Sei sulla pagina 1di 3

sube la version a 6.39.5 o 6.39.

3, cuando vayas a crear las virtuales solo te va a


salir virtual y dentro puedes escoger lo que desees, modo ap o modo cliente

Guia para hacer interfaces virtuales con un mismo mikrotik (Login independiente
para WIFI_ETECSA)
1-Requisitos
*Mikrotik con licencia LVL 4 o superior
2-
Configurar la WLAN1 de nuestro mikrotik de esta forma

band 5ghz-a/n
frequency=5520
frequency-mode=superchannel
mode=station-pseudobridge
scan-list=5150-5875
ssid=WIFI_ETECSA
station-roaming=disabled
wireless-protocol=802.11

Por new terminal seria asi


/interface wireless
set [ find default-name=wlan1 ] ampdu-priorities=0,1,2,3,4,5,6,7 band=\
5ghz-a/n frequency=5520 \
frequency-mode=superchannel
mode=station-pseudobridge preamble-mode=long \
radio-name="" scan-list=5150-5875 ssid=WIFI_ETECSA
wireless-protocol=802.11

3-
Crear las demas Wlan virtuales

/interface wireless
add disabled=no keepalive-frames=disabled mac-address=00:6E:50:DB:00:0D \
master-interface=wlan1 mode=station multicast-buffering=disabled name=\
wlan2 ssid=WIFI_ETECSA wds-cost-range=0 wds-default-cost=0 wps-mode=\
disabled
add disabled=no keepalive-frames=disabled mac-address=00:90:CF:BA:00:0B \
master-interface=wlan1 mode=station multicast-buffering=disabled name=\
wlan3 ssid=WIFI_ETECSA wds-cost-range=0 wds-default-cost=0 wps-mode=\
disabled

4-Desactivar el Nstreme
/interface wireless nstreme
set wlan1 enable-polling=no

5-Hacer el cliente DHCP

/ip dhcp-client
add add-default-route=yes dhcp-options=hostname,clientid disabled=no \
interface=wlan1 use-peer-dns=no use-peer-ntp=no
add add-default-route=yes dhcp-options=hostname,clientid disabled=no \
interface=wlan2 use-peer-dns=no use-peer-ntp=no
add add-default-route=yes dhcp-options=hostname,clientid disabled=no \
interface=wlan3 use-peer-dns=no use-peer-ntp=no
6-Crear los address list (Listas de acceso para cada login)
/ip firewall address-list
add address=192.168.5.20 list=interfaz1
add address=192.168.5.22 list=interfaz2
add address=192.168.5.23 list=interfaz3

7-Hacer el Mangle
/ip firewall mangle
add action=mark-routing chain=prerouting new-routing-mark=Interfaz1 \
passthrough=yes src-address-list=Interfaz1
/ip firewall mangle
add action=mark-routing chain=prerouting new-routing-mark=Interfaz2 \
passthrough=yes src-address-list=Interfaz2
/ip firewall mangle
add action=mark-routing chain=prerouting new-routing-mark=Interfaz3 \
passthrough=yes src-address-list=Interfaz3

8-Hacer el NAT
/ip firewall nat
add action=masquerade chain=srcnat out-interface=wlan1 routing-table=\
Interfaz1 src-address-list=Interfaz1
add action=masquerade chain=srcnat out-interface=wlan2 routing-table=\
Interfaz2 src-address-list=Interfaz2
add action=masquerade chain=srcnat out-interface=wlan3 routing-table=\
Interfaz3 src-address-list=Interfaz3

9-Agregar el mark routing a la ruta en routes (Esto es un ejemplo)


/ip route
add distance=1 gateway=10.194.231.1%wlan1 routing-mark=Interfaz1
add distance=1 gateway=10.194.231.1%wlan2 routing-mark=Interfaz2
add distance=1 gateway=10.194.231.1%wlan3 routing-mark=Interfaz3

Esas rutas las crea sus clientes dhcp automatico, solo tienen que agregarle el
routing-mark como mismo esta en el ejemplo

10-Etecsa si no te logeas te bota la conexion por tanto es necesario de este script


para que el mikrotik se reconecte automatico

Asi deberia funcionar los login por independientes.


/system scheduler
add interval=2m5s name="Reinicio wlan1" on-event=\
"/ip dhcp-client renew [find interface=wlan1]\r\
\n" policy=\
ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon \
start-date=jan/01/1970 start-time=00:00:00

add interval=2m4s name="Reinicio wlan11" on-event=\


"/ip dhcp-client renew [find interface=wlan2]\r\
\n" policy=\
ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon \
start-date=jan/01/1970 start-time=00:00:00
/system scheduler
add interval=2m3s name="Reinicio wlan3" on-event=\
"/ip dhcp-client renew [find interface=wlan11]\r\
\n" policy=\
ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon \
start-date=jan/01/1970 start-time=00:00:00

Potrebbero piacerti anche