Сильно не ругайте, только начинаю осваивать CAPsMAN и Mikrotik в общем...
Настроил 2 DHCP сервера на контроллере, одна сеть для роутера и точек (пока только одна, учусь дома, потом буду разворачивать полноценно 5 шт. для офиса), вторая для клиентов WiFi.
Схема для общего понимания.

Сейчас точка получает IP из пула для клиентов (получает адрес 192.168.4.24).

Возможно сделать так что бы она получала IP из подсети роутера (как пример 192.168.3.11) и что бы на нее можно было зайти?
/interface bridge
add name=INT
add name=bridge-local
add name=bridge-wifi
/interface ethernet
set [ find default-name=ether8 ] poe-lldp-enabled=yes poe-out=forced-on
/interface vlan
add interface=sfp1 name=sfp1-vl4005-INT vlan-id=4005
/interface list
add name=LAN
add name=WAN
/interface wifi channel
add band=2ghz-ax disabled=no frequency=2412,2437,2462 name=2.4GHz-AX width=20mhz
add band=5ghz-ac disabled=no frequency=5620,5660,5700 name=5GHz-AC width=20/40/80mhz
add band=2ghz-n disabled=no frequency=2412,2437,2462 name=2.4GHz-N width=20mhz
add band=5ghz-ax disabled=no frequency=5620,5660,5700 name=5GHz-AX width=20/40/80mhz
/interface wifi datapath
add bridge=bridge-wifi comment=WiFi-5GHz disabled=no name=DataPath-5GHz
add bridge=bridge-wifi comment=WiFi-2.4GHz disabled=no name=DataPath-2.4GHz
/interface wifi security
add authentication-types=wpa3-psk disable-pmkid=yes disabled=no group-encryption=ccmp group-key-update=5m management-encryption=cmac management-protection=required name=sec5GHz
add authentication-types=wpa2-psk,wpa3-psk disable-pmkid=yes disabled=no group-encryption=ccmp group-key-update=1h management-protection=allowed name=sec2GHz
/interface wifi steering
add disabled=no name=steering1 neighbor-group=group1 rrm=yes wnm=yes
/interface wifi configuration
add antenna-gain=3 chains=0,1 channel=5GHz-AC country=Russia datapath=DataPath-5GHz disabled=no mode=ap name=5Ghz-AC security=sec5GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-5GHz steering=steering1 tx-chains=0,1 tx-power=17
add antenna-gain=3 chains=0,1 channel=2.4GHz-N country=Russia datapath=DataPath-2.4GHz disabled=no mode=ap name=2.4Ghz-N security=sec2GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-2.4GHz steering=steering1 tx-chains=0,1 tx-power=17
add antenna-gain=3 chains=0,1 channel=2.4GHz-AX country=Russia datapath=DataPath-2.4GHz disabled=no mode=ap name=2.4Ghz-AX security=sec2GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-2.4GHz steering=steering1 tx-chains=0,1 tx-power=17
/interface wifi
add configuration=2.4Ghz-N disabled=no name=2Gn-MikroTik-AP radio-mac=**
add configuration=5Ghz-AC disabled=no name=5Gac-MikroTik-AP radio-mac=**
/ip pool
add name=home-dhcp ranges=192.168.3.2-192.168.3.30
add name=wifi-pool ranges=192.168.4.2-192.168.4.30
/ip dhcp-server
add address-pool=home-dhcp interface=bridge-local lease-time=1d name=home-dhcp
add address-pool=wifi-pool interface=bridge-wifi name=wifi-client-dhcp
/port
set 0 name=serial0
/interface bridge port
add bridge=bridge-local interface=ether1
add bridge=INT interface=sfp1-vl4005-INT
add bridge=bridge-wifi interface=ether8
/interface list member
add interface=bridge-local list=LAN
add interface=sfp1 list=WAN
add disabled=yes interface=bridge-wifi list=LAN
/interface wifi cap
set discovery-interfaces=all enabled=yes
/interface wifi capsman
