360k name="Choque Rea\F1o Ruben Alfredo - 172.22.0.49" priority=7/7 target=172.22.0.49/32 add max-limit=7168k/25600k name="Serrano Mariana - 172.22.0.41" priority=6/6 target=172.22.0.41/32 add max-limit=5120k/15360k name="Flamarique Guillermo Daniel - 172.22.0.133" priority=7/7 target=172.22.0.133/32 add max-limit=5120k/15360k name="Leon Mario Alberto - 172.22.0.35" priority=7/7 target=172.22.0.35/32 add max-limit=7168k/25600k name="Kallpa s.a. - 172.22.0.32" priority=6/6 target=172.22.0.32/32 add max-limit=5120k/15360k name="Perez Beatriz Rosario - 172.22.0.91" priority=7/7 target=172.22.0.91/32 add max-limit=7168k/25600k name="Velasquez Laura - 172.22.0.43" priority=6/6 target=172.22.0.43/32 add max-limit=5120k/15360k name="Tonetto Alselmo Emiliano - 172.22.0.30" priority=7/7 target=172.22.0.30/32 add max-limit=7168k/25600k name="Flamarique Guillermo Daniel - 172.22.0.28" priority=6/6 target=172.22.0.28/32 add max-limit=7168k/25600k name="Tobares Walter Gaston - 172.22.0.25" priority=6/6 target=172.22.0.25/32 add max-limit=7168k/25600k name="Bustos Maria Laura - 172.22.0.162" priority=6/6 target=172.22.0.162/32 add max-limit=7168k/25600k name="Amancich Nilda Lorena - 172.22.0.23" priority=6/6 target=172.22.0.23/32 add max-limit=5120k/15360k name="Brito Rodrigo Ariel - 172.22.0.22" priority=7/7 target=172.22.0.22/32 add max-limit=7168k/25600k name="Pablo Andrea - 172.22.0.13" priority=6/6 target=172.22.0.13/32 add max-limit=7168k/25600k name="Arce Laura Beatriz - 172.22.0.11" priority=6/6 target=172.22.0.11/32 add max-limit=5120k/15360k name="Valdiviezo Constantina - 172.22.0.69" priority=7/7 target=172.22.0.69/32 add max-limit=7168k/25600k name="Ziza Karen - 172.22.0.71" priority=6/6 target=172.22.0.71/32 add max-limit=7168k/25600k name="Cazon Richard - 172.22.0.85" priority=6/6 target=172.22.0.85/32 add max-limit=7168k/25600k name="Rocha Marisol Ailen - 172.22.0.100" priority=6/6 target=172.22.0.100/32 add max-limit=7168k/25600k name="Serrano Armando Agapito - 172.22.0.14" priority=6/6 target=172.22.0.14/32 add max-limit=7168k/25600k name="Brito Eduardo Emanuel - 172.22.0.113" priority=6/6 target=172.22.0.113/32 add max-limit=7168k/25600k name="Solano Cristian - 172.22.0.20" priority=6/6 target=172.22.0.20/32 add max-limit=7168k/25600k name="Brondo Andres Martin - 172.22.0.27" priority=6/6 target=172.22.0.27/32 add max-limit=7168k/25600k name="Antequera Juan Carlos - 172.22.0.47" priority=6/6 target=172.22.0.47/32 add max-limit=7168k/25600k name="Bodega Norton s.a. - 172.22.0.101" priority=6/6 target=172.22.0.101/32 add max-limit=7168k/25600k name="Lucero Sergio Dante - 172.22.0.104" priority=6/6 target=172.22.0.104/32 add max-limit=5120k/15360k name="Rodriguez Perez Sonia - 172.22.0.108" priority=7/7 target=172.22.0.108/32 add max-limit=7168k/25600k name="Carvacho Jaquelina Rosa - 172.22.0.119" priority=6/6 target=172.22.0.119/32 add max-limit=7168k/25600k name="Ibarra Diana Damaris - 172.22.0.42" priority=6/6 target=172.22.0.42/32 add max-limit=7168k/25600k name="Gonzalez Sebastian Lautaro - 172.22.0.73" priority=6/6 target=172.22.0.73/32 add max-limit=7168k/25600k name="Carranza Jorge Mateo - 172.22.0.109" priority=6/6 target=172.22.0.109/32 add max-limit=5120k/15360k name="Ramos Ortega Omar - 172.22.0.123" priority=7/7 target=172.22.0.123/32 add max-limit=7168k/25600k name="Alaniz Maria Alejandra - 172.22.0.124" priority=6/6 target=172.22.0.124/32 add max-limit=7168k/25600k name="Errasti Raul Alejandro - 172.22.0.81" priority=6/6 target=172.22.0.81/32 add max-limit=7168k/25600k name="Quiroga Morata Franco Javier - 172.22.0.21" priority=6/6 target=172.22.0.21/32 add max-limit=7168k/25600k name="Santillan Soledad Daiana - 172.22.0.51" priority=6/6 target=172.22.0.51/32 add max-limit=7168k/25600k name="Molina Javier Cristian - 172.22.0.163" priority=6/6 target=172.22.0.163/32 add max-limit=7168k/25600k name="Fernandez Jose Luis - 172.22.0.122" priority=6/6 target=172.22.0.122/32 add max-limit=7168k/25600k name="Benito Luis - 172.22.0.121" priority=6/6 target=172.22.0.121/32 add max-limit=7168k/25600k name="Soto Rios Silvina Romina - 172.22.0.128" priority=6/6 target=172.22.0.128/32 add max-limit=7168k/25600k name="Paez Joana Belen - 172.22.0.130" priority=6/6 target=172.22.0.130/32 add max-limit=7168k/25600k name="Cruz Aguilar Josefina - 172.22.0.135" priority=6/6 target=172.22.0.135/32 add max-limit=7168k/25600k name="Segundo Lorena Vanesa - 172.22.0.136" priority=6/6 target=172.22.0.136/32 add max-limit=7168k/25600k name="Allende Alberto Isaac - 172.22.0.12" priority=6/6 target=172.22.0.12/32 add max-limit=7168k/25600k name="Rojas Janet Magali - 172.22.0.127" priority=6/6 target=172.22.0.127/32 add max-limit=5120k/15360k name="Martin Paula Andrea - 172.22.0.131" priority=7/7 target=172.22.0.131/32 add max-limit=7168k/25600k name="Vera Eduardo Ramon - 172.22.0.137" priority=6/6 target=172.22.0.137/32 add max-limit=7168k/25600k name="Narvaez Maria Veronica - 172.22.0.94" priority=6/6 target=172.22.0.94/32 add max-limit=7168k/25600k name="Soto Erica - 172.22.0.145" priority=6/6 target=172.22.0.145/32 add max-limit=7168k/25600k name="Molina Emanuel - 172.22.0.33" priority=6/6 target=172.22.0.33/32 add max-limit=7168k/25600k name="Vasquez Sarabia Ramiro Nahuel - 172.22.0.147" priority=6/6 target=172.22.0.147/32 add max-limit=7168k/25600k name="Quiroga Cristian Alberto - 172.22.0.149" priority=6/6 target=172.22.0.149/32 add max-limit=7168k/25600k name="Paredes Burgos Inocencia - 172.22.0.151" priority=6/6 target=172.22.0.151/32 add max-limit=7168k/25600k name="Lopez Mirtha Gladys - 