Mám router jako CAP3 propojený přes trunk s druhým routerem, na kterém běží CapsMan a CAP2 současně a nedaří se mi přijít na to, proč při zapnutí virtuálního AP rozhraní (v konfigu CapsMana označen jako CAP3-VLAN50) pod tím hlavním CAP3-VLAN30 se zruší provoz toho hlavního rozhraní. CAP2, který je na stejném routeru jako CapsMan, funguje bez problému. Netuší někdo, v čem by mohl být problém?
Konfiguraci samostatného CAP3 mám takto:
/interface wireless
# managed by CAPsMAN
# channel: 2452/20-Ce/gn(20dBm), SSID: Private_network, local forwarding
set [ find default-name=wlan1 ] disabled=no name=WiFi ssid=MikroTik
add mac-address=D4:CA:6D:52:64:07 master-interface=WiFi mode=station name=wlan1
/interface wireless cap
#
set bridge=Bridge certificate=request discovery-interfaces=VLAN30,VLAN50 enabled=yes interfaces=WiFi static-virtual=yes
/interface bridge
add name=Bridge protocol-mode=none
/interface bridge port
add bridge=Bridge interface=Port1-trunk
add bridge=Bridge interface=Port2
add bridge=Bridge interface=Port3
add bridge=Bridge interface=Port4
add bridge=Bridge interface=Port5
/interface bridge settings
set use-ip-firewall=yes
/interface vlan
add interface=Bridge name=VLAN30 vlan-id=30
add interface=Bridge name=VLAN50 vlan-id=50
/interface ethernet switch port
set 0 vlan-header=add-if-missing vlan-mode=secure
set 1 default-vlan-id=30 vlan-header=always-strip vlan-mode=secure
set 2 default-vlan-id=30 vlan-header=always-strip vlan-mode=secure
set 3 default-vlan-id=30 vlan-header=always-strip vlan-mode=secure
set 4 default-vlan-id=30 vlan-header=always-strip vlan-mode=secure
set 5 vlan-mode=secure
/interface ethernet switch vlan
add independent-learning=no ports=Switch-cpu,Port1-trunk,Port2,Port3,Port4,Port5 switch=Switch vlan-id=30
add independent-learning=no ports=Switch-cpu,Port1-trunk switch=Switch vlan-id=50
Router s CapsManem má obdobné nastavení VLAN včetně DHCP + konfigurace samotného CapsMana je zde:
/caps-man configuration
add channel.band=2ghz-g/n country="czech republic" datapath.bridge=Bridge datapath.client-to-client-forwarding=yes \
datapath.local-forwarding=yes datapath.vlan-id=10 datapath.vlan-mode=use-tag installation=indoor name=VLAN10 \
security.authentication-types=wpa2-psk security.encryption=aes-ccm security.passphrase=heslo1 ssid=Office
add channel.band=2ghz-g/n country="czech republic" datapath.bridge=Bridge datapath.client-to-client-forwarding=yes \
datapath.local-forwarding=yes datapath.vlan-id=30 datapath.vlan-mode=use-tag hide-ssid=yes installation=indoor name=VLAN30 security.authentication-types=wpa2-psk security.encryption=aes-ccm security.passphrase=heslo2 ssid=Private
add channel.band=2ghz-g/n country="czech republic" datapath.bridge=Bridge datapath.local-forwarding=yes datapath.vlan-id=50 \
datapath.vlan-mode=use-tag installation=indoor name=VLAN50 security.authentication-types=wpa2-psk security.encryption=\
aes-ccm security.passphrase=Heslo3 ssid=Hoste
/caps-man interface
add configuration=VLAN10 disabled=no l2mtu=1600 mac-address=CC:2D:E0:F5:78:A1 master-interface=none name=CAP2-VLAN10 \
radio-mac=CC:2D:E0:F5:78:A1 radio-name=CAP2-VLAN10
add configuration=VLAN30 disabled=yes l2mtu=1600 mac-address=CE:2D:E0:F5:78:A1 master-interface=CAP2-VLAN10 name=CAP2-VLAN30 radio-mac=00:00:00:00:00:00 radio-name=CAP2-VLAN30
add configuration=VLAN30 disabled=no l2mtu=1600 mac-address=D4:CA:6D:52:64:07 master-interface=none name=CAP3-VLAN30 radio-mac=D4:CA:6D:52:64:07 radio-name=D4CA6D526407
add configuration=VLAN50 disabled=yes l2mtu=1600 mac-address=D4:CA:6D:52:64:07 master-interface=CAP3-VLAN30 name=CAP3-VLAN50 radio-mac=D4:CA:6D:52:64:07 radio-name=D4CA6D526407
/caps-man manager
set ca-certificate=auto certificate=auto enabled=yes