Nama : Diana
Wahyuni
|
Konfigurasi Queue Tree pada
Mikrotik
|
Tanggal : 2 Desember
2014
|
Kelas : XII TKJ 2
|
SK/KD :
|
|
No. JobSheet : 8
|
Guru Produktif : Bang maman
|
I. TUJUAN
Konfigurasi Queue Tree pada Mikrotik.
II. PENDAHULUAN
Queue Tree :
Berfungsi untuk mengimplementasikan fungsi yang lebih komplex dalam limit
bandwidth pada mikrotik dimana penggunaan packet mark nya memiliki fungsi yang
lebih baik.Digunakan untuk membatasi satu arah koneksi saja baik itu download
maupun upload. Secara umum Queue Tree ini tidak terlihat berbeda dari Simple
Queue.
III. ALAT DAN BAHAN
1. LAPTOP
2. VIRTUAL BOX
3. ISO MIKROTIK
4. ISO WINDOWS XP
5. KONEKSI INTERNET (Modem/Wify)
IV. LANGKAH KERJA
1. Memberi nama interface.
1. Memberi nama interface.
-interface set ether1 name=WAN
-interface set ether2 name=LAN
-interface pr
-interface set ether2 name=LAN
-interface pr
2. Memberi IP Address.
-ip address add address=192.168.2.112/24 interface=WAN
-ip address add address=172.30.1.1/25 interface=LAN
-ip address pr
-ip address add address=172.30.1.1/25 interface=LAN
-ip address pr
3. Memberikan Route.
-ip route add gateway=192.168.2.1
-ip route pr
-ip route pr
4. ip dns pr.
-ip dns set primary-dns=8.8.8.8
-ip dns set secondary-dns=8.8.4.4
-ip dns set allow-remote-requests=yes
-ip dns pr
-ip dns set secondary-dns=8.8.4.4
-ip dns set allow-remote-requests=yes
-ip dns pr
5. Memberikan IP Firewall nat
-ip firewall nat add chain=srcnat out-interface=WAN
src-address=172.30.1.1/25 action=masquerade
KONFIGURASI DHCP :
1. IP Pool
-ip pool add name=dhcp_pool1 ranges=172.30.1.100-172.30.1.150
2. IP dhcp-server network
-ip dhcp-server network add address=172.30.1.0/25 gateway=172.30.1.1
dns-server=8.8.8.8,8.8.4.4
3. IP dhcp-server
-ip dhcp-server add name=dhcp_lan disabled=no interface=LAN
address-pool=dhcp_pool
4. Lalu masuk ke Windows XP (Client) dan OBTAIN IP Addressnya.
KONFIGURASI PROXY :