172.22.0.153" priority=6/6 target=172.22.0.153/32 add max-limit=7168k/25600k name="Lobato Carlos Antonio - 172.22.0.155" priority=6/6 target=172.22.0.155/32 add max-limit=7168k/25600k name="Valdez Monica Beatriz - 172.22.0.143" priority=6/6 target=172.22.0.143/32 add max-limit=7168k/25600k name="Fernandez Johanna Lourdes - 172.22.0.160" priority=6/6 target=172.22.0.160/32 add max-limit=7168k/25600k name="Navarrete Yamina Micaela - 172.22.0.161" priority=6/6 target=172.22.0.161/32 add max-limit=7168k/25600k name="Mu\F1oz Claudia Veronica - 172.22.0.165" priority=6/6 target=172.22.0.165/32 add max-limit=7168k/25600k name="Silva Torres Samuel - 172.22.0.166" priority=6/6 target=172.22.0.166/32 add max-limit=5120k/15360k name="Miralles Eduardo - 172.22.0.177" priority=7/7 target=172.22.0.177/32 add max-limit=7168k/25600k name="Michalik Melisa Rocio - 172.22.0.24" priority=6/6 target=172.22.0.24/32 add max-limit=5120k/15360k name="Macual Sas - 172.22.0.144" priority=7/7 target=172.22.0.144/32 add max-limit=7168k/25600k name="Oliva Balbina Irene - 172.22.0.31" priority=6/6 target=172.22.0.31/32 add max-limit=7168k/25600k name="Soto Gregorio - 172.22.0.37" priority=6/6 target=172.22.0.37/32 add max-limit=7168k/25600k name="Segundo Lorena Vanesa - 172.22.0.53" priority=6/6 target=172.22.0.53/32 add max-limit=5120k/15360k name="Arancibia Elina Aurora - 172.22.0.59" priority=7/7 target=172.22.0.59/32 add max-limit=7168k/25600k name="Cruz Impa Miguel Angel - 172.22.0.16" priority=6/6 target=172.22.0.16/32 add max-limit=7168k/25600k name="Arancibia Amalia Hilda - 172.22.0.17" priority=6/6 target=172.22.0.17/32 add max-limit=7168k/25600k name="Valdes Pereyra Jose - 172.22.0.54" priority=6/6 target=172.22.0.54/32 add max-limit=7168k/25600k name="Silva Marco Antonio - 172.22.0.61" priority=6/6 target=172.22.0.61/32 add max-limit=5120k/15360k name="Valdez Blanca Laurentina - 172.22.0.26" priority=7/7 target=172.22.0.26/32 add max-limit=5120k/15360k name="Guerrero Sandra - 172.22.0.46" priority=7/7 target=172.22.0.46/32 add max-limit=7168k/25600k name="Tolaba Silvia Lorena - 172.22.0.39" priority=6/6 target=172.22.0.39/32 add max-limit=5120k/15360k name="Colussi Fernando Ariel Emanuel - 172.22.6.72" priority=7/7 target=172.22.6.72/32 /routing id add disabled=no id=10.255.255.6 name=ospf_id select-dynamic-id="" /routing ospf instance add disabled=no name=ospf-backbone_v2 router-id=ospf_id add disabled=yes name=ospf-instance-R60_v3 router-id=ospf_id version=3 /routing ospf area add disabled=no instance=ospf-backbone_v2 name=ospf-backbone_v2 add area-id=0.0.0.5 disabled=yes instance=ospf-instance-R60_v3 name=ospf-area-R60_v3 /snmp community add addresses=192.168.200.253/32,192.168.200.155/32 authentication-protocol=SHA1 encryption-protocol=AES name=pnet /system logging action set 3 remote=192.168.200.168 add disk-file-count=5 disk-file-name=Error name=ErrorLogs target=disk add disk-file-count=5 disk-file-name=Info name=InfoLogs target=disk add disk-file-count=5 disk-file-name=Critical name=CriticalLogs target=disk add disk-file-count=5 disk-file-name=Warning name=WarningLogs target=disk add name=DudeLogs remote=192.168.200.253 remote-log-format=syslog syslog-facility=local6 target=remote add name=GrafanaLogs remote=192.168.200.168 remote-log-format=syslog src-address=10.99.0.67 target=remote add name=GrafanaLogsAlert remote=192.168.200.168 remote-log-format=syslog src-address=10.99.0.67 syslog-facility=local1 syslog-severity=alert target=remote add name=GrafanaLogsInfo remote=192.168.200.168 remote-log-format=syslog src-address=10.99.0.67 syslog-facility=local1 syslog-severity=info target=remote add disk-file-count=5 disk-file-name=Interfaces name=InterfacesLogs target=disk add disk-file-count=5 disk-file-name=OSPF name=OSPFLogs target=disk add disk-file-count=5 disk-file-name=DHCP name=DHCPLogs target=disk add disk-file-count=5 disk-file-name=Mails name=MailsLogs target=disk /user group add name=dude policy="local,reboot,read,write,test,winbox,web,rest-api,!telnet,!ssh,!ftp,!policy,!password,!sniff,!sensitive,!api,!romon" add name=oxidized policy="ssh,read,!local,!telnet,!ftp,!reboot,!write,!policy,!test,!winbox,!password,!web,!sniff,!sensitive,!api,!romon,!rest-api" add name=pnet policy="local,telnet,ssh,ftp,reboot,read,write,test,winbox,web,sniff,sensitive,api,romon,!policy,!password,!rest-api" /interface bridge port add bridge=bridge_vlan99 interface=ether1 internal-path-cost=10 path-cost=10 add bridge=bridge_vlan99 interface=vlan99 internal-path-cost=10 path-cost=10 add bridge=bridge_LAN interface=ether6 internal-path-cost=10 path-cost=10 add bridge=bridge_LAN interface=ether7 internal-path-cost=10 path-cost=10 add bridge=bridge_LAN interface=ether8 internal-path-cost=10 path-cost=10 add bridge=bridge_LAN interface=ether9 internal-path-cost=10 path-cost=10 add bridge=bridge_vlan10 interface=vlan10 internal-path-cost=10 path-cost=10 add bridge=bridge_vlan10 interface=vlan_10 internal-path-cost=10 path-cost=10 add bridge=bridge_LAN interface=ether10 internal-path-cost=10 path-cost=10 add bridge=bridge_vlan99 interface=vlan_99 internal-path-cost=10 path-cost=10 add bridge=bridge_vlan108 interface=vlan108_IN_Andariego add bridge=bridge_vlan108 interface=vlan_108_OUT_Andariego add bridge=bridge_vlan1005 interface=vlan1005 add bridge=bridge_vlan1005 interface=vlan_1005 /ip firewall connection tracking set udp-timeout=10s /ip neighbor discovery-settings set discover-interface-list=MGMT /ip settings set tcp-syncookies=yes /interface list member add interface=bridge_vlan99 list=MGMT add interface=ether9 list=MGMT /interface