mac-address=00:15:6D:30:B9:CBadd address=192.168.0.229 comment=Claudio interface=ether5_Clientes \
mac-address=00:15:6D:30:BA:E4
add address=192.168.0.128 comment="Paulo Grafica" interface=ether5_Clientes \
mac-address=00:15:6D:EC:94:86
add address=192.168.0.215 comment="Henrique PC" interface=ether5_Clientes \
mac-address=00:50:FC:B6:9F:8C
add address=192.168.0.192 comment=Douglas interface=ether5_Clientes \
mac-address=00:15:6D:F6:DF:87
add address=192.168.0.200 comment="Iphone Leandro" interface=ether5_Clientes \
mac-address=7C:11:BE:51:5A:1F
add address=192.168.0.193 comment="Henrique PC" interface=ether5_Clientes \
mac-address=00:19:E0:88:9D:D6
add address=192.168.0.191 comment=Renan interface=ether5_Clientes mac-address=\
88:AE:1D:6E:B8:3B
add address=192.168.0.194 comment="Leandro PC" interface=ether5_Clientes \
mac-address=00:1E:58:A7:15:D7
add address=192.168.0.190 comment="ilo Andrade" interface=ether5_Clientes \
mac-address=00:15:6D:4C:2D:51
add address=192.168.0.181 comment="Carlos rua Saramandaia" interface=\
ether5_Clientes mac-address=00:15:6D:10:AA:DC
add address=192.168.0.186 comment="Ricardo Rico" interface=ether5_Clientes \
mac-address=00:15:6D:FC:5F:08
add address=192.168.0.189 comment="Renan PC" interface=ether5_Clientes \
mac-address=00:19:D1:EB:13:E4
/ip dhcp-client
add default-route-distance=0 disabled=no interface=ether1_Link
/ip dhcp-server lease
add address=192.168.0.194 client-id=1:0:1e:58:a7:15:d7 mac-address=\
00:1E:58:A7:15:D7 server=DHCP_Clientes
add address=192.168.0.193 always-broadcast=yes client-id=1:0:19:e0:88:9d:d6 \
mac-address=00:19:E0:88:9D:D6 server=DHCP_Clientes
add address=192.168.0.200 always-broadcast=yes client-id=1:7c:11:be:51:5a:1f \
mac-address=7C:11:BE:51:5A:1F server=DHCP_Clientes
add address=192.168.0.191 client-id=1:88:ae:1d:6e:b8:3b mac-address=\
88:AE:1D:6E:B8:3B server=DHCP_Clientes
/ip dhcp-server network
add address=10.0.0.0/24 gateway=10.0.0.9
add address=192.168.0.0/24 gateway=192.168.0.1 netmask=24
add address=192.168.1.0/24 gateway=192.168.1.1 netmask=24
add address=192.168.2.0/24 gateway=192.168.2.1
add address=192.168.10.0/24 dns-server=8.8.8.8,189.112.189.126 gateway=\
192.168.10.1
/ip dns
set allow-remote-requests=yes max-udp-packet-size=512 servers=\
8.8.8.8,189.112.189.126
/ip firewall filter
add action=passthrough chain=unused-hs-chain comment=\
"place hotspot rules here" disabled=yes
add action=passthrough chain=unused-hs-chain comment=\
"place hotspot rules here" disabled=yes
add action=drop chain=input comment="DROP SSH BRUTE FORCERS ( BLACK LIST )" \
disabled=yes dst-port=22 protocol=tcp src-address-list=ssh_blacklist
add action=add-src-to-address-list address-list=ssh_blacklist \
address-list-timeout=4w2d chain=input connection-state=new disabled=yes \
dst-port=22 protocol=tcp src-address-list=ssh_stage3
add action=add-src-to-address-list address-list=ssh_stage3 \
address-list-timeout=1m chain=input connection-state=new disabled=yes \
dst-port=22 protocol=tcp src-address-list=ssh_stage2
add action=add-src-to-address-list address-list=ssh_stage2 \
address-list-timeout=1m chain=input connection-state=new disabled=yes \
dst-port=22 protocol=tcp src-address-list=ssh_stage1
add action=add-src-to-address-list address-list=ssh_stage1 \
address-list-timeout=1m chain=input connection-state=new disabled=yes \
dst-port=22 protocol=tcp
add action=drop chain=input comment="BLOQUEIO SSH - PORT 22-23" disabled=yes \
dst-port=22-23 protocol=tcp
/ip firewall mangle
