Changes

SWITCH-mikrotik

3,387 bytes removed, 2 January
/* Config */
= SW-FIXME-MIKROTIK =
= VLANs =Decoupage Public - NAT ==On utilise pas de Vlan, mais on a deux bridges virtuelle qui font chacun des réseaux.<s>
* 130: FIXME-NAT
* 135: FIXME public (+ cloud)-PUBLIC</s>
== Ports / VLAN Reseau ==
<table cellpadding=10 cellspacing=0 border=1>
<tr>
<td>Port</td>
<td>VLANRéseau</td>
<td>Equipement</td>
</tr>
<td>1</td>
<td>FIXME-NAT</td>
<td>[[Bellatrix]] PMI</td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>2</td>
<td>FIXME-PUBLIC</td>
<td>[[Bellatrix]]</td>
</tr>
<tr bgcolor=Cornsilk>
<td>3</td>
<td>FIXME-NAT</td>
<td>Fablab link</td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>4</td>
<td>FIXME-PUBLIC</td>
<td>Raspi [[Orbital]]</td>
</tr>
<tr bgcolor=Cornsilk>
<td>5</td>
<td>FIXME-NAT</td>
<td>Multifonction</td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>6</td>
<td>FIXME-PUBLIC</td>
<td>RIPE NCC</td>
</tr>
<tr bgcolor=Cornsilk>
<td>7</td>
<td>FIXME-NAT</td>
<td>ATA</td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>8</td>
<td>FIXME-PUBLIC</td>
<td></td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>10</td>
<td>FIXME-PUBLIC</td>
<td></td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>12</td>
<td>FIXME-PUBLIC</td>
<td></td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>14</td>
<td>FIXME-PUBLIC</td>
<td>15</td>
<td>FIXME-NAT</td>
<td>?nano?</td>
</tr>
<tr bgcolor=AzureFloralWhite>
<td>16</td>
<td>FIXME-PUBLIC</td>
<td></td>
</tr>
<tr bgcolor=CornsilkSlateGrey>
<td>17</td>
<td>reserved for FIXME-NAT</td> <td>disable</td>
</tr>
<tr bgcolor=AzureLightSlateGrey>
<td>18</td>
<td>reserved for FIXME-PUBLIC</td> <td>disable</td>
</tr>
<tr bgcolor=CornsilkSlateGrey>
<td>19</td>
<td>reserved for FIXME-NAT</td> <td>disable</td>
</tr>
<tr bgcolor=AzureLightSlateGrey>
<td>20</td>
<td>reserved for FIXME-PUBLIC</td> <td>disable</td>
</tr>
<tr bgcolor=GreySlateGrey>
<td>21</td>
<td>TRUNKreserved for FIXME-NAT</td> <td>DON'T USE!disable</td>
</tr>
<tr bgcolor=GreyLightSlateGrey>
<td>22</td>
<td>TRUNKreserved for FIXME-PUBLIC</td> <td>DON'T USE!disable</td>
</tr>
<tr bgcolor=GreyIndianRed>
<td>23</td>
<td>"TRUNK-NAT"</td> <td>DON'T USE![[ROUTER-Edge]]</td>
</tr>
<tr bgcolor=GreyLightCoral>
<td>24</td>
<td>"TRUNK-PUBLIC"</td> <td>DON'T USE![[ROUTER-Edge]]</td>
</tr>
</table>
== Config ==
<pre>
/user set 0 password="***********"
/system identity set name=SW-FIXME-MIKROTIK /interface bridge add name= Config bridge4Natadd name=bridge4Public /interface bridge port  add bridge=bridge4Nat interface=ether1work in progressadd bridge=bridge4Nat interface=ether3add bridge=bridge4Nat interface=ether5add bridge=bridge4Nat interface=ether7add bridge=bridge4Nat interface=ether9add bridge=bridge4Nat interface=ether11add bridge=bridge4Nat interface=ether13add bridge=bridge4Nat interface=ether15add bridge=bridge4Nat interface=ether23  add bridge=bridge4Public interface=ether2add bridge=bridge4Public interface=ether4add bridge=bridge4Public interface=ether6add bridge=bridge4Public interface=ether8add bridge=bridge4Public interface=ether10add bridge=bridge4Public interface=ether12add bridge=bridge4Public interface=ether14add bridge=bridge4Public interface=ether16add bridge=bridge4Public interface=ether24 /ip address add address=192.168.130.11/24 interface=ether23 /interface ethernet disable ether17disable ether18disable ether19disable ether20disable ether21disable ether22 </pre>
Pour controler:<pre>/interface ethernet bridge printset ether3 vlan-mode=use-tag vlan-id=130/interface bridge print detail</pre>
