Welcome To My Blog

SELAMAT DATANG

Jumat, 27 November 2009

Mikrotik RB 750 plus proxy external

[admin@MikroTik] > interf pr
Flags: D - dynamic, X - disabled, R - running, S - slave
# NAME TYPE MTU L2MTU
0 R public ether 1500 1526
1 R local ether 1500 1524
2 R hotspot ether 1500 1524
3 R poxy ether 1500 1524
4 X ether5 ether 1500
[admin@MikroTik] > ip addres pr
Flags: X - disabled, I - invalid, D - dynamic
# ADDRESS NETWORK BROADCAST INTERFACE
0 192.168.2.2/24 192.168.2.0 192.168.2.255 public
1 192.168.0.1/24 192.168.0.0 192.168.0.255 local
2 192.168.10.1/24 192.168.10.0 192.168.10.255 hotspot
3 192.168.1.2/24 192.168.1.0 192.168.1.255 poxy
[admin@MikroTik] > ip route pr
Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme,
B - blackhole, U - unreachable, P - prohibit
# DST-ADDRESS PREF-SRC GATEWAY-STATE GATEWAY DISTANCE INTERFACE
0 A S 0.0.0.0/0 reachable 192.168.2.1 1 public
1 ADC 192.168.0.0/24 192.168.0.1 0 local
2 ADC 192.168.1.0/24 192.168.1.2 0 poxy
3 ADC 192.168.2.0/24 192.168.2.2 0 public
4 ADC 192.168.10.0/24 192.168.10.1 0 hotspot
[admin@MikroTik] > ip fire nat pr
Flags: X - disabled, I - invalid, D - dynamic

1 ;;; Berbagi internet ...^ ^
chain=srcnat action=masquerade out-interface=public

2 X ;;; masquerade hotspot network
chain=srcnat action=masquerade src-address=192.168.10.0/24
3 ;;; redirect proxy external local
chain=dstnat action=dst-nat to-addresses=192.168.1.1 to-ports=3128 protocol=tcp in-interface=local dst-port=80

4 chain=dstnat action=dst-nat to-addresses=192.168.1.1 to-ports=3128 protocol=tcp in-interface=local dst-port=8080

5 ;;; redirect proxy external hotspot
chain=dstnat action=dst-nat to-addresses=192.168.1.1 to-ports=3128 protocol=tcp in-interface=hotspot dst-port=80

6 chain=dstnat action=dst-nat to-addresses=192.168.1.1 to-ports=3128 protocol=tcp in-interface=hotspot dst-port=8080
[admin@MikroTik] > ip fire mang pr
Flags: X - disabled, I - invalid, D - dynamic

chain=forward action=mark-connection new-connection-mark=download passthrough=yes protocol=tcp in-interface=public
out-interface=local connection-bytes=262146-4294967295 per-connection-classifier=src-address:1/0

1 X ;;; PACKET MARK
chain=forward action=mark-packet new-packet-mark=download passthrough=no protocol=tcp in-interface=public
out-interface=local connection-mark=download


chain=forward action=mark-connection new-connection-mark=download passthrough=yes protocol=tcp in-interface=public
out-interface=hotspot connection-bytes=225000-4294967295


chain=forward action=mark-packet new-packet-mark=download passthrough=no protocol=tcp in-interface=public
out-interface=hotspot connection-mark=download

4 ;;; PROXY EXT LOC
chain=postrouting action=mark-connection new-connection-mark=proxy-Hit passthrough=yes src-address=0.0.0.0/0 dscp=12

5 chain=postrouting action=mark-packet new-packet-mark=Proxy_Hit passthrough=no src-address=0.0.0.0/0
connection-mark=proxy-Hit dscp=12

6 chain=postrouting action=mark-connection new-connection-mark=download passthrough=yes protocol=tcp
out-interface=local connection-bytes=393219-4294967295

7 chain=postrouting action=mark-packet new-packet-mark=download passthrough=no protocol=tcp out-interface=local
connection-mark=download dscp=!12

8 ;;; LOC-UP
chain=prerouting action=mark-connection new-connection-mark=Up-load passthrough=yes protocol=tcp in-interface=local

9 chain=prerouting action=mark-packet new-packet-mark=Up-load passthrough=no protocol=tcp in-interface=local
connection-mark=Up-load dscp=!12


10 chain=postrouting action=mark-connection new-connection-mark=down-load passthrough=yes protocol=tcp
out-interface=hotspot connection-bytes=262146-4294967295

11 chain=postrouting action=mark-packet new-packet-mark=down-load passthrough=no protocol=tcp out-interface=hotspot
connection-mark=down-load dscp=!12

12 ;;; LOC-UP
chain=prerouting action=mark-connection new-connection-mark=Up-load passthrough=yes protocol=tcp
in-interface=hotspot

13 chain=prerouting action=mark-packet new-packet-mark=Up-load passthrough=no protocol=tcp in-interface=hotspot
connection-mark=Up-load dscp=!12

[admin@MikroTik] > ip rou pr
Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme,
B - blackhole, U - unreachable, P - prohibit
# DST-ADDRESS PREF-SRC GATEWAY-STATE GATEWAY DISTANCE INTERFACE
0 A S 0.0.0.0/0 reachable 192.168.2.1 1 public
1 ADC 192.168.0.0/24 192.168.0.1 0 local
2 ADC 192.168.1.0/24 192.168.1.2 0 poxy
3 ADC 192.168.2.0/24 192.168.2.2 0 public
4 ADC 192.168.10.0/24 192.168.10.1 0 hotspot
[admin@MikroTik] > ip dn pr
primary-dns: 202.134.1.10
secondary-dns: 203.130.208.18
allow-remote-requests: yes
max-udp-packet-size: 512
cache-size: 2048KiB
cache-max-ttl: 1w
cache-used: 756KiB


[admin@MikroTik] > sys ntp clien pr
enabled: yes
mode: unicast
primary-ntp: 203.160.128.3
secondary-ntp: 222.73.214.125
status: synchronized


[admin@MikroTik] > sys clock pr
time: 22:05:56
date: nov/17/2009
time-zone-name: Asia/Jakarta
gmt-offset: +07:00

Tidak ada komentar: