Motode Kelompok
Ø
CARA
MENGUBAH NAMA INTERFACES
Perintah nya:
]>ip interfaces set 0 name=1modem
Perintah nya:
]>ip interfaces set 0 name=1modem
Ø
CARA
MEMBUAT IP ADDRESS
perintah nya :
]>ip address add address=192.168.200.26/24 interfaces=3wlan
perintah nya :
]>ip address add address=192.168.200.26/24 interfaces=3wlan
Ø
CARA
MEMBUAT IP DHCP-SERVER SETUP
Perintah nya :
]>ip dhcp-server setup
Perintah nya :
]>ip dhcp-server setup
Ø
CARA
MEMBUAT IP DHCP-SERVER MANUAL
~Pertama Kita Buat dulu range nya
Perintah nya:
]>ip pool add name=dhcp-pool ranges=192.168.200.27-192.168.200.100/24
~kedua kita buat dhcp-server dan gateway nya.
Perintah nya:
]>ip dhcp-server network add address=192.168.200.0/24 gateway=192.168.200.1
~ketiga kita aktifkan dhcp-server nya
Perintah nya:
]>ip dhcp-server add interfaces=3wlan address-pool=dhcp-pool enable=0
~Pertama Kita Buat dulu range nya
Perintah nya:
]>ip pool add name=dhcp-pool ranges=192.168.200.27-192.168.200.100/24
~kedua kita buat dhcp-server dan gateway nya.
Perintah nya:
]>ip dhcp-server network add address=192.168.200.0/24 gateway=192.168.200.1
~ketiga kita aktifkan dhcp-server nya
Perintah nya:
]>ip dhcp-server add interfaces=3wlan address-pool=dhcp-pool enable=0
Ø
CARA
SET IP DNS SERVER
Perintah nya:
]>ip dns set servers=192.168.43.1 allow-remote-request=yes
Perintah nya:
]>ip dns set servers=192.168.43.1 allow-remote-request=yes
Ø
CARA
MENAMBAHKAN IP ROUTE
Perintah nya:
]>ip route add gateway=192.168.43.1
Perintah nya:
]>ip route add gateway=192.168.43.1
Ø
CARA
MEMBUAT IP FIREWALL NAT
Perintah nya:
]>ip firewall nat add chain=srcnat out-interfaces=1modem action=masquerade
Perintah nya:
]>ip firewall nat add chain=srcnat out-interfaces=1modem action=masquerade
Ø
CARA BLOK
SITUS DAN FILE
Perintah nya:
]>ip proxy set enable=yes port=8080 parent-proxy=0.0.0.0 cache-administrator=nopryadi@gmail.com cache-on-disk=yes
Perintah nya:
]>ip proxy set enable=yes port=8080 parent-proxy=0.0.0.0 cache-administrator=nopryadi@gmail.com cache-on-disk=yes
Ø
]>ip
proxy accsess add src-address=192.168.200.0/24 dst-host=*linux* action=deny
Ø
~setelah itu kita
buat firewall untuk blok situs nya:
Ø
]>ip
firewall add chain=dstnat protokol=tcp port=80,3128,8000 action=redirect to-ports=8080
Ø
CARA BLOK
FILE
]>ip proxy accsess add path=*mp3* src-address=192.168.200.0/24 action=deny
]>ip proxy accsess add path=*mp3* src-address=192.168.200.0/24 action=deny
Ø
CARA
MEMBUAT FIREWALL YANG MEMBLOKIR AKSES INTERNET MENGGUNAKAN WAKTU
~Pertama kita set dulu ntp client nya
]>system ntp client set enable=yes primary-ntp=203.34.118.4 secondary-ntp=203.114.224.252
~Pertama kita set dulu ntp client nya
]>system ntp client set enable=yes primary-ntp=203.34.118.4 secondary-ntp=203.114.224.252
Ø
~Kedua kita set ntp server nya
]>system ntp server set enable=yes broadcast=yes
]>system ntp server set enable=yes broadcast=yes
Ø
~ketiga kita set time-zone-name
]>system clock set time-zone-name=Asia/Jakarta
]>system clock set time-zone-name=Asia/Jakarta
Ø
~Keempat kita buat scheduler
]>system scheduler add name=enable start-date=feb/10/2016(sesuaikan dengan tanggal sekarang) start-time=19:00:00
]>system scheduler add name=enable start-date=feb/10/2016(sesuaikan dengan tanggal sekarang) start-time=19:00:00
Ø
]>
system scheduler add name=disable start-date=feb/10/2016(sesuaikan dengan
tanggal sekarang) start-time=07:00:00
Ø
~Kelima kita buat firewall filter nya
]>ip firewall filter add chain=forward src-address=192.168.200.0/24 out-interfaces=1modem actoin=drop
]>ip firewall filter add chain=forward src-address=192.168.200.0/24 out-interfaces=1modem actoin=drop
Ø
SELAMAT MENCOBA !!!!!
