Ceriwis  

Go Back   Ceriwis > HOBI > Komputer & Teknologi > Networking

Networking Diskusi jaringan, LAN, WAN, Router, Firewall, dll bisa kamu temukan disini.

Reply
 
Thread Tools
  #2  
Old 3rd April 2012
nindyonathan's Avatar
nindyonathan nindyonathan is offline
Newbie
 
Join Date: Jul 2010
Posts: 20
Rep Power: 0
nindyonathan mempunyai hidup yang Normal
Default

garuk-garuk-garuk
Reply With Quote
  #3  
Old 27th May 2012
hukker's Avatar
hukker hukker is offline
Newbie
 
Join Date: Apr 2012
Location: JK
Posts: 30
Rep Power: 0
hukker mempunyai hidup yang Normal
Default

yaaah ko begini trit nya
Reply With Quote
  #4  
Old 12th September 2012
Tachyon Tachyon is offline
Newbie
 
Join Date: Sep 2012
Posts: 16
Rep Power: 0
Tachyon mempunyai hidup yang Normal
Default

gini ane coba sedikit share tentang mikrotik
mikrotik berupa router yang berfungsi untuk mengatur kerja dari jaringan sebelum sampai ke PC Client.
settingan dasar untuk warnet :
butuh 2 interface ethernet :
-interface 1 untuk dari modem atau ISP (name = to_wan-eth1)
-interface 2 untuk ke switch (name = to_switch-eth2)

step ke 2 :
Berikan IP untuk kedua interface tersebut :
ip : 108.131.123.123/30 untuk eth1
ip : 192.168.0.1/24 untuk eth2
ip pc client : 192.168.0.5

kemudian buat nat dengan "ip firewall nat add chain=srcnat out-interface=to_wan-eth1 action=masquerade"

lalu untuk merouting ip lokal agar bisa di pakai ke luar kita gunakan ip route
dengan menambahkan : "dst.address=0.0.0.0/0 gateway=108.131.123.123 check-gateway=ping" kemudian apply.

untuk pembagian bandwidth kita menggunakan mangle yang terdapat pada "ip firewall" dimana settingan nya sbb :
Spoiler for Mangle:

add action=mark-connection chain=forward comment=\
"Incoming IIX -> Local" disabled=no \
dst-address-list=localnet new-connection-mark=con-iix passthrough=no \
protocol=!icmp src-address-list=nice
add action=mark-connection chain=forward comment=\
"Outgoing Local -> IIX" disabled=no \
dst-address-list=nice new-connection-mark=con-iix passthrough=no \
protocol=!icmp src-address-list=localnet
add action=mark-connection chain=forward comment=\
"INT -> Local" disabled=no dst-address-list=localnet \
new-connection-mark=con-int passthrough=no protocol=!icmp \
src-address-list=!nice
add action=mark-connection chain=forward comment=\
"Local -> INT" disabled=no dst-address-list=!nice \
new-connection-mark=con-int passthrough=no protocol=!icmp \
src-address-list=localnet
add action=mark-packet chain=prerouting comment="Mark Packet IIX" \
connection-mark=con-iix disabled=no new-packet-mark=nice passthrough=no
add action=mark-packet chain=prerouting comment="Mark Packet INT" \
connection-mark=con-int disabled=no new-packet-mark=intl passthrough=no


kemudian kita masukkan ip localnet di "ip firewall address-list"
localnet = 192.168.0.0/24
nice = bisa di ambil dari http://ixp.mikrotik.co.id/download/nice.rsc

tahap terakhir untuk pembagian bandwidth /pc atau /ip
untuk settingan mangle di atas untuk penggunakan simple queue
maka itu yang kita gunakan saat ini adalah simple queue
pertama kita buat parent untuk "nice" dan "intl"
Spoiler for Pembuatan queue:

/queue simple
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s direction=both \
disabled=no interface=all limit-at=0/0 max-limit=0/0 name=INT packet- marks=INTL parent=none priority=8 queue=default/default target-addresses=\
192.168.0.0/24 total-queue=default
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s direction=both \
disabled=no interface=all limit-at=0/0 max-limit=0/0 name=IIX packet-marks=\
IIX parent=none priority=8 queue=default-small/default-small \
target-addresses=192.168.0.0/24 total-queue=default


untuk pembagian bandwidth per IP atau per PC
Spoiler for Disini gan:


add burst-limit=0/0 burst-threshold=0/0 burst-time=0/0 \
direction=both disabled=no interface=all limit-at=256k/256kmax-limit=\
256k/256k name="1. INT-Client PC" packet-marks=INTL parent=intl \
priority=8 queue=default/default target-addresses=192.168.0.5/32 \
total-queue=default
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s direction=both \
disabled=no interface=all limit-at=2M /2M max-limit=2M/2M name="N ICE-Client PC packet-marks=IIX parent=IIX priority=8 queue=default/default \
target-addresses=192.168.0.5/32 total-queue=default


indahnya dapat berbagi....

Last edited by Tachyon; 12th September 2012 at 10:11 AM.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


 


All times are GMT +7. The time now is 05:57 AM.


no new posts