Quantcast
Channel: MikroTik
Viewing all articles
Browse latest Browse all 15133

Beginner Basics • Re: How to configure and debug mikrotik CRS326 24 switch to act as a router to starlink?

$
0
0
well, yes. I expect basic routing capabilities and stable.

This is non working config
Code:
# 2024-03-10 23:35:14 by RouterOS 7.14# software id = 2XQ4-E7TP## model = CRS326-24G-2S+# serial number = HES09ERQ493/interface bridgeadd mtu=1500 name=localNet/interface ethernetset [ find default-name=ether22 ] name=apObyvakset [ find default-name=ether16 ] name=desktopTMset [ find default-name=ether1 ] comment=WANset [ find default-name=ether10 ] name=homeAssistantset [ find default-name=ether20 ] name=rekuperaceset [ find default-name=ether18 ] name=tepelneCerpadloset [ find default-name=ether12 ] name=wifiApRouter/interface ethernet switchset 0 l3-hw-offloading=yes/interface listadd name=WANadd name=LAN/ip hotspot profileset [ find default=yes ] html-directory=hotspot/ip pooladd name=dhcp ranges=192.168.88.2-192.168.88.255add name=dhcp-pool ranges=192.168.88.10-192.168.88.254/ip dhcp-serveradd address-pool=dhcp bootp-support=dynamic interface=localNet lease-time=10s \    name=dhcp1/portset 0 name=serial0/interface bridge portadd bridge=localNet interface=ether2 trusted=yesadd bridge=localNet interface=ether3 trusted=yesadd bridge=localNet interface=ether4 trusted=yesadd bridge=localNet interface=ether5 trusted=yesadd bridge=localNet interface=ether6 trusted=yesadd bridge=localNet interface=ether7 trusted=yesadd bridge=localNet interface=ether8 trusted=yesadd bridge=localNet interface=ether9 trusted=yesadd bridge=localNet interface=homeAssistant trusted=yesadd bridge=localNet interface=ether11 trusted=yesadd bridge=localNet interface=wifiApRouter trusted=yesadd bridge=localNet interface=ether13 trusted=yesadd bridge=localNet interface=ether14 trusted=yesadd bridge=localNet interface=ether15 trusted=yesadd bridge=localNet interface=desktopTM trusted=yesadd bridge=localNet interface=ether17 trusted=yesadd bridge=localNet interface=tepelneCerpadlo trusted=yesadd bridge=localNet interface=ether19 trusted=yesadd bridge=localNet interface=rekuperace trusted=yesadd bridge=localNet interface=ether21 trusted=yesadd bridge=localNet interface=apObyvak trusted=yesadd bridge=localNet interface=ether23 trusted=yesadd bridge=localNet interface=ether24 trusted=yesadd bridge=localNet interface=sfp-sfpplus1add bridge=localNet interface=sfp-sfpplus2/ip neighbor discovery-settingsset discover-interface-list=!dynamic/interface detect-internetset detect-interface-list=all lan-interface-list=all/interface list memberadd interface=ether1 list=WANadd interface=localNet list=LAN/ip addressadd address=192.168.88.0/24 comment=LAN interface=localNet network=\    192.168.88.0/ip dhcp-clientadd interface=ether1/ip dhcp-server leaseadd address=192.168.88.253 client-id=1:20:f8:3b:0:10:56 mac-address=\    20:F8:3B:00:10:56 server=dhcp1add address=192.168.88.250 mac-address=60:8A:10:8D:BE:78 server=dhcp1add address=192.168.88.252 mac-address=28:D1:27:70:2F:A5 server=dhcp1/ip dhcp-server networkadd address=192.168.88.0/24 dns-server=192.168.88.1 gateway=192.168.88.1/ip dnsset allow-remote-requests=yes servers=8.8.8.8/ip firewall filteradd action=log chain=forward dst-address=8.8.8.8 protocol=icmp src-address=\    192.168.88.254add action=accept chain=input connection-state=established,relatedadd action=accept chain=input src-address=192.168.88.0/24add action=drop chain=input in-interface=ether1add action=accept chain=input port=67,68 protocol=udpadd action=accept chain=forward comment="allow established and related" \    connection-state=established,relatedadd action=drop chain=forward comment="drop invalid connection" \    connection-state=invalidadd action=accept chain=forward src-address=192.168.88.0/24add action=drop chain=forward/ip firewall natadd action=masquerade chain=srcnat log=yes out-interface-list=WAN/system clockset time-zone-name=Europe/Prague/system noteset show-at-login=no/system routerboard settingsset boot-os=router-os/tool snifferset file-name=test filter-interface=localNet
this is mostly working including wifi AP subnet
