Upload
icha-damayanti
View
222
Download
0
Embed Size (px)
DESCRIPTION
Bandwidth
Citation preview
Quote:
Original Posted By crisis_core cara buat queue utk buat prioritas begitu gimn caranya ya gan? ada tutorialnya?
thanks...
Buat packet mark
[CODE]/ip firewall mangleadd action=mark-connection chain=forward comment="Trafik Mark" disabled=no new-connection-mark=all_con passthrough=yes src-address=192.168.1.0/24
add action=mark-connection chain=forward comment="" connection-mark=all_con disabled=no dst-port=39190-49100 new-connection-mark=pb-con passthrough=yes protocol=tcp src-address=192.168.1.0/24
add action=mark-connection chain=forward comment="" connection-mark=all_con disabled=no dst-port=39190-49100 new-connection-mark=pb-con passthrough=yes protocol=udp src-address=192.168.1.0/24
add action=mark-packet chain=forward comment="" connection-mark=pb-con disabled=no new-packet-mark=point-blank passthrough=no
add action=mark-packet chain=forward comment="" disabled=no new-packet-mark=all_packet passthrough=no[/CODE]
Trus bikin Queue Tree nya
[CODE]/queue treeadd burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=1600k name="Download" parent=ether2-lan priority=8
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 name=HTTP packet-mark=all_packet parent="Download" priority=8 queue=default
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 name="Point Blank" packet-mark=point-blank parent="Download" priority=7 queue=default[/CODE]
Ini cuma contoh untuk PB,kalau untuk game lain tinggal ganti aja Dst.Port nya
ane jabarin teorinya aja yaks.
1. agan bikin 2 group d sini, group yg full akses, n group yg akses terbatas
2. group a (bos) : ful aksesgroup c (Staff) :drop all (facebook)
3. bikin rules Jump dari salah satu Chain dari Chain forward.
rulesnya kl ane begini :
/ip fi fi add chain=forward src-ip=x.x.x.x action=jump chain=staff/ip fi fi add chain=forward src-ip=x.x.x.x action=jump chain=bos/ip fi fi add chain=forward action=drop
trus ente bikin rulus chain dr bos/ip fi fi add chain=bos action=accept protocol=tcp/ip fi fi add chain=bos action=accept protocol=udp
bikin lagi chain dr staff(ini agan sesuaikan ama kondisi d sana, sesuain dengan rules block facebook ente. staff bisa net tp g bisa facebook, etc)/ip fi fi add chain=staff action=accept protocol=tcp dst-port=80
note : untuk src-ip d atas, kl agan g mau repot, bikin address-list di firewall, masukin alamat ip2 yg mau di blok, nanti kl udah tinggal agan masukinnya di firewall-filter rules-advance-srcaddresslist.begitu juga dengan bos, mana tau bos2 d sana lebih dari 1 kan.
kl ada tambahan dari yg laen silaken, sorry belibet nulisnya hehehe...