MikroTik Cloud Hosted Router
Fa'amatalaga
- Igoa o oloa: MikroTik CHR (Cloud Hosted Router)
- Fa'amatalaga: O le alalaupapa fa'aonaponei e fa'avae i luga o le ao mo galuega fa'aola feso'otaiga
- Vaega: Puleaina o fesoʻotaʻiga, auaunaga VPN, puipuiga o le pa puipui, pulega faʻapipiʻi
Fa'atonuga o le Fa'aaogaina o Mea
Fa'atonu Taiala
- Saunia Lou Siosiomaga: Ia fa'amautinoa o lo'o fa'amalieina e lau si'osi'omaga ao mana'oga mo le fa'apipi'iina o le CHR.
- La'u mai le Ata MikroTik CHR: Maua le ata CHR mai le MikroTik aloaia webnofoaga poʻo fale teu oloa.
- Fa'atino le CHR i lau Si'osi'omaga Ao: Mulimuli i faʻatonuga faʻapitoa e faʻapipiʻi le CHR i lau seti ao.
- Fa'atonuga Muamua: Fa'atulaga tulaga fa'avae e pei o feso'ota'iga feso'ota'iga ma tuatusi IP pe a uma ona fa'apipi'iina.
- Fa'atonuga maualuga (filifiliga): Fa'asinomaga tulaga o le CHR e fa'atatau i au feso'otaiga ma faiga fa'atonutonu.
- Pulega ma le Mataituina: Fa'aoga meafaigaluega MikroTik e pulea, mata'ituina, ma fo'ia lau fa'ata'ita'iga CHR.
- Tausiga masani: Faʻatino galuega faʻaleleia masani e faʻamautinoa ai le faʻatinoina lelei ma le saogalemu.
Faamoemoega: MikroTik CHR ose fa'aola fa'apolokalame fa'apipi'i i le ao ua fa'atulagaina e tu'uina atu ai galuega fa'aola feso'ota'iga i totonu o si'osi'omaga fa'apitoa. E fa'atagaina oe e fa'aogaina uiga o le MikroTik's RouterOS i fa'alapotopotoga o ao, fa'apena lelei mo le pulega o feso'ota'iga, auaunaga VPN, puipuiga o le pa puipui, ma le fa'atonutonuina o le bandwidth i totonu o se fa'atonuga po'o le ao-fa'avae.
Fa'aoga Tulaga
- Feso'ota'iga Tuma'oti (VPN): E mafai ona fa'aoga le CHR e fa'atautaia ma fa'aalaala ai fe'avea'i VPN, fa'amautinoaina le saogalemu ma lelei feso'ota'iga i le va o nofoaga mamao.
- Pulega o feso'ota'iga: Lelei mo le puleaina o siosiomaga fesoʻotaʻiga lavelave, e aofia ai le taʻavale, fesuiaʻiga, ma le faʻatulagaina o feoaiga.
- Pa puipui ma Puipuiga: Tuuina atu le malosi o le firewall e fa'amautu ai feoaiga o feso'ota'iga ma puipuia mai avanoa e le'i fa'atagaina.
- Pulega o Bandwidth: Fa'aoga mo le mata'ituina ma le pulea o le fa'aogaina o le bandwidth e fa'amalieina ai le fa'atinoga o feso'otaiga.
Fa'atonu Taiala
- Saunia Lou Siosiomaga:
Ia mautinoa o loʻo i ai sau siosiomaga ao poʻo se faʻasalalauga faʻapitoa e mafai ona e faʻaogaina ai le CHR. Fa'avae lagolago e aofia ai AWS, Azure, Google Cloud, VMware, Hyper-V, ma isi. - La'u mai le Ata MikroTik CHR:
Asiasi i le ofisa MikroTik webnofoaga po'o MikroTik.com e la'u mai ai le ata talafeagai a le CHR. Filifili i le va o lomiga eseese e fa'atatau i ou mana'oga (fa'ata'ita'iga, fale mautu po'o su'ega). - Fa'atino le CHR i lau Si'osi'omaga Ao:
- AWS: Fausia se faʻataʻitaʻiga fou ma faʻapipiʻi le ata o le CHR. Faʻatonu le faʻataʻitaʻiga ma punaoa talafeagai (CPU, RAM, teuina).
- Azure: Fa'aoga le Azure Maketi e fa'atūina ai se masini fa'apitoa MikroTik CHR.
- VMware/Hyper–V: Fausia se masini komepiuta fou ma faʻapipiʻi le ata CHR i ai.
