# model = CCR2116-12G-4S+
# serial number = HEK08S9JNAS
/interface bridge
add name=LOOPBACK_CONEX
add name=Loopback01
/interface ethernet
set [ find default-name=ether2 ] comment="LAN OUT OLT ZTE =="
set [ find default-name=ether3 ] comment="LAN OUT SERVER PORTILLO ="
set [ find default-name=ether4 ] comment="LAN OUT CCR1016 =="
set [ find default-name=sfp-sfpplus1 ] comment=CHARACK
/interface vlan
add interface=sfp-sfpplus1 name=VLAN54 vlan-id=54
/port
set 0 name=serial0
/ip neighbor discovery-settings
set discover-interface-list=!dynamic
/ip address
add address=181.174.225.176 interface=Loopback01 network=181.174.225.176
add address=181.174.225.177 interface=Loopback01 network=181.174.225.177
add address=181.174.225.178 interface=Loopback01 network=181.174.225.178
add address=181.174.225.179 interface=Loopback01 network=181.174.225.179
add address=181.174.225.180 interface=Loopback01 network=181.174.225.180
add address=181.174.225.181 interface=Loopback01 network=181.174.225.181
add address=181.174.225.182 interface=Loopback01 network=181.174.225.182
add address=181.174.225.183 interface=Loopback01 network=181.174.225.183
add address=181.174.225.184 interface=Loopback01 network=181.174.225.184
add address=181.174.225.185 interface=Loopback01 network=181.174.225.185
add address=181.174.225.186 interface=Loopback01 network=181.174.225.186
add address=181.174.225.187 interface=Loopback01 network=181.174.225.187
add address=181.174.225.188 interface=Loopback01 network=181.174.225.188
add address=181.174.225.189 interface=Loopback01 network=181.174.225.189
add address=181.174.225.190 interface=Loopback01 network=181.174.225.190
add address=181.174.225.191 interface=Loopback01 network=181.174.225.191
add address=10.0.10.138/30 interface=VLAN54 network=10.0.10.136
add address=192.168.25.1/24 comment="IP ADM CCR1009 ZTE =" interface=ether2
network=192.168.25.0
add address=181.174.227.0 interface=Loopback01 network=181.174.227.0
add address=181.174.227.1 interface=Loopback01 network=181.174.227.1
add address=181.174.227.2 interface=Loopback01 network=181.174.227.2
add address=181.174.227.3 interface=Loopback01 network=181.174.227.3
add address=181.174.227.4 interface=Loopback01 network=181.174.227.4
add address=181.174.227.5 interface=Loopback01 network=181.174.227.5
add address=181.174.227.6 interface=Loopback01 network=181.174.227.6
add address=181.174.227.7 interface=Loopback01 network=181.174.227.7
add address=181.174.227.8 interface=Loopback01 network=181.174.227.8
add address=181.174.227.9 interface=Loopback01 network=181.174.227.9
add address=181.174.227.10 interface=Loopback01 network=181.174.227.10
add address=181.174.227.12 interface=Loopback01 network=181.174.227.12
add address=181.174.227.13 interface=Loopback01 network=181.174.227.13
add address=181.174.227.14 interface=Loopback01 network=181.174.227.14
add address=181.174.227.15 interface=Loopback01 network=181.174.227.15
add address=35.35.35.1/24 comment="IP ADM CCR1009 ZTE =" interface=ether3
network=35.35.35.0
/ip dns
set allow-remote-requests=yes servers=8.8.8.8
/ip firewall address-list
add address=27.27.27.27 disabled=yes list=PUBLIC
add address=172.16.110.239 list=PUBLIC
/ip firewall filter
add action=fasttrack-connection chain=forward connection-state=established,related
hw-offload=yes
add action=accept chain=forward connection-state=established,related
add action=drop chain=forward disabled=yes dst-address-list=blacklist log=yes log-
prefix=BLACKLIST
add action=drop chain=forward comment="Drop new connectionsfrom blacklisted IP's to
this router VOIP" disabled=yes dst-address-list=voip-blacklist log=yes log-
prefix=VOIP
/ip firewall nat
add action=src-nat chain=srcnat comment="NAT PUBLIC" disabled=yes out-
interface=VLAN54 src-address-list=PUBLIC to-addresses=181.174.227.14
add action=src-nat chain=srcnat comment="NAT CHARACK" disabled=yes out-
interface=VLAN54 per-connection-classifier=src-address:14/0 to-
addresses=181.174.227.0
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/1 to-addresses=181.174.227.1
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/2 to-addresses=181.174.227.2
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/3 to-addresses=181.174.227.3
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/4 to-addresses=181.174.227.4
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/5 to-addresses=181.174.227.5
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/6 to-addresses=181.174.227.6
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/7 to-addresses=181.174.227.7
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/8 to-addresses=181.174.227.8
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/9 to-addresses=181.174.227.9
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/10 to-addresses=181.174.227.10
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/11 to-addresses=181.174.227.11
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/12 to-addresses=181.174.227.12
add action=src-nat chain=srcnat disabled=yes out-interface=VLAN54 per-connection-
classifier=src-address:14/13 to-addresses=181.174.227.13
/ip firewall service-port
set irc disabled=no
set rtsp disabled=no
/ip route
add check-gateway=ping disabled=no distance=1 dst-address=0.0.0.0/0
gateway=10.0.10.137 pref-src="" routing-table=main scope=30 suppress-hw-offload=no
target-scope=10
add disabled=no distance=1 dst-address=173.17.106.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.107.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.108.0/24 gateway=192.168.25.12 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.110.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.115.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=192.168.200.0/24 gateway=192.168.25.12 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.125.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.130.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.140.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.150.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.120.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=43.1.43.0/24 gateway=192.168.25.12 pref-
src=0.0.0.0 routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=192.168.77.0/24 gateway=192.168.25.12 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.107.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.108.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.106.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.110.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.115.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=173.17.120.0/24 gateway=192.168.25.12 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.125.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.130.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=172.16.140.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=192.168.90.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add comment="RUTA FIBRA" disabled=no distance=1 dst-address=172.16.0.0/16
gateway=192.168.15.3 pref-src="" routing-table=main scope=30 suppress-hw-offload=no
target-scope=10
add disabled=no distance=1 dst-address=192.168.67.0/24 gateway=192.168.15.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.106.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.107.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.108.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.110.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.115.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.120.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
add disabled=no distance=1 dst-address=174.16.125.0/24 gateway=35.35.35.3 pref-
src="" routing-table=main scope=30 suppress-hw-offload=no target-scope=10
/ip service
set telnet disabled=yes
set ftp disabled=yes
set ssh disabled=yes
set api disabled=yes
set api-ssl disabled=yes
/system clock
set time-zone-name=America/Lima
/system identity
set name="CCR 2116 / CORE DE BORNE =="
/system routerboard settings
set enter-setup-on=delete-key
/tool romon
set enabled=yes
[cinthiabautista@CCR 2116 / CORE DE BORNE ==] >