Code:
# 2024-03-11 11:25:08 by RouterOS 7.14# software id = 2XQ4-E7TP## model = CRS326-24G-2S+# serial number = HES09ERQ493/interface bridgeadd name=bridge1/interface listadd name=WANadd name=LANadd name=listBridge/ip hotspot profileset [ find default=yes ] html-directory=hotspot/ip pooladd name=dhcp-pool ranges=192.168.50.10-192.168.50.254/ip dhcp-serveradd address-pool=dhcp-pool interface=bridge1 name=dhcp1/portset 0 name=serial0/interface bridge portadd bridge=bridge1 interface=ether2add bridge=bridge1 interface=ether3add bridge=bridge1 interface=ether4add bridge=bridge1 interface=ether5add bridge=bridge1 interface=ether6add bridge=bridge1 interface=ether7add bridge=bridge1 interface=ether8add bridge=bridge1 interface=ether9add bridge=bridge1 interface=ether10add bridge=bridge1 interface=ether11add bridge=bridge1 interface=ether12add bridge=bridge1 interface=ether13add bridge=bridge1 interface=ether14add bridge=bridge1 interface=ether15add bridge=bridge1 interface=ether16add bridge=bridge1 interface=ether17add bridge=bridge1 interface=ether18add bridge=bridge1 interface=ether19add bridge=bridge1 interface=ether20add bridge=bridge1 interface=ether21add bridge=bridge1 interface=ether22add bridge=bridge1 interface=ether23add bridge=bridge1 interface=ether24add bridge=bridge1 interface=sfp-sfpplus1add bridge=bridge1 interface=sfp-sfpplus2/ip neighbor discovery-settingsset discover-interface-list=all/interface list memberadd interface=ether1 list=WANadd interface=bridge1 list=LAN/ip addressadd address=192.168.31.0/24 interface=bridge1 network=192.168.31.0add address=192.168.50.1/24 interface=bridge1 network=192.168.50.0/ip cloudset update-time=no/ip dhcp-clientadd interface=ether1/ip dhcp-server networkadd address=0.0.0.0/24 dns-server=0.0.0.0 gateway=0.0.0.0 netmask=24add address=100.64.0.0/10 gateway=100.85.202.158add address=192.168.50.0/24 dns-server=192.168.31.0 gateway=192.168.50.1 \    netmask=24/ip dnsset allow-remote-requests=yes/ip firewall filteradd action=accept chain=input comment="accept established,related" \    connection-state=established,relatedadd action=drop chain=input comment="drop invalid" connection-state=invalidadd action=accept chain=input comment="allow ICMP" in-interface=ether1 \    protocol=icmpadd action=accept chain=input comment="allow Winbox" in-interface=ether1 \    port=8291 protocol=tcpadd action=accept chain=input comment="allow SSH" in-interface=ether1 port=22 \    protocol=tcpadd action=drop chain=input comment="block everything else" in-interface=\    ether1add action=accept chain=forward comment=\    "accept established,related for forwarding" connection-state=\    established,relatedadd action=drop chain=forward comment="drop invalid packets for forwarding" \    connection-state=invalid/ip firewall natadd action=masquerade chain=srcnat out-interface-list=WANadd action=masquerade chain=srcnat disabled=yes out-interface-list=WANadd action=masquerade chain=srcnat out-interface=bridge1 src-address=\    192.168.28.0/24/ip serviceset telnet disabled=yesset ftp disabled=yesset www disabled=yesset ssh port=2200set api disabled=yesset winbox address=192.168.88.0/24/ip sshset strong-crypto=yes/system clockset time-zone-name=Europe/Prague/system identityset name=u-potokaMainRouter/system noteset show-at-login=no/system routerboard settingsset boot-os=router-os/tool bandwidth-serverset enabled=no/tool mac-serverset allowed-interface-list=listBridge/tool mac-server mac-winboxset allowed-interface-list=LAN
Which router would you recommend, if this should have problem with 2 appartment traffic?
Basic control and little traffic - thats load for this switch.

Statistics: Posted by CZBios — Mon Mar 11, 2024 3:07 pm



Viewing all articles
Browse latest Browse all 15133

Trending Articles