- Fa'atonuga Muamua:
- Avanoa CHR: Fa'afeso'ota'i ile fa'ata'ita'iga a le CHR ile fa'aogaina ole SSH po'o se feso'ota'iga fa'amafanafana.
- Fa'avae Fa'atonuga: Seti feso'ota'iga feso'ota'iga, tuatusi IP, ma fa'asologa o auala pe a mana'omia. Va'ai i fa'amaumauga MikroTik mo fa'atonuga ma fa'atonuga.
- Fa'atonuga maualuga (filifiliga):
- VPN Seti: Fa'atulaga auala VPN mo le saogalemu mamao.
- Tulafono Papuipui: Seti tulafono o le firewall e puipui ai lau feso'otaiga.
- Bandwidth Pulega: Fa'atino faiga fa'avae ma fa'atonutonu le bandwidth.
- Pulega ma le Mataituina:
Faʻaaoga le WinBox a MikroTik poʻo WebFig e pulea ma mata'ituina le fa'ata'ita'iga a le CHR. O nei meafaigaluega e tuʻuina atu ai se faʻataʻitaʻiga ata mo le faʻatulagaina ma le mataʻituina. - Tausiga masani:
Ia fa'afou lau fa'ata'ita'iga a le CHR i fa'asalalauga fou ma fa'apipi'i e fa'amautinoa ai le saogalemu ma le fa'atinoga.
Manatuga:
- Laisene: MikroTik CHR e galue i lalo o tulaga eseese laisene. Filifili se laisene e fa'atatau i au fa'atinoga ma mea e mana'omia.
- Fa'asoaina o Punaoa: Ia mautinoa o loʻo maua e lau siosiomaga faʻapitoa ni punaoa talafeagai e taulimaina ai au fesoʻotaʻiga fesoʻotaʻiga ma manaʻoga o auala.
Punaoa:
- MikroTik Documentation: MikroTik CHR Documentation
- Fono a Nuu: Auai ma le MikroTik community mo le lagolago ma fesoasoani faaopoopo.
Standard (Long) Script mo le faʻapipiʻiina otometi
- # Filifili le pule o pusa
pe afai o le poloaiga -v yum &> /dev/null; ona pkg_manager = “yum”; elif poloaiga -v apt &> /dev/null; ona pkg_manager = “apt”; isi- si'uleo “E le maua se yum po o se fetaui. E le lagolagoina lenei tusitusiga.”; ulufafo 1; fi
- # Faʻafou afifi ma faʻapipiʻi unzip, pwgen, ma coreutils pe afai ["$pkg_manager" == "yum"]; ona sudo yum -y fa'afouga && sudo yum -y fa'apipi'i unzip pwgen coreutils; elif [ “$pkg_manager” == “apt” ]; ona sudo apt-get -y fa'afouga && sudo apt-get -y fa'apipi'i unzip pwgen coreutils; fi
- echo "O loʻo faʻafouina le polokalama ma faʻapipiʻi afifi manaʻomia."
- # Filifili le aʻa file masini system root_device=$(df / | awk 'NR==2 {lomi $1}') root_device_base=$(echo $root_device | sed 's/[0-9]\+$//')
- si'uleo “Root fileo lo'o i luga o le masini: $root_device”
- echo "Ala masini: $root_device_base"
- # Fausia ma faʻapipiʻi se lisi le tumau mkdir /mt_ros_tmp && mount -t tmpfs tmpfs /mt_ros_tmp/ && cd /mt_ros_tmp
- # Maua le tuatusi IP ma le faitotoa
INTERFACE=$(ip route | grep default | awk '{print $5}')
ADDRESS=$(ip addr show “$INTERFACE” | grep global | cut -d' ' -f 6 | head -n 1)
GATEWAY=$(ip route list | grep default | cut -d' ' -f 3) echo “Fa'amolemole ulufale i le alalaupapa (fa'aletonu='stable', po'o='su'ega'): ” faitau alalaupapa - # Fa'aleaogaina i le 'stable' pe a leai se mea e tu'uina atu pe afai [ -z “$channel” ]; ona alaala = “maumau” fi
si'uleo “Fa'apipi'i le RouterOS CHR mai le ala '$channel'…” - # La'u mai URL fa'avae i luga ole auala ua filifilia
afai [ “$channel” == “su’ega” ]; ona rss_feed=”https://download.mikrotik.com/routeros/latest-testing.rss“elserss_feed="https://download.mikrotik.com/routeros/latest-stable.rss” fi - # Tikia le lomiga lata mai o MikroTik RouterOS rss_content=$(curl -s $rss_feed) latest_version=$(echo “$rss_content” | grep -oP '(?<= RouterOS )[\d\.] +rc\d+' | ulu -1) pe afai [-z “$latest_version”]; ona
