Puski Ďakujem za rady, no asi niečo stále robím zle, pretože sedím za tým celý deň a do unifi to za nič neviem dostať 🙁. Unifi som resetoval asi milión krát, no buď ho cez controler nenájde, alebo ho nevie adoptovať. Ak ho nájde, tak je v tom istom adresnom rozsahu ako som ja, ale skončí to adoption failed a stále mi to vypisuje
If this device was previously managed by another console, you can:
Reassign the device in the Network mobile app, or
Perform an Advanced Adoption using the device's credentials set in its original Network instance under Network Device SSH Authentication, or
Restore the Network application to a past configuration that managed this device.
If this device has not previously been managed elsewhere, perform a factory-reset then readopt the device.
Aj keď dám forget, len sa to opakuje.
Puski V bridge->VLAN si můžeš pro sichr u té dané vlany přihodit ten port do kolonky untagged (není to potřeba ten tik to dělá jinak dynamicky). Tím máš vymyšlený management.
Keďže nejde pri jednej VLANe nastaviť aj tagg aj untagg ten istý port, tak pochopil som správne, že pre management má byť samostatná VLAN? Ale aj keď áno, ani toto mi nepomohlo.
Aktuálne mám na porte do Unifi PVID 10, v leases vidím, že má IP z rozsahu 10.10.1.1 no ako píšem vyššie, nevie ho adoptovať.
Takto vyzerá konfigurácia aktuálne. Prosím, je tam chyba, ktorú nevidím?
/interface bridge
add ingress-filtering=no name=Bridge vlan-filtering=yes
/interface ethernet
set [ find default-name=ether1 ] name=ether1_gateway
set [ find default-name=ether2 ] name=ether2_Unifi_port
set [ find default-name=ether3 ] name="ether3_obyvacka 1"
set [ find default-name=ether4 ] name="ether4_chodba 1_Philips Hue"
set [ find default-name=ether5 ] name="ether5_obyvacka 2"
set [ find default-name=ether6 ] name="ether6_obyvacka 5_TV"
set [ find default-name=ether7 ] name="ether7_obyvacka 6_Xbox"
set [ find default-name=ether10 ] name="ether10_obyvacka 7_ATV"
set [ find default-name=ether12 ] name="ether12_kuchyna 1"
set [ find default-name=ether14 ] name="ether14_obyvacka 8_AVR"
set [ find default-name=ether16 ] name=ether16_NAS
set [ find default-name=ether17 ] name="ether17_detska 3"
set [ find default-name=ether18 ] name="ether18_detska 4"
set [ find default-name=ether19 ] name="ether19_spalna 1"
set [ find default-name=ether20 ] name="ether20_spalna 2"
set [ find default-name=ether21 ] name="ether21_detska 2"
/interface pppoe-client
add add-default-route=yes disabled=no interface=ether1_gateway name=pppoe_ISP \
user=morvaymi74@optik
/interface vlan
add interface=Bridge name=vlan10_Home vlan-id=10
add interface=Bridge name=vlan20_Guest vlan-id=20
add interface=Bridge name=vlan30_Samko vlan-id=30
/interface list
add name=WAN
add name=LAN
/interface lte apn
set [ find default=yes ] ip-type=ipv4 use-network-apn=no
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa2-psk mode=dynamic-keys \
supplicant-identity=MikroTik
/ip pool
add name=dhcp_pool_Home ranges=10.10.1.2-10.10.1.254
add name=dhcp_pool_Guest ranges=10.20.1.2-10.20.1.150
add name=dhcp_pool_Samko ranges=10.30.1.2-10.30.1.254
add name=dhcp_pool_bridge ranges=172.10.1.2-172.10.1.254
/ip dhcp-server
add address-pool=dhcp_pool_Home interface=vlan10_Home lease-time=1d name=\
dhcp_Home
add address-pool=dhcp_pool_Guest interface=vlan20_Guest lease-time=1d name=\
dhcp_Guest
add address-pool=dhcp_pool_Samko interface=vlan30_Samko lease-time=1d name=\