ovpn-server server add mac-address=FE:A8:A4:00:B9:08 name=ovpn-server1 /ip address add address=172.22.0.1/24 interface=bridge_LAN network=172.22.0.0 add address=10.99.0.67/24 comment=MGMT interface=bridge_vlan99 network=10.99.0.0 add address=168.197.196.206/29 interface=bridge_vlan10 network=168.197.196.200 add address=168.197.196.202 interface=bridge_vlan10 network=168.197.196.202 add address=168.197.196.203 disabled=yes interface=bridge_vlan10 network=168.197.196.203 add address=168.197.196.204 disabled=yes interface=bridge_vlan10 network=168.197.196.204 add address=168.197.196.205 disabled=yes interface=bridge_vlan10 network=168.197.196.205 add address=10.1.1.3/24 comment=NETVIDEO+IPTV interface=bridge_vlan1005 network=10.1.1.0 add address=10.255.255.6 comment=loopback interface=lo network=10.255.255.6 /ip dhcp-server lease add address=172.22.0.235 client-id=1:68:72:51:c:54:bd mac-address=68:72:51:0C:54:BD server=server_R60 add address=172.22.0.226 client-id=1:dc:9f:db:30:78:9c mac-address=DC:9F:DB:30:78:9C server=server_R60 add address=172.22.0.202 always-broadcast=yes client-id=1:78:8a:20:1a:fd:90 mac-address=78:8A:20:1A:FD:90 server=server_R60 add address=172.22.0.182 client-id=1:68:72:51:70:2f:2 mac-address=68:72:51:70:2F:02 server=server_R60 add address=172.22.0.176 client-id=1:c4:71:54:5b:71:d3 mac-address=C4:71:54:5B:71:D3 server=server_R60 add address=172.22.0.164 client-id=1:f0:9f:c2:e4:c1:bd mac-address=F0:9F:C2:E4:C1:BD server=server_R60 add address=172.22.0.156 client-id=1:b4:fb:e4:62:77:81 mac-address=B4:FB:E4:62:77:81 server=server_R60 add address=172.22.0.157 client-id=1:b4:fb:e4:3a:a2:e0 mac-address=B4:FB:E4:3A:A2:E0 server=server_R60 add address=172.22.0.150 client-id=1:24:a4:3c:f4:c1:7c mac-address=24:A4:3C:F4:C1:7C server=server_R60 add address=172.22.0.142 client-id=1:b4:fb:e4:a0:97:d0 mac-address=B4:FB:E4:A0:97:D0 server=server_R60 add address=172.22.0.141 client-id=1:b4:fb:e4:66:43:69 mac-address=B4:FB:E4:66:43:69 server=server_R60 add address=172.22.0.140 client-id=1:b4:fb:e4:62:95:ea mac-address=B4:FB:E4:62:95:EA server=server_R60 add address=172.22.0.133 client-id=1:fc:ec:da:6:57:22 mac-address=FC:EC:DA:06:57:22 server=server_R60 add address=172.22.0.146 client-id=1:18:d6:c7:d5:7b:9 mac-address=18:D6:C7:D5:7B:09 server=server_R60 add address=172.22.0.126 client-id=1:18:e8:29:8a:54:95 mac-address=18:E8:29:8A:54:95 server=server_R60 add address=172.22.0.125 client-id=1:18:e8:29:8a:54:90 mac-address=18:E8:29:8A:54:90 server=server_R60 add address=172.22.0.113 client-id=1:74:83:c2:a4:89:35 mac-address=74:83:C2:A4:89:35 server=server_R60 add address=172.22.0.111 client-id=1:74:83:c2:e4:d0:4a mac-address=74:83:C2:E4:D0:4A server=server_R60 add address=172.22.0.107 client-id=1:74:83:c2:a8:1d:2a mac-address=74:83:C2:A8:1D:2A server=server_R60 add address=172.22.0.106 client-id=1:74:83:c2:e2:61:9e mac-address=74:83:C2:E2:61:9E server=server_R60 add address=172.22.0.105 client-id=1:dc:9f:db:92:23:a8 mac-address=DC:9F:DB:92:23:A8 server=server_R60 add address=172.22.0.103 client-id=1:18:e8:29:88:d4:1d mac-address=18:E8:29:88:D4:1D server=server_R60 add address=172.22.0.102 client-id=1:18:e8:29:88:c4:4d mac-address=18:E8:29:88:C4:4D server=server_R60 add address=172.22.0.97 client-id=1:74:83:c2:e2:66:28 mac-address=74:83:C2:E2:66:28 server=server_R60 add address=172.22.0.96 client-id=1:e0:63:da:90:10:11 mac-address=E0:63:DA:90:10:11 server=server_R60 add address=172.22.0.92 client-id=1:74:83:c2:e4:d7:c mac-address=74:83:C2:E4:D7:0C server=server_R60 add address=172.22.0.89 client-id=1:e0:63:da:90:0:c1 mac-address=E0:63:DA:90:00:C1 server=server_R60 add address=172.22.0.87 client-id=1:e0:63:da:f4:55:64 mac-address=E0:63:DA:F4:55:64 server=server_R60 add address=172.22.0.86 client-id=1:e0:63:da:f4:2a:79 mac-address=E0:63:DA:F4:2A:79 server=server_R60 add address=172.22.0.83 client-id=1:e0:63:da:46:f0:f7 mac-address=E0:63:DA:46:F0:F7 server=server_R60 add address=172.22.0.82 client-id=1:e0:63:da:f6:4e:54 mac-address=E0:63:DA:F6:4E:54 server=server_R60 add address=172.22.0.80 client-id=1:e0:63:da:f4:61:b7 mac-address=E0:63:DA:F4:61:B7 server=server_R60 add address=172.22.0.79 client-id=1:18:e8:29:8a:57:2f mac-address=18:E8:29:8A:57:2F server=server_R60 add address=172.22.0.76 client-id=1:e0:63:da:9c:b6:18 mac-address=E0:63:DA:9C:B6:18 server=server_R60 add address=172.22.0.74 client-id=1:e0:63:da:f4:63:3b mac-address=E0:63:DA:F4:63:3B server=server_R60 add address=172.22.0.72 client-id=1:e0:63:da:f4:42:70 mac-address=E0:63:DA:F4:42:70 server=server_R60 add address=172.22.0.70 client-id=1:18:e8:29:3a:2a:ea mac-address=18:E8:29:3A:2A:EA server=server_R60 add address=172.22.0.67 client-id=1:74:ac:b9:7a:e6:b1 mac-address=74:AC:B9:7A:E6:B1 server=server_R60 add address=172.22.0.66 client-id=1:74:ac:b9:78:ef:96 mac-address=74:AC:B9:78:EF:96 server=server_R60 add address=172.22.0.65 client-id=1:74:ac:b9:78:ef:4d mac-address=74:AC:B9:78:EF:4D server=server_R60 add address=172.22.0.64 client-id=1:18:e8:29:88:cd:e3 mac-address=18:E8:29:88:CD:E3 server=server_R60 add address=172.22.0.57 client-id=1:74:ac:b9:78:ef:93 mac-address=74:AC:B9:78:EF:93 server=server_R60 add address=172.22.0.56 client-id=1:e0:63:da:f4:53:9a mac-address=E0:63:DA:F4:53:9A server=server_R60 add address=172.22.0.55 client-id=1:f4:92:bf:e8:6c:13 mac-address=F4:92:BF:E8:6C:13 server=server_R60 add address=172.22.0.53 client-id=1:f4:92:bf:e0:5e:a9 mac-address=F4:92:BF:E0:5E:A9 server=server_R60 add address=172.22.0.52 client-id=1:68:d7:9a:a2:80:fe mac-address=68:D7:9A:A2:80:FE server=server_R60 add address=172.22.0.51 