- si'uleo "E le mafai ona toe maua le numera o lomiga fou." ulufafo 1 fi
- si'uleo “Vaega fou: $latest_version” download_url= ”https://download.mikrotik.com/routeros/$latest-version/chr-$latest-version.img.zip“
- si'uleo “Lauga mai le $download_url…” wget –no-check-certificate -O “chr-$latest_version.img.zip” “$download_url"pe afai [$? -eq 0]; ona toe fai lea"File manuia la'u mai: chr-$latest_version.img.zip” isi
- si'uleo"File ua le mafai ona la’uina mai.” ulufafo 1 fi
- # Tatala ma saunia le ata gunzip -c “chr-$latest_version.img.zip”> “chr-$latest_version.img”
- # Fa'amau le ata mount -o matasele “chr-$latest_version.img” /mnt
- # Fausia se fa'aupuga fa'alilolilo PASSWORD=$(pwgen 12 1)
- # Tusi le autorun script e faʻapipiʻi ai le faʻataʻitaʻiga RouterOS
- echo “Username (Kullanıcı adı): admin”
- si'uleo “Utulautusi (Şifre): $PASSWORD”
- echo “/ip address add address=$ADDRESS interface=[/interface ethernet find where name=ether1]” > /mnt/rw/autorun.scr
- echo “/ip auala faaopoopo faitotoa=$GATEWAY” >> /mnt/rw/autorun.scr
- echo “/ip service disable telnet” >> /mnt/rw/autorun.scr
- si'uleo “/fa'aoga seti 0 igoa=admin password=$PASSWORD” >> /mnt/rw/autorun.scr
- echo “/ip dns set server=8.8.8.8,1.1.1.1” >> /mnt/rw/autorun.scr
- # Toe faʻapipiʻi uma ua faʻapipiʻi filefaiga e faitau-na'o le faiga sync && fa'alogo u > /proc/sysrq-trigger
- # Emo le ata i le tisiki dd pe afai =”chr-$latest_version.img” of=$root_device_base bs=4M oflag=sync
- # Fa'amalosi faiga toe fa'afouina
- echo 1> /proc/sys/kernel/sysrq
- echo b> /proc/sysrq-trigger
TASI-LINER (Pu'upu'u) SCRiPT mo Fa'apipi'i Fa'autometi
pe afai o le poloaiga -v yum &> /dev/null; ona pkg_manager = “yum”; elif poloaiga -v apt &> /dev/null; ona pkg_manager = “apt”; isi e toe fai atu “E le o se yum po o se apt na maua. E le lagolagoina lenei tusitusiga.”; ulufafo 1; fi && \ [ “$pkg_manager” == “yum” ] && sudo yum -y fa'afouga && sudo yum -y fa'apipi'i unzip pwgen coreutils || [“$pkg_manager” == “apt” ] && sudo apt-get -y update && sudo apt-get -y fa'apipi'i unzip pwgen coreutils && \ root_device=$(df / | awk 'NR==2 {lomi $1}' ) && root_device_base=$(echo $root_device | sed 's/[0-9]\+$//') && \ echo “Root fileo lo'o i luga o le masini: $root_device" && fa'alogoina "Ala masini: $root_device_base" && \ mkdir /mt_ros_tmp && mount -t tmpfs tmpfs /mt_ros_tmp/ && cd /mt_ros_tmp && \ INTERFACE=$(ip ala | grep default | awk ' lolomi $5}') && ADDRESS=$(ip addr show “$INTERFACE” | grep global | awk '{print $2}' | ulu -n 1) && \ GATEWAY=$(ip ala lisi | grep faaletonu | awk '{ lolomi $3}') && \ faitau -p “I totonu o le alalaupapa (default='stable', or='testing'): ” alavai; [ -z “$channel” ] && channel=”stable”;rss_feed=”https://download.mikrotik.com/routeros/latest-$channel.rss” && rss_content=$(curl -s $rss_feed) && \ latest_version=$(echo “$rss_content” | grep -oP '(?