Pada halaman ini kita akan melihat beberapa konfigurasi dasar pada mikrotik. Beberapa konfigurasi dasar yang dibutuhkan ketika mensetup sebuah routerOS Mikrotik.
/system package update check-for-updates
/system package update install
contoh
[admin@R1] > /system package update check-for-updates
channel: stable
installed-version: 7.6
latest-version: 7.12.1
status: New version is available
[admin@R1] > /system package update install
channel: stable
installed-version: 7.6
latest-version: 7.12.1
status: Downloaded, rebooting...
/system identity set name="NamaRouter"
Contoh
[admin@MikroTik] > system identity set name=R1
[admin@R1] >
/system clock set time-zone-name=TM/Z
contoh:
[admin@R1] > system clock set time-zone-name=Asia/Jakarta
[admin@R1] > system clock print
time: 22:07:17
date: aug/05/2024
time-zone-autodetect: yes
time-zone-name: Asia/Jakarta
gmt-offset: +07:00
dst-active: no
Best practice : Mengganti admin password atau membuat user baru dengan full privilage
untuk menghindari bruteforce
/user set admin password=PasswordBaru
atau
/user add name=username group=full password=PasswordBaru
/user disable admin
contoh:
[admin@R1] > /user set admin password=password
[admin@R1] > /user add name=ilyasa group=full password=password
[admin@R1] > /user disable admin
[admin@R1] > /user print
Flags: X - DISABLED
Columns: NAME, GROUP
# NAME GROUP
;;; system default user
0 X admin full
1 ilyasa full
/interface ethernet
set ether1 name=WAN
set ether2 name=LAN
/ip address
add address=192.168.1.1/24 interface=LAN
Contoh:
[ilyasa@R1] > interface ethernet set ether1 name=WAN
[ilyasa@R1] > interface ethernet set ether2 name=LAN
[ilyasa@R1] > interface ethernet print
Flags: R - RUNNING
Columns: NAME, MTU, MAC-ADDRESS, ARP
# NAME MTU MAC-ADDRESS ARP
0 R LAN 1500 50:CE:20:00:01:01 enabled
1 R WAN 1500 50:CE:20:00:01:00 enabled
2 R ether3 1500 50:CE:20:00:01:02 enabled
3 R ether4 1500 50:CE:20:00:01:03 enabled
[ilyasa@R1] > ip address add address=192.168.1.1/24 interface=LAN
[ilyasa@R1] > ip address print
Flags: D - DYNAMIC
Columns: ADDRESS, NETWORK, INTERFACE
# ADDRESS NETWORK INTERFACE
0 D 192.168.195.131/24 192.168.195.0 WAN
1 192.168.1.1/24 192.168.1.0 LAN
/ip dhcp-server setup
contoh
[ilyasa@R1] > ip dhcp-server setup
Select interface to run DHCP server on
dhcp server interface: LAN
Select network for DHCP addresses
dhcp address space: 192.168.1.0/24
Select gateway for given network
gateway for dhcp network: 192.168.1.1
Select pool of ip addresses given out by DHCP server
addresses to give out: 192.168.1.2-192.168.1.254
Select DNS servers
dns servers: 192.168.195.2
Select lease time
lease time: 10m
[ilyasa@R1] > ip dhcp-server print
Columns: NAME, INTERFACE, ADDRESS-POOL, LEASE-TIME
# NAME INTERFACE ADDRESS-POOL LEASE-TIME
0 dhcp1 LAN dhcp_pool0 10m
/ip firewall nat add chain=srcnat out-interface=WAN action=masquerade
Contoh:
[ilyasa@R1] > /ip firewall nat add chain=srcnat out-interface=WAN action=masquerade
[ilyasa@R1] > ip firewall nat print
Flags: X - disabled, I - invalid; D - dynamic
0 chain=srcnat action=masquerade out-interface=WAN
[ilyasa@R1] >
/system backup save name=backupName
/system backup load name=backupName
Contoh
[ilyasa@R1] > /system backup save name=SetupBackup
Saving system configuration
Configuration backup saved
[ilyasa@R1] > /system backup load name=SetupBackup
password: ********
Restore and reboot? [y/N]:
y
Restoring system configuration
System configuration restored, rebooting now