Mikrotik Router OS CAPsMAN Wifi Controller Simple Configuration

Mikrotik Router OS CAPsMAN Configuration only bridge mode with external DHCP server and NAT service
You can deploy CAPsMAN wireless controller on any Mikrotik RouterOS hardware (for instance Haplite series routers)
1st step is to check our RouterOS image version, it should include wiressless package (check System>Packages). OS version on CAPsman controller should the same as in Access Point. You can upgrade the version manual. Go to the System>Packages, then simply drag and drop your previously downloaded imge. After I would recomend to reboot it from CLI / system reboot and then just run / system routerboard upgrade and again reboot it. Then we can check the version / sys rou print.
2nd step is to create bridge interface which should include our physycal interface or several interfaces, so we create bridging between our physycal interfaces or if it's only one interfaces then it will be put into bridge mode. Let's check our interfaces: /interface print
/interface bridge (this…

HPE MSR series router NAT, DHCP, SSH config

1. NAT Configuration
 1.1. Define Access List
[Router] acl basic 2001  [Router] step 1 [Router] rule 0 permit [Router] rule 10 deny
2. Interfaces Configuration
2.1. External (WAN) interface configuration
[Router] interface GigabitEthernet 0/0/0 [Router] ip address [Router] nat outbound 2001
2.2. Internal (LAN) sub-interfaces configuration
[Router] interface GigabitEthernet 0/0/1.2 [Router] ip address [Router] vlan-type dot1q vid 2
[Router] interface GigabitEthernet 0/0/1.3 [Router] ip address [Router] vlan-type dot1q vid 3
[Router] interface GigabitEthernet 0/0/1.4 [Router] ip address [Router] vlan-type dot1q vid 4
3. DHCP Server Configuration
3.1. Enable DHCP service on router
[Router] dhcp enable
3.2. Define dhcp settings for vlan 2
[Router] dhcp server ip-pool vlan 2 [Router] network mask [Router] dns-list [Router] gateway-list
3.3. Define d…

> First create a l3-interface to the VLAN you are trying to limit
>This way you will apply rate limit filter on transit traffic going in / out of VLAN e.g.

1) Filter Definition

firewall {
policer 2Mbps {
if-exceeding {
bandwidth-limit 2m;
burst-size-limit 100k;
then discard;
filter Filter-2Mbps {
term a {
from {
source-address {;
then {
policer 2Mbps;

2) Apply on VLAN Interface

interfaces {
vlan {
unit 0 {
family inet {
filter {
output 2Mbps;