client-id=1:f4:92:bf:d2:ab:d4 mac-address=F4:92:BF:D2:AB:D4 server=server_R60 add address=172.22.0.50 client-id=1:68:d7:9a:a2:82:c7 mac-address=68:D7:9A:A2:82:C7 server=server_R60 add address=172.22.0.49 client-id=1:f4:92:bf:d2:ac:2c mac-address=F4:92:BF:D2:AC:2C server=server_R60 add address=172.22.0.44 client-id=1:f4:92:bf:f2:dc:16 mac-address=F4:92:BF:F2:DC:16 server=server_R60 add address=172.22.0.43 client-id=1:f4:92:bf:3e:f1:a5 mac-address=F4:92:BF:3E:F1:A5 server=server_R60 add address=172.22.0.41 client-id=1:b4:fb:e4:3a:8b:a9 mac-address=B4:FB:E4:3A:8B:A9 server=server_R60 add address=172.22.0.40 client-id=1:e0:63:da:9c:94:8e mac-address=E0:63:DA:9C:94:8E server=server_R60 add address=172.22.0.36 client-id=1:f4:92:bf:48:3d:93 mac-address=F4:92:BF:48:3D:93 server=server_R60 add address=172.22.0.35 client-id=1:68:72:51:3a:bc:1e mac-address=68:72:51:3A:BC:1E server=server_R60 add address=172.22.0.33 client-id=1:f4:92:bf:48:32:52 mac-address=F4:92:BF:48:32:52 server=server_R60 add address=172.22.0.32 client-id=1:f4:92:bf:48:23:5 mac-address=F4:92:BF:48:23:05 server=server_R60 add address=172.22.0.30 client-id=1:74:83:c2:e2:69:75 mac-address=74:83:C2:E2:69:75 server=server_R60 add address=172.22.0.29 client-id=1:e0:63:da:46:cd:d4 mac-address=E0:63:DA:46:CD:D4 server=server_R60 add address=172.22.0.28 client-id=1:f4:92:bf:ee:2a:d9 mac-address=F4:92:BF:EE:2A:D9 server=server_R60 add address=172.22.0.25 client-id=1:f4:92:bf:4c:c7:75 mac-address=F4:92:BF:4C:C7:75 server=server_R60 add address=172.22.0.23 client-id=1:fc:ec:da:5a:2d:68 mac-address=FC:EC:DA:5A:2D:68 server=server_R60 add address=172.22.0.22 client-id=1:b4:fb:e4:38:6a:94 mac-address=B4:FB:E4:38:6A:94 server=server_R60 add address=172.22.0.15 client-id=1:e0:63:da:f4:52:94 mac-address=E0:63:DA:F4:52:94 server=server_R60 add address=172.22.0.14 client-id=1:74:ac:b9:7e:78:1f mac-address=74:AC:B9:7E:78:1F server=server_R60 add address=172.22.0.13 client-id=1:fc:ec:da:c:95:c8 mac-address=FC:EC:DA:0C:95:C8 server=server_R60 add address=172.22.0.11 client-id=1:f4:92:bf:4c:da:9 mac-address=F4:92:BF:4C:DA:09 server=server_R60 add address=172.22.0.69 client-id=1:24:5a:4c:44:13:fc mac-address=24:5A:4C:44:13:FC server=server_R60 add address=172.22.0.71 client-id=1:18:e8:29:88:c4:dc mac-address=18:E8:29:88:C4:DC server=server_R60 add address=172.22.0.85 client-id=1:24:5a:4c:e8:5b:f3 mac-address=24:5A:4C:E8:5B:F3 server=server_R60 add address=172.22.0.21 client-id=1:f4:92:bf:4c:e1:f3 mac-address=F4:92:BF:4C:E1:F3 server=server_R60 add address=172.22.0.68 client-id=1:74:ac:b9:78:ea:1f mac-address=74:AC:B9:78:EA:1F server=server_R60 add address=172.22.0.100 client-id=1:78:8a:20:3e:c3:aa mac-address=78:8A:20:3E:C3:AA server=server_R60 add address=172.22.0.20 client-id=1:74:ac:b9:78:e8:d0 mac-address=74:AC:B9:78:E8:D0 server=server_R60 add address=172.22.0.27 client-id=1:fc:ec:da:9a:42:f4 mac-address=FC:EC:DA:9A:42:F4 server=server_R60 add address=172.22.0.104 client-id=1:24:5a:4c:46:c5:7b mac-address=24:5A:4C:46:C5:7B server=server_R60 add address=172.22.0.47 client-id=1:24:5a:4c:e6:df:1f mac-address=24:5A:4C:E6:DF:1F server=server_R60 add address=172.22.0.101 client-id=1:b4:fb:e4:68:9a:c2 mac-address=B4:FB:E4:68:9A:C2 server=server_R60 add address=172.22.0.108 client-id=1:fc:ec:da:8:8a:c3 mac-address=FC:EC:DA:08:8A:C3 server=server_R60 add address=172.22.0.115 client-id=1:fc:ec:da:26:36:d mac-address=FC:EC:DA:26:36:0D server=server_R60 add address=172.22.0.119 client-id=1:24:5a:4c:46:c9:b2 mac-address=24:5A:4C:46:C9:B2 server=server_R60 add address=172.22.0.60 client-id=1:f0:9f:c2:ee:96:12 mac-address=F0:9F:C2:EE:96:12 server=server_R60 add address=172.22.0.173 client-id=1:78:8a:20:ac:a8:f4 mac-address=78:8A:20:AC:A8:F4 server=server_R60 add address=172.22.0.18 client-id=1:78:45:58:a0:a1:4e mac-address=78:45:58:A0:A1:4E server=server_R60 add address=172.22.0.34 client-id=1:78:45:58:a0:a0:63 mac-address=78:45:58:A0:A0:63 server=server_R60 add address=172.22.0.62 client-id=1:e0:63:da:d8:5e:67 mac-address=E0:63:DA:D8:5E:67 server=server_R60 add address=172.22.0.117 client-id=1:68:72:51:4e:ce:54 mac-address=68:72:51:4E:CE:54 server=server_R60 add address=172.22.0.99 client-id=1:fc:ec:da:c4:d4:59 mac-address=FC:EC:DA:C4:D4:59 server=server_R60 add address=172.22.0.112 client-id=1:74:83:c2:e4:d6:e1 mac-address=74:83:C2:E4:D6:E1 server=server_R60 add address=172.22.0.95 client-id=1:68:72:51:68:be:88 mac-address=68:72:51:68:BE:88 server=server_R60 add address=172.22.0.42 client-id=1:74:ac:b9:78:ef:1e mac-address=74:AC:B9:78:EF:1E server=server_R60 add address=172.22.0.73 client-id=1:60:22:32:b0:97:6c mac-address=60:22:32:B0:97:6C server=server_R60 add address=172.22.0.109 client-id=1:60:22:32:b8:30:67 mac-address=60:22:32:B8:30:67 server=server_R60 add address=172.22.0.121 client-id=1:e0:63:da:9c:54:c5 mac-address=E0:63:DA:9C:54:C5 server=server_R60 add address=172.22.0.123 client-id=1:e0:63:da:f4:5b:7f mac-address=E0:63:DA:F4:5B:7F server=server_R60 add address=172.22.0.124 client-id=1:78:8a:20:3e:cd:cc mac-address=78:8A:20:3E:CD:CC server=server_R60 add address=172.22.0.81 client-id=1:e0:63:da:f4:4e:6a mac-address=E0:63:DA:F4:4E:6A server=server_R60 add address=172.22.0.48 client-id=1:fc:ec:da:c:8b:ad mac-address=FC:EC:DA:0C:8B:AD server=server_R60 add address=172.22.0.19 client-id=1:68:72:51:2a:a2:23 mac-address=68:72:51:2A:A2:23 server=server_R60 add address=172.22.0.45 client-id=1:68:72:51:64:5a:71 mac-address=68:72:51:64:5A:71 server=server_R60 add address=172.22.0.91 client-id=1:f4:92:bf:46:fb:35 mac-address=F4:92:BF:46:FB:35 server=server_R60 add address=172.22.0.122 