Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
Guia para hacer interfaces virtuales con un mismo mikrotik (Login independiente
para WIFI_ETECSA)
1-Requisitos
*Mikrotik con licencia LVL 4 o superior
2-
Configurar la WLAN1 de nuestro mikrotik de esta forma
band 5ghz-a/n
frequency=5520
frequency-mode=superchannel
mode=station-pseudobridge
scan-list=5150-5875
ssid=WIFI_ETECSA
station-roaming=disabled
wireless-protocol=802.11
3-
Crear las demas Wlan virtuales
/interface wireless
add disabled=no keepalive-frames=disabled mac-address=00:6E:50:DB:00:0D \
master-interface=wlan1 mode=station multicast-buffering=disabled name=\
wlan2 ssid=WIFI_ETECSA wds-cost-range=0 wds-default-cost=0 wps-mode=\
disabled
add disabled=no keepalive-frames=disabled mac-address=00:90:CF:BA:00:0B \
master-interface=wlan1 mode=station multicast-buffering=disabled name=\
wlan3 ssid=WIFI_ETECSA wds-cost-range=0 wds-default-cost=0 wps-mode=\
disabled
4-Desactivar el Nstreme
/interface wireless nstreme
set wlan1 enable-polling=no
/ip dhcp-client
add add-default-route=yes dhcp-options=hostname,clientid disabled=no \
interface=wlan1 use-peer-dns=no use-peer-ntp=no
add add-default-route=yes dhcp-options=hostname,clientid disabled=no \
interface=wlan2 use-peer-dns=no use-peer-ntp=no
add add-default-route=yes dhcp-options=hostname,clientid disabled=no \
interface=wlan3 use-peer-dns=no use-peer-ntp=no
6-Crear los address list (Listas de acceso para cada login)
/ip firewall address-list
add address=192.168.5.20 list=interfaz1
add address=192.168.5.22 list=interfaz2
add address=192.168.5.23 list=interfaz3
7-Hacer el Mangle
/ip firewall mangle
add action=mark-routing chain=prerouting new-routing-mark=Interfaz1 \
passthrough=yes src-address-list=Interfaz1
/ip firewall mangle
add action=mark-routing chain=prerouting new-routing-mark=Interfaz2 \
passthrough=yes src-address-list=Interfaz2
/ip firewall mangle
add action=mark-routing chain=prerouting new-routing-mark=Interfaz3 \
passthrough=yes src-address-list=Interfaz3
8-Hacer el NAT
/ip firewall nat
add action=masquerade chain=srcnat out-interface=wlan1 routing-table=\
Interfaz1 src-address-list=Interfaz1
add action=masquerade chain=srcnat out-interface=wlan2 routing-table=\
Interfaz2 src-address-list=Interfaz2
add action=masquerade chain=srcnat out-interface=wlan3 routing-table=\
Interfaz3 src-address-list=Interfaz3
Esas rutas las crea sus clientes dhcp automatico, solo tienen que agregarle el
routing-mark como mismo esta en el ejemplo