set enabled=yes interfaces=bridge-wifi package-path="" require-peer-certificate=no upgrade-policy=none
/interface wifi configuration
add antenna-gain=3 chains=0,1 channel=*6 country=Russia datapath=DataPath-5GHz disabled=no mode=ap name=5Ghz-AX security=sec5GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-5GHz steering=steering1 tx-chains=0,1 tx-power=17
/interface wifi provisioning
add action=create-enabled disabled=no master-configuration=2.4Ghz-AX name-format=2Gax-%I supported-bands=2ghz-ax
add action=create-enabled disabled=no master-configuration=2.4Ghz-N name-format=2Gn-%I supported-bands=2ghz-n
add action=create-enabled disabled=no master-configuration=5Ghz-AC name-format=5Gac-%I supported-bands=5ghz-ac
add action=create-enabled disabled=no master-configuration=5Ghz-AX name-format=5Gax-%I supported-bands=5ghz-ax
/ip address
add address=192.168.3.1/27 interface=bridge-local network=192.168.3.0
add address=192.168.4.1/27 interface=bridge-wifi network=192.168.4.0
/ip dhcp-server network
add address=192.168.3.0/27 dns-server=213.87.99.100,8.8.8.8,1.1.1.1 gateway=192.168.3.1 netmask=27
add address=192.168.4.0/27 dns-server=213.87.99.100,8.8.8.8,1.1.1.1 gateway=192.168.4.1 netmask=27
/ip dns
set allow-remote-requests=yes servers=213.87.99.100,8.8.8.8
/ip firewall filter
add action=accept chain=input comment=UnblockCapsman dst-address-type=local src-address-type=local
add name=INT
add name=bridge-local
add name=bridge-wifi
/interface ethernet
set [ find default-name=ether8 ] poe-lldp-enabled=yes poe-out=forced-on
/interface vlan
add interface=sfp1 name=sfp1-vl4005-INT vlan-id=4005
/interface list
add name=LAN
add name=WAN
/interface wifi channel
add band=2ghz-ax disabled=no frequency=2412,2437,2462 name=2.4GHz-AX width=20mhz
add band=5ghz-ac disabled=no frequency=5620,5660,5700 name=5GHz-AC width=20/40/80mhz
add band=2ghz-n disabled=no frequency=2412,2437,2462 name=2.4GHz-N width=20mhz
add band=5ghz-ax disabled=no frequency=5620,5660,5700 name=5GHz-AX width=20/40/80mhz
/interface wifi datapath
add bridge=bridge-wifi comment=WiFi-5GHz disabled=no name=DataPath-5GHz
add bridge=bridge-wifi comment=WiFi-2.4GHz disabled=no name=DataPath-2.4GHz
/interface wifi security
add authentication-types=wpa3-psk disable-pmkid=yes disabled=no group-encryption=ccmp group-key-update=5m management-encryption=cmac management-protection=required name=sec5GHz
add authentication-types=wpa2-psk,wpa3-psk disable-pmkid=yes disabled=no group-encryption=ccmp group-key-update=1h management-protection=allowed name=sec2GHz
/interface wifi steering
add disabled=no name=steering1 neighbor-group=group1 rrm=yes wnm=yes
/interface wifi configuration
add antenna-gain=3 chains=0,1 channel=5GHz-AC country=Russia datapath=DataPath-5GHz disabled=no mode=ap name=5Ghz-AC security=sec5GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-5GHz steering=steering1 tx-chains=0,1 tx-power=17
add antenna-gain=3 chains=0,1 channel=2.4GHz-N country=Russia datapath=DataPath-2.4GHz disabled=no mode=ap name=2.4Ghz-N security=sec2GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-2.4GHz steering=steering1 tx-chains=0,1 tx-power=17
add antenna-gain=3 chains=0,1 channel=2.4GHz-AX country=Russia datapath=DataPath-2.4GHz disabled=no mode=ap name=2.4Ghz-AX security=sec2GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-2.4GHz steering=steering1 tx-chains=0,1 tx-power=17