Et eventuellement:<pre>/interface ethernet print detailuser set 0 name = swadmin (si on veut changer le nom de l'admin)</pre>
Reference:
https://wikiwww.mikrotikyoutube.com/wiki/Manual:Basic_VLAN_switchinghttps://help.mikrotik.com/docs/display/ROS/Bridging+and+Switching#BridgingandSwitching-BridgeVLANFilteringwatch?v=4BOYqtV4MCY&list=PLJ7SGFemsLl1QUNkgAbGj9ldlWRrr8zMj&ab_channel=TheNetworkBerg
oldhttps:hostname SW-FIXME-02<br>snmp-server location CH LSN FIXME SERV 1<br>snmp-server contact FIXME<br>snmp-server community FIXME ro<br><br>username admin access-level 15<br>username admin password 7 XXXXXXXXXXXXXXXXXXXXXXXXXX<br>username guest access-level 0<br>username guest password 7 XXXXXXXXXXXXXXXXXXXXXXXXXX<br>enable password level 15 7 XXXXXXXXXXXXXXXXXXXXXXXXXX<br><br><br>vlan database<br>vlan 1 name DefaultVlan media ethernet state active<br>vlan 130 name FIXME-NAT media ethernet state active<br>vlan 135 name FIXME-PUBLIC media ethernet state active<br><br><br>interface ethernet 1/1<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/2<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1wiki.mikrotik.com/3<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1wiki/4<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/5<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/6<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/7<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/8<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/9<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/10<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/11<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/12<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/13<br>switchport allowed vlan add 130 untagged<br>switchport native vlan 130<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/14<br>switchport allowed vlan add 130 untagged<br>switchport native vlan 130<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/15<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/16<br>switchport allowed vlan add 135 untagged<br>switchport native vlan 135<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/17<br>switchport allowed vlan add 130,135 untagged<br>switchport native vlan 130<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/18<br>switchport allowed vlan add 130,135 untagged<br>switchport native vlan 130<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/19<br>switchport allowed vlan add 130,135 untagged<br>switchport native vlan 130<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/20<br>switchport allowed vlan add 130,135 untagged<br>switchport native vlan 130<br>switchport allowed vlan remove 1<br>spanning-tree edge-port<br><br><br>interface ethernet 1/21<br>switchport allowed vlan add 1 untagged<br>switchport native vlan 1<br>switchport allowed vlan add 130,135 tagged<br><br><br>interface ethernet 1/22<br>switchport allowed vlan add 1 untagged<br>switchport native vlan 1<br>switchport allowed vlan add 130,135 tagged<br><br><br>interface ethernet 1/23<br>switchport allowed vlan add 1 untagged<br>switchport native vlan 1<br>switchport allowed vlan add 130,135 tagged<br><br><br>interface ethernet 1/24<br>switchport allowed vlan add 1 untagged<br>switchport native vlan 1<br>switchport allowed vlan add 130,135 tagged<br><br><br>interface vlan 130<br>ip address 192.168.130.252 255.255.255.0<br><br>no ip http secure-server<br>spanning-tree mode stp<br>line console<br>line vty<br>end<br><br>Manual:Webfig
52
edits