Rozdíly
Zde můžete vidět rozdíly mezi vybranou verzí a aktuální verzí dané stránky.
| Obě strany předchozí revize Předchozí verze Následující verze | Předchozí verze | ||
|
routerboard [02.01.2015 11:16] mtalma [skripty] |
routerboard [13.03.2020 18:43] (aktuální) |
||
|---|---|---|---|
| Řádek 2: | Řádek 2: | ||
| ====== Routerboard ====== | ====== Routerboard ====== | ||
| - | *[[http:// | + | *[[http:// |
| *[[http:// | *[[http:// | ||
| *[[http:// | *[[http:// | ||
| Řádek 48: | Řádek 48: | ||
| < | < | ||
| /ip firewall nat add action=masquerade chain=srcnat comment="" | /ip firewall nat add action=masquerade chain=srcnat comment="" | ||
| + | </ | ||
| + | |||
| + | < | ||
| + | ################ | ||
| + | ## VPN L2TP/PPTP | ||
| + | ################ | ||
| + | /ip firewall nat | ||
| + | add action=dst-nat chain=dstnat comment=" | ||
| + | add action=dst-nat chain=dstnat in-interface=ether6-internet protocol=gre to-addresses=192.168.1.5 | ||
| + | |||
| + | add action=dst-nat chain=dstnat comment=" | ||
| + | add action=dst-nat chain=dstnat in-interface=ether6-internet protocol=ipsec-esp to-addresses=192.168.1.5 | ||
| </ | </ | ||
| Řádek 215: | Řádek 227: | ||
| /export file=backup | /export file=backup | ||
| </ | </ | ||
| + | |||
| + | *dynamická změna IP ve skupině< | ||
| + | /system scheduler | ||
| + | add interval=2h name=dynamic_ACL_Admin on-event="/ | ||
| + | \_address=[: | ||
| + | \n/ip firewall address-list add address=[: | ||
| + | min_IP timeout=\" | ||
| + | ftp, | ||
| + | sep/08/2015 start-time=00: | ||
| *pokud není ping, provede se reset konfigurace a po spuštění se naleje backup.rsc< | *pokud není ping, provede se reset konfigurace a po spuštění se naleje backup.rsc< | ||
| - | :if ([/ping 86.63.200.74 count=5] = 0) do={ /system reset-configuration keep-users=yes run-after-reset=backup.rsc | + | :if ([/ping 86.63.200.74 count=5] = 0) do={ /system reset-configuration keep-users=yes no-defaults=yes run-after-reset=backup.rsc |
| </ | </ | ||
| *poslání zálohy na mail< | *poslání zálohy na mail< | ||
| - | add interval=1w name=send_config on-event=" | + | : |
| - | \n: | + | : |
| - | \n:local smtp \"172.16.10.49\"\r\ | + | :local smtp "mailserver" |
| - | \n\r\ | + | |
| - | \n/system backup save name=backup.backup | + | # set mailserver |
| - | \n/export file=backup\r\ | + | /tool e-mail set address=$smtp |
| - | \n:delay 10s\r\ | + | |
| - | \n/tool e-mail send to=\$emailTo subject=(\" | + | # start backup |
| - | | + | /system backup save name=backup.backup |
| - | \n/tool e-mail send to=\$emailTo subject=(\" | + | /export file=backup |
| - | | + | |
| - | \n:delay 10s\r\ | + | :delay 10s |
| - | \n/file remove backup.backup\r\ | + | /tool e-mail send to=$emailTo subject=(" |
| - | \n/file remove backup.rsc" policy=ftp, | + | /tool e-mail send to=$emailTo subject=(" |
| - | | + | :delay 10s |
| + | /file remove backup.backup | ||
| + | /file remove backup.rsc | ||
| </ | </ | ||
| Řádek 241: | Řádek 265: | ||
| /tool e-mail send to=" | /tool e-mail send to=" | ||
| </ | </ | ||
| + | |||
| + | *Facebook IP< | ||
| + | /ip firewall address-list | ||
| + | add address=92.240.179.149 list=Facebook | ||
| + | add address=31.13.24.0/ | ||
| + | add address=31.13.64.0/ | ||
| + | add address=31.13.64.0/ | ||
| + | add address=31.13.64.0/ | ||
| + | add address=31.13.65.0/ | ||
| + | add address=31.13.66.0/ | ||
| + | add address=31.13.70.0/ | ||
| + | add address=31.13.71.0/ | ||
| + | add address=31.13.72.0/ | ||
| + | add address=31.13.73.0/ | ||
| + | add address=31.13.74.0/ | ||
| + | add address=31.13.75.0/ | ||
| + | add address=31.13.76.0/ | ||
| + | add address=31.13.77.0/ | ||
| + | add address=31.13.79.0/ | ||
| + | add address=31.13.82.0/ | ||
| + | add address=31.13.83.0/ | ||
| + | add address=31.13.84.0/ | ||
| + | add address=31.13.85.0/ | ||
| + | add address=31.13.86.0/ | ||
| + | add address=31.13.90.0/ | ||
| + | add address=31.13.91.0/ | ||
| + | add address=31.13.93.0/ | ||
| + | add address=31.13.95.0/ | ||
| + | add address=31.13.96.0/ | ||
| + | add address=66.220.144.0/ | ||
| + | add address=66.220.144.0/ | ||
| + | add address=66.220.152.0/ | ||
| + | add address=69.63.176.0/ | ||
| + | add address=69.63.176.0/ | ||
| + | add address=69.63.184.0/ | ||
| + | add address=69.171.224.0/ | ||
| + | add address=69.171.224.0/ | ||
| + | add address=69.171.239.0/ | ||
| + | add address=69.171.240.0/ | ||
| + | add address=69.171.255.0/ | ||
| + | add address=74.119.76.0/ | ||
| + | add address=103.4.96.0/ | ||
| + | add address=173.252.64.0/ | ||
| + | add address=173.252.96.0/ | ||
| + | add address=179.60.192.0/ | ||
| + | add address=179.60.192.0/ | ||
| + | add address=179.60.193.0/ | ||
| + | add address=204.15.20.0/ | ||
| + | </ | ||
| + | === export konfigurace na mail === | ||
| + | < | ||
| + | # v6 and higher | ||
| + | |||
| + | :local emailTo " | ||
| + | :local emailFrom " | ||
| + | :local smtp " | ||
| + | |||
| + | /export compact file=export | ||
| + | /tool e-mail send to=" | ||
| + | </ | ||
| + | |||
| + | === resolve Eset === | ||
| + | < | ||
| + | :local listname Eset | ||
| + | :local list { | ||
| + | " | ||
| + | " | ||
| + | " | ||
| + | }; | ||
| + | |||
| + | :foreach name in=$list do={ | ||
| + | :do { | ||
| + | /ip firewall address-list add address=[: | ||
| + | } on-error={ :log info " | ||
| + | }; | ||
| + | </ | ||
| + | |||
| + | === access list by IP Country === | ||
| + | < | ||
| + | /system scheduler | ||
| + | add interval=1d name=" | ||
| + | \n/import file-name=CZ" | ||
| + | </ | ||
| + | |||