1. Ketik untuk mengaktifkan Proxy.
-ip proxy set enabled=yes
-ip proxy set port=3128
-ip proxy set cache-administrator=diana@albahri.sch.id
-ip proxy set cache-on-disk=yes
-ip proxy set always-from-cache=yes
-ip proxy set port=3128
-ip proxy set cache-administrator=diana@albahri.sch.id
-ip proxy set cache-on-disk=yes
-ip proxy set always-from-cache=yes
2. IP Firewallnya.
-ip firewall nat add chain=dstnat protocol=tcp src-address=172.30.1.1/25
dst-port=80 action=reidirect to-ports=3128
-ip firewall nat add chain=dstnat protocol=tcp src-address=172.30.1.1/25 dst-port=8080 action=reidirect to-ports=3128
-ip firewall nat add chain=dstnat protocol=tcp src-address=172.30.1.1/25 dst-port=3128 action=reidirect to-ports=3128
-ip firewall nat add chain=dstnat protocol=tcp src-address=172.30.1.1/25 dst-port=8080 action=reidirect to-ports=3128
-ip firewall nat add chain=dstnat protocol=tcp src-address=172.30.1.1/25 dst-port=3128 action=reidirect to-ports=3128
Konfigurasi untuk Blocking Situsnya
-ip proxy access add src-address=172.30.1.1/25 dst-host=www.detik.com
action=deny
Konfigurasi Queue Tree
Konfigurasi Queue type
/queue type add name=PCQ-UPLOAD kind=pcq pcq-classifier=src-address
pcq-rate=0
queue type add name=PCQ-DOWNLOAD kind=pcq pcq-classifier=dst-address
pcq-rate=0
Untuk Marking Packet Terlimit
ip firewall mangle add chain=prerouting src-address=172.30.1.0/25
in-interface=LAN content=.zip \ action=mark-connection
new-connection-mark=limited-siswa_CONN passthrough=yes
ip firewall mangle add chain=prerouting src-address=172.30.1.0/25 in-interface=LAN content=.flv \ action=mark-connection new-connection-mark=limited-siswa_CONN passthrough=yes
ip firewall mangle add chain=prerouting in-interface=LAN connection-mark=limited-siswa_CONN \ action=mark-packet new-packet-mark=limited-siswa_UPLOAD passthrough=no
ip firewall mangle add chain=prerouting in-interface=LAN connection-mark=limited-siswa_CONN \ action=mark-packet new-packet-mark=limited-siswa_DOWNLOAD passthrough=no
ip firewall mangle add chain=prerouting src-address=172.30.1.0/25 in-interface=LAN content=.flv \ action=mark-connection new-connection-mark=limited-siswa_CONN passthrough=yes
ip firewall mangle add chain=prerouting in-interface=LAN connection-mark=limited-siswa_CONN \ action=mark-packet new-packet-mark=limited-siswa_UPLOAD passthrough=no
ip firewall mangle add chain=prerouting in-interface=LAN connection-mark=limited-siswa_CONN \ action=mark-packet new-packet-mark=limited-siswa_DOWNLOAD passthrough=no
Untuk Marking packet browsing dan upload biasa
ip firewall mangle add chain=prerouting src-address=172.30.1.0/25
in-interface=LAN \ action=mark-connection new-connection-mark=all-siswa_CONN
passthrough=yes
ip firewall mangle add chain=prerouting in-interface=LAN
connection-mark=all-siswa_CONN \ action=mark-packet
new-packet-mark=all-siswa_UPLOAD passthrough=no
ip firewall mangle add chain=prerouting in-interface=LAN
connection-mark=all-siswa_CONN \ action=mark-packet new-packet-mark=all-siswa_DOWNLOAD
passthrough=no
Untuk Queue Tree Parent
/queue tree add name=all-siswa-DOWNLOAD parent=LAN max-limit=512k
/queue tree add name=all-siswa-UPLOAD parent=WAN max-limit=512k
Untuk Queue Treenya
queue tree add name=limited-siswa_DOWNLOAD packet-mark=limited-siswa_DOWNLOAD
parent=all-siswa-DOWNLOAD \ queue=PCQ-DOWNLOAD max-limit=32k limit-at=16k
queue tree add name=normal-siswa_DOWNLOAD packet-mark=all-siswa_DOWNLOAD
parent=all-siswa-DOWNLOAD \ queue=PCQ-DOWNLOAD max-limit=384k
limit-at=64k
queue tree add name=limited-siswa_UPLOAD packet-mark=limited-siswa_UPLOAD
parent=all-siswa-UPLOAD \ queue=PCQ-UPLOAD max-limit=32k limit-at=16k
queue tree add name=normal-siswa_UPLOAD packet-mark=all-siswa_UPLOAD
parent=all-siswa-UPLOAD \ queue=PCQ-UPLOAD max-limit=384k limit-at=64k
V. HASIL KERJA
Konfigurasi Queue Tree pada Mikrotik telah berhasil dilakukan dan siap
untuk digunakan
VI. KESIMPULAN
Sekian konfigurasi Queue Tree pada Mikrotik semoga bermanfaat untuk yang
membutuhkan.
Wassalamualaikum wr.wb






0 komentar:
Posting Komentar