Metode Jaka Private
1.interfaces
Interfaces set 0 name=1modem
Interfaces set 1 name=2Lan
Interfaces set 2 name=3Wifi
interfaces print
Interfaces set 1 name=2Lan
Interfaces set 2 name=3Wifi
interfaces print
Lihat hasilnya
2.ip address
Ip address add address=192.168.1.25/24
interfaces=1modem
ip address add address=192.168.100.1/24 interfaces=2Lan
ip address add address=192.168.200.1/24 interfaces=3Wifi
Ip address print
ip address add address=192.168.100.1/24 interfaces=2Lan
ip address add address=192.168.200.1/24 interfaces=3Wifi
Ip address print
Lihat hasilnya
3.ip dns
Ip dns>print
ip dns>set server=192.168.1.1 allow-remote-requenst=yes
ip dns>print
ip dns>set server=192.168.1.1 allow-remote-requenst=yes
ip dns>print
Lihat hasilnya
4.ip route
Ip route print
ip route add gateway=192.168.1.1
ip route print
ip route add gateway=192.168.1.1
ip route print
5.ip firewall nat
Ip firewall nat add chain=srcnat
out-interfaces=1modem action=masquerade
6.ip dhcp-server
Ip dhcp-server setup (2Lan “rangenya ubah ip
paling belakang menjadi 100”)
ip dhcp-server setup(3Wifi “rangenya ubah ip paling belakang menjadi 100”)
ip dhcp-server setup(3Wifi “rangenya ubah ip paling belakang menjadi 100”)
7.ip pool print
Cth: Ip pool set 0 ranges= 192.168.100.26-192.168.100.100
8.ping google.com
Kalau perlu Mikrotik di reboot!!
9.ip proxy
1.Ip proxy>print
ip proxy> set enable=yes src-address=0.0.0.0 port=8080 parent-proxy=0.0.0.0
cache-administrator=mustintkjzakaria@gmail.com cache-on-disk=yes
ip proxy>print
ip proxy> set enable=yes src-address=0.0.0.0 port=8080 parent-proxy=0.0.0.0
cache-administrator=mustintkjzakaria@gmail.com cache-on-disk=yes
ip proxy>print
Lihat hasilnya
2. + ip proxy access add src-address=192.168.200.0/24 dst-host=*linux* action=deny redirect-to=debianzakariamustin.blogspot.co.id
+ip proxy access add src-address=192.168.200.0/24 path=*mp3* action=deny
2. + ip proxy access add src-address=192.168.200.0/24 dst-host=*linux* action=deny redirect-to=debianzakariamustin.blogspot.co.id
+ip proxy access add src-address=192.168.200.0/24 path=*mp3* action=deny
10.ip firewall nat add chain=dstnat
+ Ip firewall nat add chain=dstnat protocol=tcp
port=8080 action=redirect to-port=8080
+ ip firewall filter add chain=forward
src-address=192.168.200.0/24 out-interfaces=1modem
11.ping google.com
Kalau Perlu Reboot
Kalau Perlu Reboot
12.
Ø
CARA
MEMBUAT FIREWALL YANG MEMBLOKIR AKSES INTERNET MENGGUNAKAN WAKTU
~Pertama kita set dulu ntp client nya
]>system ntp client set enable=yes primary-ntp=203.34.118.4 secondary-ntp=203.114.224.252
~Pertama kita set dulu ntp client nya
]>system ntp client set enable=yes primary-ntp=203.34.118.4 secondary-ntp=203.114.224.252
Ø
~Kedua kita set ntp server nya
]>system ntp server set enable=yes broadcast=yes
]>system ntp server set enable=yes broadcast=yes
Ø
~ketiga kita set time-zone-name
]>system clock set time-zone-name=Asia/Jakarta
]>system clock set time-zone-name=Asia/Jakarta
Ø
~Keempat kita buat scheduler
]>system scheduler add name=enable start-date=feb/10/2016(sesuaikan dengan tanggal sekarang) start-time=06:00:00 "Waktu Hidup Connecting Internet"
]>system scheduler add name=enable start-date=feb/10/2016(sesuaikan dengan tanggal sekarang) start-time=06:00:00 "Waktu Hidup Connecting Internet"
Ø
System scheduler edit
numbers=0 on-event enter
s (/ip firewall filter enable numbers=0)
s (/ip firewall filter enable numbers=0)
Ø
Ctrl + O
system scheduler print
system scheduler print
]> system scheduler add name=disable start-date=feb/10/2016(sesuaikan dengan
tanggal sekarang) start-time=07:00:00 "Waktu Mati Connecting Internet"
Ø
System scheduler edit
numbers=1 on-event enter
(/ip firewall filter enable numbers=1)
(/ip firewall filter enable numbers=1)
Ø
Ctrl + O
System scheduler print
Coba test di client hostspot android dan client
pc ip automatic dynamic
Jangan terlalu fokus pada gambar fokuslah pada tulisan perintah
Create :
1.Muhammad Zakaria Mustin
2.Nopriadi
3.Eri Marzoni
4.Dodi Yusuf Libis
5.Rama Taruna
Post a Comment