Проброс портов на RB951 (2)
Добавлено: 08 авг 2014, 23:08
Adolfius
# aug/08/2014 22:06:47 by RouterOS 6.17
# software id = B0XQ-2I5Y
#
/interface bridge
add admin-mac=D4:CA:6D:DD:99:D5 auto-mac=no l2mt
u=1598 name=bridge-local
/interface ethernet
set [ find default-name=ether1 ] comment=wan
set [ find default-name=ether2 ] comment=lan
set [ find default-name=ether3 ] master-port=eth
er2
set [ find default-name=ether4 ] master-port=eth
er2
set [ find default-name=ether5 ] master-port=eth
er2
/ip neighbor discovery
set ether1 comment=wan
set ether2 comment=lan
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wp
a-psk,wpa2-psk mode=\
dynamic-keys wpa-pre-shared-key=46990224B241
wpa2-pre-shared-key=\
46990224B241
add authentication-types=wpa-psk,wpa2-psk eap-me
thods="" \
management-protection=allowed mode=dynamic-k
eys name=Wifi \
supplicant-identity="" wpa-pre-shared-key=**** wpa2-pre-shared-key=\
*****
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g di
sabled=no frequency=2417 \
l2mtu=2290 mode=ap-bridge name=WIFI security
-profile=Wifi ssid=**** \
wds-mode=static-mesh
/ip hotspot user profile
set [ find default=yes ] idle-timeout=none keepa
live-timeout=2m \
mac-cookie-timeout=3d
/ip pool
add name=dhcp_pool1 ranges=192.168.88.2-192.168.
88.254
/ip dhcp-server
add address-pool=dhcp_pool1 disabled=no interfac
e=bridge-local name=dhcp1
/interface pptp-client
add add-default-route=yes allow=pap,chap,mschap1
,mschap2 connect-to=\
192.168.149.10 default-route-distance=1 dial
-on-demand=no disabled=no \
keepalive-timeout=60 max-mru=1450 max-mtu=14
50 mrru=disabled name=\
pptp-out1 password=**** profile=default-
encryption user=****
/interface bridge port
add bridge=bridge-local interface=ether2
add bridge=bridge-local interface=WIFI
/interface mesh port
add
/ip address
add address=10.15.38.2/19 interface=ether1 network=10.15.32.0
add address=192.168.88.1/24 interface=ether2 network=192.168.88.0
add address=46.164.253.99/32 interface=pptp-out1 network=217.25.224.118
/ip dhcp-server network
add address=192.168.88.0/24 gateway=192.168.88.1
/ip dns
set allow-remote-requests=yes servers=195.98.64.65,195.98.64.66
/ip firewall address-list
add address=192.168.88.0/24 list=inet
/ip firewall filter
add chain=input protocol=udp
add chain=forward dst-port=10000 protocol=udp
add chain=input protocol=igmp
add chain=input dst-port=25565 in-interface=pptp-out1 protocol=tcp tcp-flags=\
fin,syn,rst,ack
add chain=input dst-port=25565 in-interface=pptp-out1 protocol=udp
add chain=input dst-port=25565 protocol=tcp
add chain=input dst-port=25565 protocol=udp src-address-list=""
/ip firewall mangle
add action=change-mss chain=forward new-mss=1360 protocol=tcp tcp-flags=syn \
tcp-mss=1453-65535
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether1
add action=masquerade chain=srcnat out-interface=pptp-out1
add action=dst-nat chain=dstnat comment=Minecraft disabled=yes dst-address=\
10.15.38.2 dst-port=25565 protocol=tcp to-addresses=192.168.88.236 \
to-ports=25565
add action=dst-nat chain=dstnat comment=Minepack dst-port=25565 in-interface=\
pptp-out1 protocol=tcp to-addresses=192.168.88.236 to-ports=25565
add action=netmap chain=dstnat disabled=yes dst-port=25565 in-interface=\
pptp-out1 port="" protocol=udp to-addresses=192.168.88.1 to-ports=25565
add action=dst-nat chain=dstnat dst-port=7777 protocol=tcp to-addresses=\
192.168.88.252 to-ports=7777
add action=dst-nat chain=dstnat dst-port=7777 protocol=udp to-addresses=\
192.168.88.252 to-ports=7777
add action=dst-nat chain=dstnat dst-port=64738 in-interface=pptp-out1 \
protocol=udp to-addresses=192.168.88.236 to-ports=64738
add action=dst-nat chain=dstnat dst-port=64738 in-interface=pptp-out1 \
protocol=tcp to-addresses=192.168.88.236 to-ports=64738
/ip ipsec policy
add template=yes
/ip route
add distance=1 dst-address=192.168.149.10/32 gateway=10.15.38.1
/ip service
set telnet port=***
set ftp disabled=yes
set www address=0.0.0.0/0
set ssh address=192.168.88.0/24 port=***
set api disabled=yes
/ip upnp interfaces
add interface=bridge-local type=internal
add interface=ether1 type=external
add interface=pptp-out1 type=external
/routing igmp-proxy interface
add alternative-subnets=235.0.0.0/8,192.168.0.0/16 interface=ether1 upstream=\
yes
add interface=bridge-local
/system clock
set time-zone-name=Europe/Moscow
/system clock manual
set time-zone=+04:00
/system leds
set 0 interface=WIFI
/system ntp client
set enabled=yes primary-ntp=195.138.80.34
# software id = B0XQ-2I5Y
#
/interface bridge
add admin-mac=D4:CA:6D:DD:99:D5 auto-mac=no l2mt
u=1598 name=bridge-local
/interface ethernet
set [ find default-name=ether1 ] comment=wan
set [ find default-name=ether2 ] comment=lan
set [ find default-name=ether3 ] master-port=eth
er2
set [ find default-name=ether4 ] master-port=eth
er2
set [ find default-name=ether5 ] master-port=eth
er2
/ip neighbor discovery
set ether1 comment=wan
set ether2 comment=lan
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wp
a-psk,wpa2-psk mode=\
dynamic-keys wpa-pre-shared-key=46990224B241
wpa2-pre-shared-key=\
46990224B241
add authentication-types=wpa-psk,wpa2-psk eap-me
thods="" \
management-protection=allowed mode=dynamic-k
eys name=Wifi \
supplicant-identity="" wpa-pre-shared-key=**** wpa2-pre-shared-key=\
*****
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-b/g di
sabled=no frequency=2417 \
l2mtu=2290 mode=ap-bridge name=WIFI security
-profile=Wifi ssid=**** \
wds-mode=static-mesh
/ip hotspot user profile
set [ find default=yes ] idle-timeout=none keepa
live-timeout=2m \
mac-cookie-timeout=3d
/ip pool
add name=dhcp_pool1 ranges=192.168.88.2-192.168.