<= RouterOS )[\d\.] +rc\d+' | ulu -1) && \ [ -z “$latest_version” ] && echo “Ua le mafai ona toe maua le numera fou o lomiga.” && alu ese 1 || \ echo “Vaiga fou: $latest_version” && download_url= ”https://download.mikrotik.com/routeros/$latest_version/chr-$latest-version.img.zip” && \ echo “Lauga mai le $download_url…” && wget –no-check-certificate -O “chr-$latest_version.img.zip” “$download_url” && \ [ $? -eq 0 ] && echo “File manuia la'u mai: chr-$latest_version.img.zip” || echo “File ua le mafai ona la’uina mai.” && \ gunzip -c “chr-$latest_version.img.zip” > “chr-$latest_version.img” && mount -o loop “chr-$latest_version.img” /mnt && \ PASSWORD=$(pwgen 12 1) && toe fai “Username: admin” &word& echo “Pas&ip address: admin” &word&echo “Pas&ip address fa'aopoopo le tuatusi=$ADDRESS interface=[/interface ethernet find where name=ether1]” > /mnt/rw/autorun.scr && \ echo “/ip route add gateway=$GATEWAY” >> /mnt/rw/autorun.scr && echo “/ip service disable telnet” >> /mnt/rw/&admin e. password=$PASSWORD” >> /mnt/rw/autorun.scr && echo “/ip dns set server=0″ >> /mnt/rw/autorun.scr && \ sync && echo u > /proc/sysrq-trigger && dd if=”chr-dd if=” of=$root_device_base bs=8.8.8.8,1.1.1.1M oflag=sync && \ echo 4 > /proc/sys/kernel/sysrq && echo b > /proc/sysrq-trigger
Automation Scripts' Key Updates and Explainations
- Fa'apipi'i afifi Faaopoopo:
-
Faʻaopoopo tulafono faʻapipiʻi mo pwgen ma coreutils i le yum ma le apt package managers.
-
- Tuatusi IP ma le toe maua mai o le faitotoa:
- O lo'o pu'eina e le tusitusiga le tuatusi IP ma le faitoto'a o le polokalama e fa'aaoga ai le IP addr ma le ip route.
- Tatala ma faapipiiina:
- O le ata e tatala ma faʻapipiʻi e faʻaaoga ai le gunzip ma le mount commands ma filifiliga talafeagai.
- Fa'atupu ma Fa'atu upu fa'aupuga:
- O se upu fa'aigoa e 12 fa'ailoga e fa'atupuina e fa'aaoga ai le pwgen ona tu'u lea i totonu o le autorun script mo le RouterOS.
- Autorun Script:
- O le autorun script e aofia ai faʻatonuga e faʻapipiʻi ai le RouterOS faʻataʻitaʻiga, e aofia ai le faʻaopoopoina o le tuatusi IP, faʻatulagaina o le faitotoʻa, faʻamalo le telnet, setiina o le password admin, ma le faʻatulagaina o DNS servers.
- Toe fa'aola le faiga:
- Filefa'atonu faiga fa'atino a'o le'i fa'amalosia le toe fa'afouina o le fa'aogaina o le SysRq trigger, fa'amautinoa o lo'o tusia uma fa'amaumauga i le tisiki.
- Su'esu'ega Fa'afeso'ota'i otometi:
- INTERFACE=$(ip route | grep default | awk '{print $5}'): E otometi lava ona su'esu'e le feso'ota'iga feso'ota'iga galue e ala i le su'eina o le fa'aoga o le auala e le mafai.
- O le ADDRESS fesuia'i ona seti lea e fa'aaoga ai lenei fa'aoga ua iloa.
FAQ
Q: O a mataupu fa'aoga autu ole MikroTik CHR?
A: MikroTik CHR e masani ona faʻaaogaina mo le puleaina o fefaʻatauaiga VPN, siosiomaga fesoʻotaʻiga, puipuiga o le pa puipui, ma le faʻaogaina o le bandwidth i faʻasalalauga faʻapitoa poʻo le ao.
Q: E mafai faapefea ona ou maua le lagolago mo MikroTik CHR?
A: E mafai ona e va'ai i fa'amaumauga a le MikroTik pe fa'afeso'ota'i ma fa'alapotopotoga fa'alaua'itele mo le lagolago ma fesoasoani fa'aopoopo i le fa'aogaina o le CHR.
Pepa / Punaoa
![]() |
MikroTik Cloud Hosted Router [pdf] Taiala mo Tagata Fa'aoga Ao Fa'afeiloa'i Router, Fa'afeiloa'i Router, Router |