dhcp_Samko
add address-pool=dhcp_pool_bridge interface=Bridge lease-time=1d name=dhcp2
/port
set 0 name=serial0
/system logging action
set 0 memory-lines=99999
add name=Syslog remote=10.10.1.15 src-address=10.10.1.1 target=remote
/interface bridge port
add bridge=Bridge ingress-filtering=no interface="ether3_obyvacka 1" pvid=10
add bridge=Bridge ingress-filtering=no interface=\
"ether4_chodba 1_Philips Hue" pvid=10
add bridge=Bridge ingress-filtering=no interface="ether7_obyvacka 6_Xbox" \
pvid=10
add bridge=Bridge ingress-filtering=no interface="ether6_obyvacka 5_TV" pvid=\
20
add bridge=Bridge ingress-filtering=no interface="ether10_obyvacka 7_ATV" \
pvid=10
add bridge=Bridge ingress-filtering=no interface="ether5_obyvacka 2" pvid=20
add bridge=Bridge interface=ether16_NAS pvid=10
add bridge=Bridge interface="ether14_obyvacka 8_AVR" pvid=10
add bridge=Bridge interface=ether2_Unifi_port pvid=10
add bridge=Bridge interface="ether21_detska 2" pvid=20
add bridge=Bridge interface="ether12_kuchyna 1" pvid=20
add bridge=Bridge interface="ether19_spalna 1" pvid=20
/ip settings
set max-neighbor-entries=8192
/ipv6 settings
set disable-ipv6=yes
/interface bridge vlan
add bridge=Bridge tagged=Bridge,ether2_Unifi_port untagged="ether3_obyvacka 1,\
ether4_chodba 1_Philips Hue,ether10_obyvacka 7_ATV,ether14_obyvacka 8_AVR,\
ether16_NAS" vlan-ids=10
add bridge=Bridge tagged=Bridge,ether2_Unifi_port untagged="ether5_obyvacka 2,\
ether6_obyvacka 5_TV,ether7_obyvacka 6_Xbox,ether12_kuchyna 1,ether21_dets\
ka 2,ether17_detska 3,ether18_detska 4,ether19_spalna 1" vlan-ids=20
add bridge=Bridge tagged=Bridge,ether2_Unifi_port vlan-ids=30
/interface ovpn-server server
set auth=sha1,md5
/ip address
add address=10.10.1.1/24 interface=vlan10_Home network=10.10.1.0
add address=10.20.1.1/24 interface=vlan20_Guest network=10.20.1.0
add address=10.30.1.1/24 interface=vlan30_Samko network=10.30.1.0
add address=172.10.1.1/24 interface=Bridge network=172.10.1.0
/ip dhcp-server lease
add address=10.10.1.15 mac-address=00:11:32:9C:A8:B8 server=dhcp_Home
/ip dhcp-server network
add address=10.10.1.0/24 gateway=10.10.1.1
add address=10.20.1.0/24 gateway=10.20.1.1
add address=10.30.1.0/24 gateway=10.30.1.1
add address=10.100.1.0/24 gateway=10.100.1.1
add address=172.10.1.0/24 gateway=172.10.1.1
/ip dns
set servers=1.1.1.1,1.0.0.1
/ip firewall filter
add action=fasttrack-connection chain=forward connection-state=\
established,related hw-offload=yes
add action=drop chain=input comment=Invalid connection-state=invalid \
log-prefix=_AA_
add action=drop chain=input comment="Everything else" log-prefix=_AB_
add action=accept chain=forward comment="Estabilished, related" \
connection-state=established,related
add action=accept chain=forward comment="vlan10 net yes" in-interface=\
vlan10_Home out-interface=pppoe_ISP
add action=accept chain=forward comment="vlan20 net yes" in-interface=\
vlan20_Guest out-interface=pppoe_ISP
add action=accept chain=forward comment="vlan30 net yes" in-interface=\
vlan30_Samko out-interface=pppoe_ISP
add action=drop chain=forward comment=Invalid connection-state=invalid \
log-prefix=_AA_
add action=drop chain=forward comment="Everything else" log-prefix=_AB_
/ip firewall nat
add action=masquerade chain=srcnat out-interface=pppoe_ISP
Puski ještě malá rada. Aby ses neodstrihnul.
Odstrihol som sa, ale tip pomohol 😉. Aktuálne nepoužívané porty vôbec nemám v bridge.