Subscribe to our RSS Feeds
Hello, this is a sample text to show how you can display a short information about you and or your blog. You can use this space to display text or image introduction or to display 468 x 60 ads and to maximize your earnings.

Limit beban ping time " mikrotik "

2 Comments »
# Mengurangi beban ping time #
Tambahkan scrip di bawah ini ke new terminal lalu enter

/ip firewall mangle add chain=prerouting \
protocol=icmp action=mark-connection \
new-connection-mark=ICMP_KONEKSI \
passthrough=yes comment="ICMP_KONEKSI" \
disabled=no

/ip firewall mangle add chain=prerouting \
protocol=icmp connection-mark=ICMP_KONEKSI \
action=mark-packet new-packet-mark=ICMP_PAKET \
passthrough=no comment="ICMP_PAKET" \
disabled=no

/queue tree add name="==KONDISI_PING==" \
parent=global-total packet-mark=ICMP_PAKET \
limit-at=0 queue=default priority=1 max-limit=0 \
burst-limit=0    burst-threshold=0 burst-time=0s
14.55

Bloking ICMP " Mikrotik "

0 Comments »

# Cara blok ICMP pada Mikrotik #
tambahkan scrip dibwah ini ke new terminal lalu enter 
/ip firewall filter add chain=forward protocol=icmp icmp-options=11:0 action=drop comment="ngeDrop Traceroute dari client"
/ip firewall filter add chain=forward protocol=icmp icmp-options=3:3 action=drop comment="ngeDrop Traceroute dari client"

#Blok Ip Spam
add chain=forward src-address=0.0.0.0/8 action=drop 
add chain=forward dst-address=0.0.0.0/8 action=drop 
add chain=forward src-address=127.0.0.0/8 action=drop
add chain=forward dst-address=127.0.0.0/8 action=drop
add chain=forward src-address=224.0.0.0/3 action=drop
add chain=forward dst-address=224.0.0.0/3 action=drop

# Bloking TCP
add chain=tcp protocol=tcp dst-port=69 action=drop \
       comment="deny TFTP" 
add chain=tcp protocol=tcp dst-port=111 action=drop \
       comment="deny RPC portmapper"  
add chain=tcp protocol=tcp dst-port=135 action=drop \
       comment="deny RPC portmapper"  
add chain=tcp protocol=tcp dst-port=137-139 action=drop \
       comment="deny NBT"  
add chain=tcp protocol=tcp dst-port=445 action=drop \
       comment="deny cifs"  
add chain=tcp protocol=tcp dst-port=2049 action=drop comment="deny NFS"  
add chain=tcp protocol=tcp dst-port=12345-12346 action=drop comment="deny NetBus"  
add chain=tcp protocol=tcp dst-port=20034 action=drop comment="deny NetBus"  
add chain=tcp protocol=tcp dst-port=3133 action=drop comment="deny BackOriffice"  
add chain=tcp protocol=tcp dst-port=67-68 action=drop comment="deny DHCP" 

# Bloking UDP
add chain=udp protocol=udp dst-port=69 action=drop comment="deny TFTP"  
add chain=udp protocol=udp dst-port=111 action=drop comment="deny PRC portmapper"  
add chain=udp protocol=udp dst-port=135 action=drop comment="deny PRC portmapper"  
add chain=udp protocol=udp dst-port=137-139 action=drop comment="deny NBT"  
add chain=udp protocol=udp dst-port=2049 action=drop comment="deny NFS"  
add chain=udp protocol=udp dst-port=3133 action=drop comment="deny BackOriffice"  

#allow ICMP
add chain=icmp protocol=icmp icmp-options=0:0 action=accept \
       comment="drop invalid connections"  
add chain=icmp protocol=icmp icmp-options=3:0 action=accept \
       comment="allow established connections"  
add chain=icmp protocol=icmp icmp-options=3:1 action=accept \
       comment="allow already established connections"  
add chain=icmp protocol=icmp icmp-options=4:0 action=accept \
       comment="allow source quench"  
add chain=icmp protocol=icmp icmp-options=8:0 action=accept \
       comment="allow echo request"  
add chain=icmp protocol=icmp icmp-options=11:0 action=accept \
       comment="allow time exceed"  
add chain=icmp protocol=icmp icmp-options=12:0 action=accept \ 
        comment="allow parameter bad"  
add chain=icmp action=drop comment="deny all other types"  
14.52

Install Squid di linux " Debian "

3 Comments »
Ringkasan ini tidak tersedia. Harap klik di sini untuk melihat postingan.
14.47

Setting Mikrotik " standart "

1 Comments »
 
# Cara Ganti Nama Interface
Interface set ethet1 name=local
Interface set ethet2 name=Internet

#Cara Setting IP
ip address >add address=10.172.168.1/255.255.255.0 interface=local
ip address >add address=192.168.1.100/255.255.255.0 interface=telkom1
ip address >add address=192.168.0.100/255.255.255.0 interface=telkom2
atau dengan cara manual IP-> Address-> piilih tanda + dan isikan manual

#Cara Setting Gateway
ip route >add gateway=192.168.1.1
atau dengan cara manual IP-> Routes-> piilih tanda + dan isikan manual

#Cara setting DNS
ip dns >set primary-dns=125.160.2.34
ip dns >set secondary-dns=202.134.1.10
atau dengan cara manual IP-> DNS -> Setting-> piilih tanda + dan isikan manual

#Cara setting NAT
ip firewall nat>add chain=srcnat out-interface=telkom1 action=masquerade
atau dengan cara manual IP-> Firewall-> NAT->Pilih tanda + ->rubahlah pada tabulasi action menjadi masquerade

14.42