add action=mark-connection chain=prerouting comment="Controle P2P" \
new-connection-mark=p2p_conn p2p=all-p2p
add action=mark-packet chain=prerouting connection-mark=p2p_conn \
new-packet-mark=p2p
/ip firewall nat
add action=passthrough chain=unused-hs-chain comment=\
"place hotspot rules here" disabled=yes to-addresses=0.0.0.0
add action=masquerade chain=srcnat comment="masquerade hotspot network" \
src-address=192.168.0.0/24 to-addresses=0.0.0.0
add chain=srcnat dst-address=192.168.0.5 src-address=187.15.126.69
add action=masquerade chain=srcnat
add action=masquerade chain=srcnat comment="masquerade hotspot network" \
src-address=192.168.10.0/24 to-addresses=0.0.0.0
/ip hotspot user
add name=mauro profile=600kbps
add name=henrique profile=Livre
add name=nturbo profile=Livre
add address=192.168.0.253 mac-address=00:15:6D:F8:1D:7B name=gabriel profile=\
600kbps
add address=192.168.0.245 mac-address=00:15:6D:F4:13:A7 name=pekin profile=1MB
add address=192.168.0.238 mac-address=00:15:6D:30:B9:CB name=fabio profile=\
Bloqueado
add address=192.168.0.229 mac-address=00:15:6D:30:BA:E4 name=claudio profile=\
600kbps
add address=192.168.0.192 mac-address=00:15:6D:F6:DF:87 name=douglas profile=\
1MB
add address=192.168.0.128 mac-address=00:15:6D:EC:94:86 name=paulo profile=\
Aviso
add name=renan profile=600kbps
add address=192.168.0.190 mac-address=00:15:6D:4C:2D:51 name=ilo profile=1MB
add address=192.168.0.186 mac-address=00:15:6D:FC:5F:08 name=rico profile=1MB
add name=black profile=Livre
add address=192.168.0.181 mac-address=00:15:6D:10:AA:DC name=carlos profile=\
1MB
add name=leandro profile=Livre
/ip neighbor discovery
set ether2 disabled=no
set ether4 disabled=no
/ip route
add distance=1 gateway=ether5_Clientes
/ip service
set ssh port=7171
/ppp aaa
set accounting=no
/queue interface
set ether1_Link queue=ethernet-default
set ether2 queue=ethernet-default
set ether3-servidor queue=ethernet-default
set ether4 queue=ethernet-default
set ether5_Clientes queue=ethernet-default
/snmp
set enabled=yes trap-target=0.0.0.0
/system clock
set time-zone-name=America/Sao_Paulo
/system clock manual
set dst-end="oct/22/2010 00:00:00" dst-start="oct/22/2010 00:00:00" time-zone=\
-03:00
/system identity
set name=Leandro
/system ntp client
set enabled=yes mode=unicast primary-ntp=200.19.119.69 secondary-ntp=\
200.132.0.132
/system scheduler
add interval=1d name=bloquear-p2p on-event=bloquear-p2p policy=\
ftp,reboot,read,write,policy,test,winbox,password,sniff,sensitive \
start-date=oct/20/2010 start-time=23:30:00
add interval=1d name=liberar-p2p on-event=liberar-p2p policy=\
ftp,reboot,read,write,policy,test,winbox,password,sniff,sensitive \
start-date=oct/20/2010 start-time=06:00:00
add comment="ATUALIZAR IP DDNS" interval=5m name=DDNS on-event=\
"/system script run DDNS" policy=\
ftp,reboot,read,write,policy,test,winbox,password,sniff,sensitive \
start-date=jan/01/1970 start-time=00:00:00
/system script
add name=liberar-p2p policy=ftp,reboot,read,write,policy,test,winbox source=\
"ip firewall filter disable ip firewall filter find p2p=all-p2p"
add name=bloquear-p2p policy=ftp,reboot,read,write,policy,test,winbox source=\
"ip firewall filter enable ip firewall filter find p2p=all-p2p"
/tool graphing interface
add
/tool graphing resource
add
/tool mac-server
add disabled=no
/tool netwatch
add comment=link-local down-script=link-local-off host=64.233.163.104 \
interval=10s up-script=link-local-on
add comment=link-iapi down-script=link-iapi-off host=64.233.163.104 up-script=\
link-iapi-on
[n-turbo@Leandro] >