client-id=1:74:ac:b9:7a:e2:cd mac-address=74:AC:B9:7A:E2:CD server=server_R60 add address=172.22.0.128 client-id=1:e0:63:da:46:d3:1e mac-address=E0:63:DA:46:D3:1E server=server_R60 add address=172.22.0.129 client-id=1:74:83:c2:e0:17:ee mac-address=74:83:C2:E0:17:EE server=server_R60 add address=172.22.0.130 client-id=1:24:5a:4c:44:14:f1 mac-address=24:5A:4C:44:14:F1 server=server_R60 add address=172.22.0.132 client-id=1:68:72:51:4e:e2:8f mac-address=68:72:51:4E:E2:8F server=server_R60 add address=172.22.0.135 client-id=1:b4:fb:e4:68:7c:da mac-address=B4:FB:E4:68:7C:DA server=server_R60 add address=172.22.0.136 client-id=1:24:5a:4c:ea:1:76 mac-address=24:5A:4C:EA:01:76 server=server_R60 add address=172.22.0.12 client-id=1:24:5a:4c:e6:e4:c0 mac-address=24:5A:4C:E6:E4:C0 server=server_R60 add address=172.22.0.127 client-id=1:e0:63:da:9c:c4:b2 mac-address=E0:63:DA:9C:C4:B2 server=server_R60 add address=172.22.0.131 client-id=1:74:ac:b9:78:e8:87 mac-address=74:AC:B9:78:E8:87 server=server_R60 add address=172.22.0.137 client-id=1:e0:63:da:f4:61:d0 mac-address=E0:63:DA:F4:61:D0 server=server_R60 add address=172.22.0.139 client-id=1:74:ac:b9:84:7:2d mac-address=74:AC:B9:84:07:2D server=server_R60 add address=172.22.0.144 client-id=1:e0:63:da:f4:5a:ce mac-address=E0:63:DA:F4:5A:CE server=server_R60 add address=172.22.0.145 client-id=1:74:ac:b9:84:44:39 mac-address=74:AC:B9:84:44:39 server=server_R60 add address=172.22.0.94 client-id=1:fc:ec:da:28:d5:32 mac-address=FC:EC:DA:28:D5:32 server=server_R60 add address=172.22.0.147 client-id=1:60:22:32:b8:30:5e mac-address=60:22:32:B8:30:5E server=server_R60 add address=172.22.0.149 client-id=1:78:8a:20:9c:1:b1 mac-address=78:8A:20:9C:01:B1 server=server_R60 add address=172.22.0.151 client-id=1:fc:ec:da:c:91:19 mac-address=FC:EC:DA:0C:91:19 server=server_R60 add address=172.22.0.153 client-id=1:e0:63:da:f4:61:11 mac-address=E0:63:DA:F4:61:11 server=server_R60 add address=172.22.0.154 client-id=1:74:83:c2:e0:2c:62 mac-address=74:83:C2:E0:2C:62 server=server_R60 add address=172.22.0.143 client-id=1:fc:ec:da:a:8d:3e mac-address=FC:EC:DA:0A:8D:3E server=server_R60 add address=172.22.0.160 client-id=1:74:83:c2:e0:2c:15 mac-address=74:83:C2:E0:2C:15 server=server_R60 add address=172.22.0.161 client-id=1:60:22:32:dc:49:99 mac-address=60:22:32:DC:49:99 server=server_R60 add address=172.22.0.162 client-id=1:e0:63:da:f4:64:33 mac-address=E0:63:DA:F4:64:33 server=server_R60 add address=172.22.0.163 client-id=1:f4:92:bf:f2:e1:60 mac-address=F4:92:BF:F2:E1:60 server=server_R60 add address=172.22.0.165 client-id=1:18:e8:29:8a:69:91 mac-address=18:E8:29:8A:69:91 server=server_R60 add address=172.22.0.166 client-id=1:74:ac:b9:7e:72:26 mac-address=74:AC:B9:7E:72:26 server=server_R60 add address=172.22.0.167 client-id=1:68:72:51:58:ae:aa mac-address=68:72:51:58:AE:AA server=server_R60 add address=172.22.0.177 client-id=1:fc:ec:da:c2:a6:3e mac-address=FC:EC:DA:C2:A6:3E server=server_R60 add address=172.22.0.10 client-id=1:60:22:32:b8:40:8 mac-address=60:22:32:B8:40:08 server=server_R60 add address=172.22.0.24 client-id=1:e0:63:da:f4:54:fc mac-address=E0:63:DA:F4:54:FC server=server_R60 add address=172.22.0.31 client-id=1:74:83:c2:a8:18:e9 mac-address=74:83:C2:A8:18:E9 server=server_R60 add address=172.22.0.37 client-id=1:e0:63:da:9c:d9:3f mac-address=E0:63:DA:9C:D9:3F server=server_R60 add address=172.22.0.59 client-id=1:68:72:51:6a:2e:6d mac-address=68:72:51:6A:2E:6D server=server_R60 add address=172.22.0.16 client-id=1:e4:38:83:cc:23:17 mac-address=E4:38:83:CC:23:17 server=server_R60 add address=172.22.0.17 client-id=1:24:5a:4c:e8:36:77 mac-address=24:5A:4C:E8:36:77 server=server_R60 add address=172.22.0.54 client-id=1:e4:38:83:cc:21:f mac-address=E4:38:83:CC:21:0F server=server_R60 add address=172.22.0.61 client-id=1:e0:63:da:f4:5c:b2 mac-address=E0:63:DA:F4:5C:B2 server=server_R60 add address=172.22.0.26 client-id=1:74:83:c2:e0:17:47 mac-address=74:83:C2:E0:17:47 server=server_R60 add address=172.22.0.38 client-id=1:b4:fb:e4:a0:99:2f mac-address=B4:FB:E4:A0:99:2F server=server_R60 add address=172.22.0.46 client-id=1:e0:63:da:f4:7:e1 mac-address=E0:63:DA:F4:07:E1 server=server_R60 add address=172.22.0.39 client-id=1:74:ac:b9:7a:e7:6 mac-address=74:AC:B9:7A:E7:06 server=server_R60 /ip dhcp-server network add address=172.22.0.0/24 comment="RED R60" dns-server=185.180.9.62 gateway=172.22.0.1 /ip dns set servers=8.8.8.8,2001:4860:4860::8888,1.1.1.1,2606:4700:4700::1111 /ip firewall address-list add address=172.22.8.0/23 comment=R50 list=nodos-privadas add address=172.22.2.0/23 comment=FLB list=nodos-privadas add address=172.22.12.0/24 comment=PEDREGAL list=nodos-privadas add address=172.22.10.0/24 comment=RDM list=nodos-privadas add address=172.22.6.0/23 comment=SB list=nodos-privadas add address=172.22.4.0/24 comment=SR list=nodos-privadas add address=172.22.11.0/24 comment=FO list=nodos-privadas add address=172.22.14.0/24 comment=BNT list=nodos-privadas add address=172.22.13.0/24 comment=3RA list=nodos-privadas add address=172.22.15.0/24 comment=JDN list=nodos-privadas add address=172.22.1.0/24 comment=MEC-CMP list=nodos-privadas add address=172.22.5.0/24 comment=BRS list=nodos-privadas add address=172.22.16.0/24 comment=MLK list=nodos-privadas add address=172.22.17.0/24 comment=VQZ list=nodos-privadas add address=172.16.0.0/23 comment=GPON_SB list=nodos-privadas add address=172.16.2.0/23 comment=GPON_R50 list=nodos-privadas add address=172.16.4.0/23 comment=GPON_FO list=nodos-privadas add address=172.22.18.0/24 comment=CBL list=nodos-privadas add address=172.22.20.0/23 