Pour en avoir le coeur net je suis repasssé en 7.1.3 mais toujours pas de COS6. Donc c'est ma config mais je pige pas d'où vient le problème qui doit etre bien visible mais j'ai trop le nez dedans je pense...
Je test sur l'eth1 pour sniffer la trame facillement. Une fois validé je balancerai ça sur le SFP, mais bon tant que ça marche pas sur l'eth1 inutile de m'acharner sur l'ONT...
/interface bridge
add admin-mac=DC:2C:6E:DD:7F:D8 auto-mac=no comment=defconf name=br-lan
add admin-mac=XX:XX:XX:XX:XX:XX auto-mac=no name=br-wan
/interface ethernet
set [ find default-name=ether1 ] name=lan1
set [ find default-name=ether2 ] name=lan2
set [ find default-name=sfp-sfpplus1 ] name=sfp-ont
/interface vlan
add interface=lan1 loop-protect-disable-time=0s loop-protect-send-interval=1s name=vlan832-internet vlan-id=832
/ip dhcp-client option
add code=77 name=userclasstaf value="'+FSVDSL_livebox.Internet.sagem.LiveboxPro3'"
add code=60 name=class-identifier value="'sagem'"
add code=90 name=authsend value=0x00000000000000000000001xxxxxxxxx
add code=77 name=userclass value=0x2b46535644534c5f6c697665626f782e496e7465726e65742e736f66746174686f6d652e4c697665626f7834
/ip pool
add name=pool-lan ranges=192.168.13.10-192.168.13.254
/ip dhcp-server
add address-pool=pool-lan interface=br-lan name=defconf
/interface bridge filter
add action=set-priority chain=output dst-port=67 ip-protocol=udp log=yes log-prefix="Set CoS6 on DHCP request" mac-protocol=ip new-priority=6 out-interface=vlan832-internet passthrough=yes
/interface bridge port
add bridge=br-lan interface=lan2
add bridge=br-wan interface=vlan832-internet
/interface list member
add comment=defconf interface=br-lan list=LAN
add comment=defconf interface=br-wan list=WAN
/ip address
add address=192.168.13.1/24 comment=defconf interface=br-lan network=192.168.13.0
/ip dhcp-client
add comment=defconf dhcp-options=authsend-home,clientid,hostname,authsend-home,class-identifier interface=br-wan
/ip firewall filter
add action=accept chain=input comment="defconf: accept established,related,untracked" connection-state=established,related,untracked
add action=drop chain=input comment="defconf: drop invalid" connection-state=invalid
add action=accept chain=input comment="defconf: accept ICMP" protocol=icmp
add action=accept chain=input comment="defconf: accept to local loopback (for CAPsMAN)" dst-address=127.0.0.1
add action=drop chain=input comment="defconf: drop all not coming from LAN" in-interface-list=!LAN
add action=accept chain=forward comment="defconf: accept in ipsec policy" ipsec-policy=in,ipsec
add action=accept chain=forward comment="defconf: accept out ipsec policy" ipsec-policy=out,ipsec
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" connection-state=established,related hw-offload=yes
add action=accept chain=forward comment="defconf: accept established,related, untracked" connection-state=established,related,untracked
add action=drop chain=forward comment="defconf: drop invalid" connection-state=invalid
add action=drop chain=forward comment="defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat connection-state=new in-interface-list=WAN
/ip firewall nat
add action=masquerade chain=srcnat comment="defconf: masquerade" ipsec-policy=out,none out-interface=br-wan
Je me demande s'il n'y a pas qq chose dans les autres filtres ( ce sont les filtres par défaut) qui pourrait flinguer ça mais je vois pas trop