PC AP Hotspot não acessa a internet
Olá amigos, sou novato no MK e nãi intendo muito, criei um hotspot, eu faço login mas não acessa nenhuma pagina de internet. Ele funciona com 2 placas de rede, uma com ip 192.168.1.x que é ligado no meu modem roteando, e a outra com o ip 192.168.3.x que esta ligada em um hub.
Olá Fronteirams, fiz oqe vc me disse :
/ interface ethernet
set cliente name="cliente" mtu=1500 mac-address=00:08:54:26:3C:C3 arp=enabled \
disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=no
set internet name="internet" mtu=1500 mac-address=00:02:2A:E0:27:F1 \
arp=enabled disable-running-check=yes auto-negotiation=yes full-duplex=yes \
cable-settings=default speed=100Mbps comment="" disabled=no
/ interface wireless security-profiles
set default name="default" mode=none wpa-unicast-ciphers="" \
wpa-group-ciphers="" pre-shared-key="" static-algo-0=none static-key-0="" \
static-algo-1=none static-key-1="" static-algo-2=none static-key-2="" \
static-algo-3=none static-key-3="" static-transmit-key=key-0 \
static-sta-private-algo=none static-sta-private-key="" \
radius-mac-authentication=no group-key-update=5m
/ interface wireless align
set frame-size=300 active-mode=yes receive-all=no \
audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 ssid-all=no \
frames-per-second=25 audio-min=-100 audio-max=-20
/ interface wireless snooper
set multiple-channels=yes channel-time=200ms receive-errors=no
/ interface wireless sniffer
set multiple-channels=no channel-time=200ms only-headers=no receive-errors=no \
memory-limit=10 file-name="" file-limit=10 streaming-enabled=no \
streaming-server=0.0.0.0 streaming-max-rate=0
/ interface bridge port
set cliente bridge=none priority=128 path-cost=10
set internet bridge=none priority=128 path-cost=10
/ interface l2tp-server server
set enabled=no max-mtu=1460 max-mru=1460 \
authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption
/ interface pptp-server server
set enabled=no max-mtu=1460 max-mru=1460 authentication=mschap1,mschap2 \
keepalive-timeout=30 default-profile=default-encryption
/ ip pool
add name="hs-pool-1" ranges=192.168.3.10-192.168.3.254
/ ip telephony region
/ ip telephony gatekeeper
set gatekeeper=none remote-id="" remote-address=0.0.0.0
/ ip telephony aaa
set use-radius-accounting=no interim-update=0s
/ ip telephony codec
move G.711-uLaw-64k/sw
move G.711-ALaw-64k/sw
move G.729A-8k/sw
move G.729-8k/sw
move G.723.1-6.3k/sw
move GSM-06.10-13.2k/sw
move LPC-10-2.5k/sw
/ ip accounting
set enabled=no account-local-traffic=no threshold=256
/ ip accounting web-access
set accessible-via-web=no address=0.0.0.0/0
/ ip service
set telnet port=23 address=0.0.0.0/0 disabled=no
set ftp port=21 address=0.0.0.0/0 disabled=no
set www port=80 address=0.0.0.0/0 disabled=no
set ssh port=22 address=0.0.0.0/0 disabled=no
set www-ssl port=443 address=0.0.0.0/0 certificate=none disabled=yes
/ ip socks
set enabled=no port=1080 connection-idle-timeout=2m max-connections=200
/ ip upnp
set enabled=no allow-disable-external-interface=yes show-dummy-rule=yes
/ ip traffic-flow
set enabled=no interfaces=all cache-entries=4k active-flow-timeout=30m \
inactive-flow-timeout=15s
/ ip dns
set primary-dns=192.168.1.1 secondary-dns=201.10.1.2 allow-remote-requests=no \
cache-size=2048KiB cache-max-ttl=1w
/ ip dns static
/ ip address
add address=192.168.3.1/24 network=192.168.3.0 broadcast=192.168.3.255 \
interface=cliente comment="" disabled=no
add address=192.168.1.1/24 network=192.168.1.0 broadcast=192.168.1.255 \
interface=internet comment="" disabled=no
/ ip proxy
set enabled=no ports=8080 parent-proxy=0.0.0.0:0 \
maximal-client-connecions=1000 maximal-server-connectons=1000 \
cache-administrator="webmaster" max-object-size=4096KiB \
max-disk-cache-size=none max-ram-cache-size=unlimited disk-database=yes
/ ip proxy drive
set
/ ip proxy access
add dst-port=23-25 action=deny comment="block telnet & spam e-mail relaying" \
disabled=no
add method=CONNECT dst-port=443 action=allow comment="allow CONNECT only to \
SSL ports 443 \[https\] and 563 \[snews\]" disabled=no
add method=CONNECT dst-port=563 action=allow comment="allow CONNECT only to \
SSL ports 443 \[https\] and 563 \[snews\]" disabled=no
add method=CONNECT action=deny comment="allow CONNECT only to SSL ports 443 \
\[https\] and 563 \[snews\]" disabled=no
/ ip neighbor discovery
set cliente discover=yes
set internet discover=yes
/ ip route
add dst-address=0.0.0.0/0 gateway=192.168.1.1 scope=255 target-scope=10 \
comment="" disabled=no
add dst-address=0.0.0.0/0 gateway=192.168.1.1 scope=255 target-scope=10 \
comment="" disabled=no
/ ip firewall nat
add chain=srcnat src-address=192.168.3.0/24 action=masquerade \
comment="masquerade hotspot network" disabled=no
add chain=srcnat action=masquerade comment="" disabled=no
add chain=srcnat src-address=192.168.3.0/24 action=masquerade \
comment="masquerade hotspot network" disabled=no
add chain=srcnat src-address=192.168.3.0/24 action=masquerade \
comment="masquerade hotspot network" disabled=no
add chain=srcnat src-address=192.168.3.0/24 action=masquerade \
comment="masquerade hotspot network" disabled=no
add chain=srcnat src-address=192.168.3.0/24 action=masquerade \
comment="masquerade hotspot network" disabled=no
/ ip firewall connection tracking
set enabled=yes tcp-syn-sent-timeout=2m tcp-syn-received-timeout=1m \
tcp-established-timeout=5d tcp-fin-wait-timeout=2m \
tcp-close-wait-timeout=1m tcp-last-ack-timeout=30s \
tcp-time-wait-timeout=2m tcp-close-timeout=10s udp-timeout=30s \
udp-stream-timeout=3m icmp-timeout=30s generic-timeout=10m