comment=FO-New list=nodos-privadas add address=172.22.28.0/22 comment=FLB-New list=nodos-privadas add address=172.16.0.32 comment="000084-Martinez Marcelo Miguel" list=Clientes-Cortados add address=172.16.0.45 comment="000132-Maccari Eduardo" list=Clientes-Cortados add address=172.16.0.42 comment="000438-Torres Marcelo Gabriel" list=Clientes-Cortados add address=172.16.0.47 comment="000818-Quiroga Julio Daniel" list=Clientes-Cortados add address=172.16.0.52 comment="002649-Alaniz Mara Belen" list=Clientes-Cortados add address=172.16.0.25 comment="002066-Caliva Gisela Vanina" list=Clientes-Cortados add address=172.16.0.10 comment="001713-Moreno Ana Maria" list=Clientes-Cortados add address=172.22.0.0/24 list=redes-locales add address=172.22.0.101 comment="Bodega Norton s.a. - 172.22.0.101" list=Clientes-Cortados add address=172.22.0.65 comment="Caballero Celeste - 172.22.0.65" list=Clientes-Cortados add address=172.22.0.124 comment="Alaniz Maria Alejandra - 172.22.0.124" list=Clientes-Cortados /ip firewall filter add action=drop chain=input comment="Drop escaneadores de puertos" src-address-list="port scanners" add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------Escaneadores de puertos" in-interface=bridge_vlan10 protocol=tcp psd=10,3s,3,1 add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------NMAP FIN Stealth scan" protocol=tcp tcp-flags=fin,!syn,!rst,!psh,!ack,!urg add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------SYN/FIN scan" protocol=tcp tcp-flags=fin,syn add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------SYN/RST scan" protocol=tcp tcp-flags=syn,rst add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------FIN/PSH/URG scan" protocol=tcp tcp-flags=fin,psh,urg,!syn,!rst,!ack add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------ALL/ALL scan" protocol=tcp tcp-flags=fin,syn,rst,psh,ack,urg add action=add-src-to-address-list address-list="port scanners" address-list-timeout=4w2d chain=input comment="------NMAP NULL scan" protocol=tcp tcp-flags=!fin,!syn,!rst,!psh,!ack,!urg add action=accept chain=input comment="Echo request - Evitar Ping Flood" disabled=yes icmp-options=8:0 limit=1,5:packet protocol=icmp add action=accept chain=input comment="Echo reply" disabled=yes icmp-options=0:0 protocol=icmp add action=drop chain=input comment="Drop ICMP" disabled=yes protocol=icmp add action=tarpit chain=input comment="Drop to DOS attack list" connection-limit=3,32 protocol=tcp src-address=!168.197.196.100 src-address-list="DOS attack" add action=add-src-to-address-list address-list="DOS attack" address-list-timeout=1d chain=input comment="------Add DOS attack src IP to the list" connection-limit=100,32 protocol=tcp add action=accept chain=input comment="Allow Established/Related/Untracked connections" connection-state=established,related,untracked add action=drop chain=input comment="Drop invalid connections" connection-state=invalid add action=accept chain=input comment="Allow ICMP" protocol=icmp add action=accept chain=input comment="Allow OSPF" in-interface=bridge_vlan99 protocol=ospf add action=accept chain=input comment="Allow UDP" protocol=udp add action=accept chain=input comment=Oxidized dst-port=22 in-interface=bridge_vlan99 protocol=tcp add action=accept chain=input comment="Allow Winbox" dst-port=3380,8240,8291 protocol=tcp add action=accept chain=input comment="BW Test" dst-port=2000 in-interface=bridge_vlan99 protocol=tcp add action=accept chain=input comment=API dst-port=8728 log-prefix=ISPCUBE protocol=tcp add action=log chain=input comment="Log everything else" disabled=yes log-prefix="DROP INPUT" add action=drop chain=input comment="Drop everything else" add action=drop chain=forward comment="Block Rule" dst-address=!192.168.200.0/24 dst-port=!9081,3380,3322,6680 protocol=tcp src-address-list=Clientes-Cortados add action=drop chain=forward dst-address=!192.168.200.0/24 protocol=udp src-address-list=Clientes-Cortados add action=drop chain=forward comment="Drop para trafico dirigido a las redes PRIVADAS de los NODOS (Address Lists)" dst-address-list=nodos-privadas src-address=172.22.0.0/24 add action=drop chain=virus comment="Drop Spammer" dst-port=25 protocol=tcp src-address-list=spammer add action=add-src-to-address-list address-list=spammer address-list-timeout=12w6d chain=virus comment="add to spammer list" connection-limit=30,32 dst-port=25 limit=50,5:packet protocol=tcp add action=jump chain=forward comment="jump to the virus chain" jump-target=virus add action=jump chain=forward comment="SYN Flood protect" connection-state=new jump-target=SYN-Protect protocol=tcp tcp-flags=syn add action=accept chain=SYN-Protect connection-state=new limit=350,5:packet protocol=tcp tcp-flags=syn add action=drop chain=SYN-Protect connection-state=new protocol=tcp tcp-flags=syn /ip firewall nat add action=dst-nat chain=dstnat comment="DNAT Server Netvideo - 10.1.0.60" dst-address=10.100.1.2 src-address-list=redes-locales to-addresses=10.1.0.27 add action=src-nat chain=srcnat comment=168.197.196.202 out-interface=bridge_vlan10 src-address=172.22.0.0/24 to-addresses=168.197.196.202 add action=masquerade chain=srcnat comment="SNAT INET" out-interface=bridge_vlan10 /ip firewall raw add action=drop chain=prerouting comment="BCP - R60" in-interface=bridge_LAN src-address=!172.22.0.0/24 add action=notrack chain=prerouting comment="No track - OSPF" protocol=ospf add action=notrack chain=output protocol=ospf /ip firewall service-port set ftp disabled=yes set tftp disabled=yes set h323 disabled=yes set sip disabled=yes set pptp disabled=yes /ip ipsec profile set [ find default=yes ] dpd-interval=2m dpd-maximum-failures=5 /ip nat-pmp set enabled=yes /ip nat-pmp interfaces add interface=bridge_LAN type=internal add interface=bridge_vlan10 type=external /ip route add comment="RED VPN-L2TP" disabled=no distance=1 dst-address=10.100.0.0/24 gateway=10.99.0.