88.254
/ip dhcp-server
add address-pool=dhcp_pool1 disabled=no interfac
e=bridge-local name=dhcp1
/interface pptp-client
add add-default-route=yes allow=pap,chap,mschap1
,mschap2 connect-to=\
192.168.149.10 default-route-distance=1 dial
-on-demand=no disabled=no \
keepalive-timeout=60 max-mru=1450 max-mtu=14
50 mrru=disabled name=\
pptp-out1 password=**** profile=default-
encryption user=****
/interface bridge port
add bridge=bridge-local interface=ether2
add bridge=bridge-local interface=WIFI
/interface mesh port
add
/ip address
add address=10.15.38.2/19 interface=ether1 network=10.15.32.0
add address=192.168.88.1/24 interface=ether2 network=192.168.88.0
add address=46.164.253.99/32 interface=pptp-out1 network=217.25.224.118
/ip dhcp-server network
add address=192.168.88.0/24 gateway=192.168.88.1
/ip dns
set allow-remote-requests=yes servers=195.98.64.65,195.98.64.66
/ip firewall address-list
add address=192.168.88.0/24 list=inet
/ip firewall filter
add chain=input protocol=udp
add chain=forward dst-port=10000 protocol=udp
add chain=input protocol=igmp
add chain=input dst-port=25565 in-interface=pptp-out1 protocol=tcp tcp-flags=\
fin,syn,rst,ack
add chain=input dst-port=25565 in-interface=pptp-out1 protocol=udp
add chain=input dst-port=25565 protocol=tcp
add chain=input dst-port=25565 protocol=udp src-address-list=""
/ip firewall mangle
add action=change-mss chain=forward new-mss=1360 protocol=tcp tcp-flags=syn \
tcp-mss=1453-65535
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether1
add action=masquerade chain=srcnat out-interface=pptp-out1
add action=dst-nat chain=dstnat comment=Minecraft disabled=yes dst-address=\
10.15.38.2 dst-port=25565 protocol=tcp to-addresses=192.168.88.236 \
to-ports=25565
add action=dst-nat chain=dstnat comment=Minepack dst-port=25565 in-interface=\
pptp-out1 protocol=tcp to-addresses=192.168.88.236 to-ports=25565
add action=netmap chain=dstnat disabled=yes dst-port=25565 in-interface=\
pptp-out1 port="" protocol=udp to-addresses=192.168.88.1 to-ports=25565
add action=dst-nat chain=dstnat dst-port=7777 protocol=tcp to-addresses=\
192.168.88.252 to-ports=7777
add action=dst-nat chain=dstnat dst-port=7777 protocol=udp to-addresses=\
192.168.88.252 to-ports=7777
add action=dst-nat chain=dstnat dst-port=64738 in-interface=pptp-out1 \
protocol=udp to-addresses=192.168.88.236 to-ports=64738
add action=dst-nat chain=dstnat dst-port=64738 in-interface=pptp-out1 \
protocol=tcp to-addresses=192.168.88.236 to-ports=64738
/ip ipsec policy
add template=yes
/ip route
add distance=1 dst-address=192.168.149.10/32 gateway=10.15.38.1
/ip service
set telnet port=***
set ftp disabled=yes
set www address=0.0.0.0/0
set ssh address=192.168.88.0/24 port=***
set api disabled=yes
/ip upnp interfaces
add interface=bridge-local type=internal
add interface=ether1 type=external
add interface=pptp-out1 type=external
/routing igmp-proxy interface
add alternative-subnets=235.0.0.0/8,192.168.0.0/16 interface=ether1 upstream=\
yes
add interface=bridge-local
/system clock
set time-zone-name=Europe/Moscow
/system clock manual
set time-zone=+04:00
/system leds
set 0 interface=WIFI
/system ntp client
set enabled=yes primary-ntp=195.138.80.34
Исправляюсь. Вот настройки роутера. Правильно? Картинки заливать не умею, обычно по скайпу кидаю или местными средствами обхожусь(Да и не помню, что бы со своего моника нового заливал куда-нибудь картинки).
Суть проблемы, я не могу пробросить порты для сервера майнкрафт. Делал все по инструкциям, порт не открывается. Единственный раз когда получилось на долю секунду ето если /ip firewall nat add action=dst-nat chain=dstnat comment=Minepack dst-port=25565 in-interface=pptp-out1 protocol=tcp to-addresses=192.168.88.236 to-ports=25565
Я все правильно заполнил?