/interface wifi
add configuration=2.4Ghz-N disabled=no name=2Gn-MikroTik-AP radio-mac=**
add configuration=5Ghz-AC disabled=no name=5Gac-MikroTik-AP radio-mac=**
/ip pool
add name=home-dhcp ranges=192.168.3.2-192.168.3.30
add name=wifi-pool ranges=192.168.4.2-192.168.4.30
/ip dhcp-server
add address-pool=home-dhcp interface=bridge-local lease-time=1d name=home-dhcp
add address-pool=wifi-pool interface=bridge-wifi name=wifi-client-dhcp
/port
set 0 name=serial0
/interface bridge port
add bridge=bridge-local interface=ether1
add bridge=INT interface=sfp1-vl4005-INT
add bridge=bridge-wifi interface=ether8
/interface list member
add interface=bridge-local list=LAN
add interface=sfp1 list=WAN
add disabled=yes interface=bridge-wifi list=LAN
/interface wifi cap
set discovery-interfaces=all enabled=yes
/interface wifi capsman
set enabled=yes interfaces=bridge-wifi package-path="" require-peer-certificate=no upgrade-policy=none
/interface wifi configuration
add antenna-gain=3 chains=0,1 channel=*6 country=Russia datapath=DataPath-5GHz disabled=no mode=ap name=5Ghz-AX security=sec5GHz security.ft=yes .ft-over-ds=yes ssid=HoGVaRDs-5GHz steering=steering1 tx-chains=0,1 tx-power=17
/interface wifi provisioning
add action=create-enabled disabled=no master-configuration=2.4Ghz-AX name-format=2Gax-%I supported-bands=2ghz-ax
add action=create-enabled disabled=no master-configuration=2.4Ghz-N name-format=2Gn-%I supported-bands=2ghz-n
add action=create-enabled disabled=no master-configuration=5Ghz-AC name-format=5Gac-%I supported-bands=5ghz-ac
add action=create-enabled disabled=no master-configuration=5Ghz-AX name-format=5Gax-%I supported-bands=5ghz-ax
/ip address
add address=192.168.3.1/27 interface=bridge-local network=192.168.3.0
add address=192.168.4.1/27 interface=bridge-wifi network=192.168.4.0
/ip dhcp-server network
add address=192.168.3.0/27 dns-server=213.87.99.100,8.8.8.8,1.1.1.1 gateway=192.168.3.1 netmask=27
add address=192.168.4.0/27 dns-server=213.87.99.100,8.8.8.8,1.1.1.1 gateway=192.168.4.1 netmask=27
/ip dns
set allow-remote-requests=yes servers=213.87.99.100,8.8.8.8
/ip firewall filter
add action=accept chain=input comment=UnblockCapsman dst-address-type=local src-address-type=local
/interface bridge
add name=bridge
/interface wifi
# managed by CAPsMAN
# mode: AP, SSID: HoGVaRDs-2.4GHz, channel: 2462/n
set [ find default-name=wifi1 ] configuration.manager=capsman .mode=ap disabled=no
# managed by CAPsMAN
# mode: AP, SSID: HoGVaRDs-5GHz, channel: 5620/ac/eeCe
set [ find default-name=wifi2 ] configuration.manager=capsman .mode=ap disabled=no
/ip hotspot profile
set [ find default=yes ] html-directory=hotspot
/interface bridge port
add bridge=bridge interface=ether1
add bridge=bridge interface=ether2
add bridge=bridge interface=wifi1
add bridge=bridge interface=wifi2
/interface wifi cap
set certificate=none discovery-interfaces=bridge enabled=yes
/ip dhcp-client
add interface=bridge
/ip route
add disabled=no dst-address=192.168.4.0/27 gateway=192.168.4.1 routing-table=main suppress-hw-offload=no
/ip service
set telnet disabled=yes
set ftp disabled=yes
set www disabled=yes
set ssh disabled=yes
set api disabled=yes
set api-ssl disabled=yes
/system clock
set time-zone-name=Asia/Yakutsk