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="RED VPN-WireGuard" disabled=yes distance=1 dst-address=10.100.2.0/24 gateway=10.99.0.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="RED NOC" disabled=no distance=1 dst-address=192.168.200.0/24 gateway=10.99.0.1 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add disabled=no distance=10 dst-address=0.0.0.0/0 gateway=168.197.196.201 routing-table=main suppress-hw-offload=no add comment="RED VPN-WireGuard-bck1" disabled=yes distance=1 dst-address=10.100.3.0/24 gateway=10.99.0.5 pref-src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10 add comment="RED NETVIDEO - IPTV" disabled=no distance=1 dst-address=10.1.0.0/24 gateway=10.1.1.1 routing-table=main scope=30 suppress-hw-offload=no target-scope=10 /ip service set ftp disabled=yes set ssh address=192.168.200.155/32 set telnet disabled=yes set www port=8010 set api address=168.197.196.100/32,192.168.200.10/32 set api-ssl disabled=yes /ip smb shares set [ find default=yes ] directory=/pub /ipv6 firewall filter add action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untracked add action=drop chain=input comment="defconf: drop invalid" connection-state=invalid add action=accept chain=input comment="defconf: accept ICMPv6" protocol=icmpv6 add action=accept chain=input comment="defconf: accept UDP traceroute" port=33434-33534 protocol=udp add action=accept chain=input comment="defconf: accept DHCPv6-Client prefix delegation." dst-port=546 protocol=udp src-address=fe80::/10 add action=accept chain=input comment="defconf: accept OSPF" protocol=ospf add action=accept chain=input comment="defconf: accept WLAN" in-interface=bridge_LAN add action=drop chain=input comment="defconf: drop everything" /ipv6 nd set [ find default=yes ] advertise-dns=no other-configuration=yes /routing ospf interface-template add area=ospf-backbone_v2 disabled=no interfaces=bridge_vlan99 add area=ospf-backbone_v2 disabled=no interfaces=lo passive add area=ospf-area-R60_v3 disabled=yes interfaces=bridge_vlan10 type=ptp add area=ospf-area-R60_v3 disabled=yes interfaces=bridge_LAN passive /snmp set contact=pnet@puntonetinternet.com enabled=yes location="Nodo R60" trap-community=pnet trap-generators=interfaces trap-interfaces=bridge_vlan99 trap-version=2 /system clock set time-zone-name=America/Argentina/Mendoza /system identity set name="R60_Nodo (RB4011iGS+)" /system logging set 1 action=ErrorLogs set 2 action=WarningLogs set 3 action=CriticalLogs add action=GrafanaLogs topics=system,info,account add action=GrafanaLogsAlert topics=system,error add action=DudeLogs topics=info add action=InterfacesLogs topics=interface add action=GrafanaLogsInfo topics=system,info add action=InfoLogs topics=info add action=OSPFLogs topics=route,ospf add action=DHCPLogs topics=dhcp,info add action=MailsLogs topics=e-mail,info /system ntp client set enabled=yes /system ntp client servers add address=192.168.200.1 /system routerboard reset-button set enabled=yes /system routerboard settings set auto-upgrade=yes /system scheduler add interval=2w1d name="Envio de Backups por Correo" on-event=backup_mail policy=reboot,read,write,test,sniff,sensitive,romon start-date=2023-03-31 start-time=04:00:00 add disabled=yes interval=4w2d name="Package upgrade" on-event="system package update install" policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2019-03-12 start-time=05:05:00 add disabled=yes interval=4w2d name="Routerboard Upgrade" on-event=":global Var1\r\n:global Var2\r\n:set Var1 \"\$[/system package get system version]\"\r\n:set Var2 \"\$[/system routerboard get current-firmware]\"\r\n:if (\$Var1>\$Var2) do={/system routerboard upgrade;\r\n/system reboot;\r\n}" policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2019-03-12 start-time=05:10:00 add name=Reinicio-1 on-event="/system reboot" policy=reboot,read,write,test,sniff,sensitive,romon start-date=2025-08-26 start-time=05:00:00 add disabled=yes interval=30s name=InterfaceState on-event=InterfaceState policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-time=startup add interval=10m name=Monitor_power on-event=voltmon policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-time=startup add name=Reinicio-2 on-event="/system reboot" policy=reboot,read,write,test,sniff,sensitive,romon start-date=2025-08-26 start-time=05:10:00 add disabled=yes interval=10m name=Monitor_power_test on-event=voltmon policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-time=startup add interval=1d name=dhcp_delete_30d on-event=dhcp_delete_30d policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2025-03-21 start-time=06:00:00 add interval=1d name=dhcp_dynamic-to-static on-event=dhcp_dynamic-to-static policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-date=2025-03-20 start-time=05:00:00 /system script add dont-require-permissions=no name=backup_mail owner=marcos policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source=":log info \"backup beginning now\"\r\n:global backupfile ([/system identity get name] . \"-\" . [/system clock\_get time])\r\n/system backup save name=\$backupfile\r\n:log info \"backup pausing for 10s\"\r\n:delay 10s\r\n:log info \"backup being emailed\"\r\n/tool e-mail send to=puntonetinet@gmail.com subject=([/system identity get name] . \\ \" Backup\") from=\"FO_Core (750Gr3) \" file=\$backupfile \r\n:log info \"backup finished\"" add dont-require-permissions=no name=voltmon owner=marcos policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="/system health\r\n:local tempSystem [:tonum ([get [find where name=temperature]]->\"value\")]\r\n:local voltSystem ([get [find where name=voltage]]->\"value\")\r\n:local tempMax 60\r\n:local voltMin 25\r\n\r\n# Check Temperature\r\n:if (\$tempSystem >= \$tempMax) do={\r\n :log error \"HIGH Temperature: \$tempSystem\\C2\\BA\\43\"\r\n /tool e-mail send to=pozziandres@gmail.com cc=emi.puntonet@gmail.com subject=\"HIGH Temperature: \$tempSystem\\C2\\BA\\43\"\r\n} else={\r\n :log info \"Temperature OK: \$tempSystem\\BA\\43\"\r\n}\r\n\r\n# Check Voltage\r\n:if (\$voltSystem <= \$voltMin) do={\r\n # Enviar log\r\n #:log error \"LOW Voltage: \$voltSystem V\"\r\n # Enviar mail\r\n /tool e-mail send to=pozziandres@gmail.com cc=emi.puntonet@gmail.com subject=\"LOW Voltage: \$voltSystem V - Nodo: \$nodo\"\r\n # Enviar Telegram\r\n :local URL (\"https://api.telegram.org/bot8336052960:AAF-Iekdc8EbAD3nfpxiJSj6eQgKWnsxfIU/sendMessage\?chat_id=-373797011&text=LOW Voltage: \$voltSystem V - Nodo_R60\");\r\n /tool fetch url=\$URL keep-result=no;\r\n} else={\r\n # Enviar log\r\n :log info \"Voltage OK: \$voltSystem V\"\r\n}" add dont-require-permissions=no name=dhcp_delete_30d owner=marcos policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source=":local delete \"30d\"\r\n/ip dhcp-server lease\r\n:foreach id in=[find where last-seen>[:totime \$delete]] do={\r\n remove \$id\r\n :log info message=\"Eliminada asignaci\F3n DHCP con ID \$id que lleva m\E1s de 30 d\EDas\"\r\n}\r\n" add dont-require-permissions=no name=dhcp_dynamic-to-static owner=marcos policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon source="/ip dhcp-server lease\r\n:foreach lease in=[find where dynamic=yes] do={\r\n :local macAddress [get \$lease mac-address]\r\n :local ipAddress [get \$lease address]\r\n make-static \$lease\r\n :log info message=\"Cambiada IP din\E1mica a est\E1tica: \$ipAddress\_para MAC: \$macAddress\"\r\n}" /tool e-mail set from="R60_NODO (RB4011iGS+) " port=465 server=mail.puntonetinternet.com tls=yes user=noc@puntonetinternet.com /tool graphing interface add interface=bridge_LAN add interface=bridge_vlan10 /tool netwatch add comment=R60_NorOesteAC disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_NorOesteAC - Nodo R60 - 172.22.0.173 is DOWN\" body=\" \"" host=172.22.0.173 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_NorOesteAC - Nodo R60 - 172.22.0.173 is UP\" body= \" \"" add comment=R60_Sur disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_Sur - Nodo R60 - 172.22.0.118 is DOWN\" body=\" \"" host=172.22.0.118 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_Sur - Nodo R60 - 172.22.0.118 is UP\" body=\" \"" add comment=R60_Norte disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_Norte - Nodo R60 - 172.22.0.117 is DOWN\" body=\" \"" host=172.22.0.117 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_Norte - Nodo R60 - 172.22.0.117 is UP\" body=\" \"" add comment=R60_Este disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_Este - Nodo R60 - 172.22.0.95 is DOWN\" body=\" \"" host=172.22.0.95 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_Este - Nodo R60 - 172.22.0.95 is UP\" body=\" \"" add comment=R60_Oeste disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_Oeste - Nodo R60 - 172.22.0.60 is DOWN\" body=\" \"" host=172.22.0.60 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_Oeste - Nodo R60 - 172.22.0.60 is UP\" body=\" \"" add comment=R60_EsteAC disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60\_Core \" subject=\"R60_EsteAC - Nodo R60 - 172.22.0.34 is DOWN\" body=\" \"" host=172.22.0.34 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_EsteAC - Nodo R60 - 172.22.0.34 is UP\" body=\" \"" add comment=R60_NorteAC disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_NorteAC - Nodo R60 - 172.22.0.99 is DOWN\" body=\" \"" host=172.22.0.99 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_NorteAC - Nodo R60 -\_172.22.0.99 is UP\" body=\" \"" add comment=R60_SurAC disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_SurAC - Nodo R60 - 172.22.0.62 is DOWN\" body=\" \"" host=172.22.0.62 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT\_R60 Core \" subject=\"R60_SurAC - Nodo R60 - 172.22.0.62 is UP\" body=\" \"" add comment=R60_SurEsteAC disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_SurEsteAC - Nodo R60 -\_172.22.0.112 is DOWN\" body=\" \"" host=172.22.0.112 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_SurEsteAC\_- Nodo R60 - 172.22.0.112 is UP\" body=\" \"" add comment="Sensor de Linea" disabled=no down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com,axelboliva2016@gmail.com,ignaciolucero578@gmail.com\r\n from=\"MKT R60 Core \" subject=\"CORTE DE ENERGIA EN NODO R60\" body=\" \"" host=172.22.0.146 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com,axelboliva2016@gmail.com,ignaciolucero578@gmail.com\r\n from=\"MKT R60 Core \" subject=\"ENERGIA RESTABLECIDA EN NODO R60\" body=\" \"" add comment=R60_NorEsteAC disabled=yes down-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_NorEsteAC - Nodo R60 -\_172.22.0.18 is DOWN\" body=\" \"" host=172.22.0.18 http-codes="" interval=3m test-script="" timeout=3m type=simple up-script="/tool e-mail send to=pozziandres@gmail.com cc=mjbenegas@gmail.com,emi.puntonet@gmail.com from=\"MKT R60 Core \" subject=\"R60_NorEsteAC\_- Nodo R60 - 172.22.0.18 is UP\" body=\" \""