Mikrotik 1 (Интернет) => Mikrotik 2 (расширяющий)
192.168.12-25.255 129.168.28-45.255
/interface ethernet set [ find default-name=ether1 ] name=eth1
/interface ethernet set [ find default-name=ether2 ] name=eth2
/interface ethernet set [ find default-name=ether3 ] name=eth3
/interface ethernet set [ find default-name=ether4 ] name=eth4
/interface ethernet set [ find default-name=ether5 ] name=eth5
/interface ethernet set [ find default-name=ether6 ] name=eth6
/interface ethernet set [ find default-name=ether7 ] name=eth7
/interface ethernet set [ find default-name=ether8 ] name=eth8
/interface ethernet set [ find default-name=ether9 ] name=eth9
/interface ethernet set [ find default-name=ether10 ] name=eth10
/interface wireless security-profiles set [ find default=yes ] supplicant-identity
=MikroTik
/ip pool add name=dp2 ranges=192.168.28.10-192.168.29.254
/ip pool add name=dp3 ranges=192.168.30.10-192.168.31.254
/ip pool add name=dp4 ranges=192.168.32.10-192.168.33.254
/ip pool add name=dp5 ranges=192.168.34.10-192.168.35.254
/ip pool add name=dp6 ranges=192.168.36.10-192.168.37.254
/ip pool add name=dp7 ranges=192.168.38.10-192.168.39.254
/ip pool add name=dp8 ranges=192.168.40.10-192.168.41.254
/ip pool add name=dp9 ranges=192.168.42.10-192.168.43.254
/ip pool add name=dp10 ranges=192.168.44.10-192.168.45.254
/ip dhcp-server add address-pool=dp2 disabled=no interface=eth2 name=dhcp2
/ip dhcp-server add address-pool=dp3 disabled=no interface=eth3 name=dhcp3
/ip dhcp-server add address-pool=dp4 disabled=no interface=eth4 name=dhcp4
/ip dhcp-server add address-pool=dp5 disabled=no interface=eth5 name=dhcp5
/ip dhcp-server add address-pool=dp6 disabled=no interface=eth6 name=dhcp6
/ip dhcp-server add address-pool=dp7 disabled=no interface=eth7 name=dhcp7
/ip dhcp-server add address-pool=dp8 disabled=no interface=eth8 name=dhcp8
/ip dhcp-server add address-pool=dp9 disabled=no interface=eth9 name=dhcp9
/ip dhcp-server add address-pool=dp10 disabled=no interface=eth10 name=dhcp10
/user group set full policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,win
box,password,web,sniff,sensitive,api,romon,dude,tikapp
/interface bridge port add interface=eth1
/ip neighbor discovery-settings set discover-interface-list=!dynamic
/ip address add address=192.168.28.1/23 interface=eth2 network=192.168.28.0
/ip address add address=192.168.30.1/23 interface=eth3 network=192.168.30.0
/ip address add address=192.168.32.1/23 interface=eth4 network=192.168.32.0
/ip address add address=192.168.34.1/23 interface=eth5 network=192.168.34.0
/ip address add address=192.168.36.1/23 interface=eth6 network=192.168.36.0
/ip address add address=192.168.38.1/23 interface=eth7 network=192.168.38.0
/ip address add address=192.168.40.1/23 interface=eth8 network=192.168.40.0
/ip address add address=192.168.42.1/23 interface=eth9 network=192.168.42.0
/ip address add address=192.168.44.1/23 interface=eth10 network=192.168.44.0
/ip address add address=192.168.17.252/23 interface=eth1 network=192.168.16.0
/ip dhcp-client add disabled=no interface=eth1
/ip dns set servers=192.168.16.1,8.8.8.8
/ip firewall address-list add address=192.168.12.0/23 list=net_mk1
/ip firewall address-list add address=192.168.14.0/23 list=net_mk1
/ip firewall address-list add address=192.168.16.0/23 list=net_mk1
/ip firewall address-list add address=192.168.18.0/23 list=net_mk1
/ip firewall address-list add address=192.168.20.0/23 list=net_mk1
/ip firewall address-list add address=192.168.22.0/23 list=net_mk1
/ip firewall address-list add address=192.168.24.0/23 list=net_mk1
/ip firewall address-list add address=192.168.28.0/23 list=net_mk2
/ip firewall address-list add address=192.168.30.0/23 list=net_mk2
/ip firewall address-list add address=192.168.32.0/23 list=net_mk2
/ip firewall address-list add address=192.168.34.0/23 list=net_mk2
/ip firewall address-list add address=192.168.36.0/23 list=net_mk2
/ip firewall address-list add address=192.168.38.0/23 list=net_mk2
/ip firewall address-list add address=192.168.40.0/23 list=net_mk2
/ip firewall address-list add address=192.168.42.0/23 list=net_mk2
/ip firewall address-list add address=192.168.44.0/23 list=net_mk2
/ip firewall address-list add address=192.168.17.251-192.168.17.254 list=admin
/ip firewall filter add action=accept chain=forward dst-address-list=net_mk2 src-a
ddress-list=net_mk1
/ip firewall filter add action=accept chain=forward dst-address-list=net_mk1 src-a
ddress-list=net_mk2
/ip firewall filter add action=accept chain=forward dst-address-list=net_mk1 src-a
ddress-list=admin
/ip firewall filter add action=accept chain=forward dst-address-list=net_mk2 src-a
ddress-list=admin
/ip firewall filter add action=accept chain=forward dst-address-list=admin src-add
ress-list=net_mk1
/ip firewall filter add action=accept chain=forward dst-address-list=admin src-add
ress-list=net_mk2
/ip firewall filter add action=accept chain=input protocol=tcp src-port=1194
/ip firewall nat add action=masquerade chain=srcnat out-interface=eth1
/ip route add distance=1 gateway=eth1
/ip route add distance=1 dst-address=192.168.16.0/23 gateway=192.168.16.1
/system routerboard settings set auto-upgrade=yes
# apr/13/2021 13:14:36 by RouterOS 6.48.1
# software id = 570L-W65N
#
# model = 2011iLS
# serial number = 7DD20A0C4CD9
/interface bridge
add comment=admin name=bridge1
/interface bridge port
add bridge=bridge1 interface=ether6
add bridge=bridge1 interface=ether3