Setting Memisahkan Gateway Local dan international

[admin@MikroTik] > ip address print
Flags: X – disabled, I – invalid, D – dynamic
# ADDRESS NETWORK BROADCAST INTERFACE
0 192.168.10.1/24 192.168.10.0 192.168.10.255 LAN
1 10.8.8.45/24 10.8.8.0 10.8.8.255 LOCAL
[admin@MikroTik] > system identity set name=”FeryJunaedi-Router”
[admin@FeryJunaedi-Router] > ip address add address=202.47.77.xx/28 interface=INT disabled=no
[admin@FeryJunaedi-Router] > ip address print
Flags: X – disabled, I – invalid, D – dynamic
# ADDRESS NETWORK BROADCAST INTERFACE
0 192.168.10.1/24 192.168.10.0 192.168.10.255 LAN
1 10.8.8.45/24 10.8.8.0 10.8.8.255 LOCAL
2 202.47.77.24x/24 202.47.77.24x 202.47.77.255 INT
[admin@FeryJunaedi-Router] >
[admin@FeryJunaedi-Router] > ip route print
Flags: X – disabled, A – active, D – dynamic,
C – connect, S – static, r – rip, b – bgp, o – ospf,
B – blackhole, U – unreachable, P – prohibit
# DST-ADDRESS PREF-SRC G GATEWAY DISTANCE INTERFACE
0 ADC 10.8.8.0/24 10.8.8.45 0 LOCAL
1 ADC 192.168.10.0/24 192.168.10.1 0 LAN
2 ADC 202.47.77.0/24 202.47.77.xxx 0 INT
[admin@FeryJunaedi-Router] > ip route add gateway=202.47.77.xx
[admin@FeryJunaedi-Router] > ip route print
Flags: X – disabled, A – active, D – dynamic,
C – connect, S – static, r – rip, b – bgp, o – ospf,
B – blackhole, U – unreachable, P – prohibit
# DST-ADDRESS PREF-SRC G GATEWAY DISTANCE INTERFACE
0 A S 0.0.0.0/0 r 202.47.77.24x 1 INT
1 ADC 10.8.8.0/24 10.8.8.45 0 LOCAL
2 ADC 192.168.10.0/24 192.168.10.1 0 LAN
3 ADC 202.47.77.0/24 202.47.77.24x 0 INT
[admin@FeryJunaedi-Router] > ip route add gateway=10.8.8.1
[admin@FeryJunaedi-Router] > ip route print
Flags: X – disabled, A – active, D – dynamic,
C – connect, S – static, r – rip, b – bgp, o – ospf,
B – blackhole, U – unreachable, P – prohibit
# DST-ADDRESS PREF-SRC G GATEWAY DISTANCE INTERFACE
0 A S 0.0.0.0/0 r 202.47.77.24x 1 INT
1 S 0.0.0.0/0 r 10.8.8.1 1 LOCAL
2 ADC 10.8.8.0/24 10.8.8.45 0 LOCAL
3 ADC 192.168.10.0/24 192.168.10.1 0 LAN
4 ADC 202.47.77.0/24 202.47.77.24x 0 INT
[admin@FeryJunaedi-Router] > ip dns set primary-dns=202.47.78.8 allow-remote-requests=yes
[admin@FeryJunaedi-Router] > ip dns set secondary-dns=202.47.78.9 allow-remote-requests=yes
[admin@FeryJunaedi-Router] > ip firewall nat add chain=srcnat dst-address
dst-address dst-address-list dst-address-type
[admin@FeryJunaedi-Router] > ip firewall nat add chain=srcnat dst-address=192.168.10.0/24 action=masquerade
[admin@FeryJunaedi-Router] > ip firewall nat add chain=srcnat out-interface=LOCAL action=masquerade
[admin@FeryJunaedi-Router] > ip firewall nat add chain=srcnat out-interface=INT action=masquerade
[admin@FeryJunaedi-Router] >
[admin@FeryJunaedi-Router] > ip firewall nat print all
Flags: X – disabled, I – invalid, D – dynamic
0 chain=srcnat action=masquerade dst-address=192.168.10.0/241 chain=srcnat action=masquerade out-interface=LOCAL2 chain=srcnat action=masquerade out-interface=INT
[admin@FeryJunaedi-Router] >[admin@FeryJunaedi-Router] > ip firewall mangle add chain=output
new-connection-mark=mark-con-local dst-address-list=nice action=mark-connection
[admin@FeryJunaedi-Router] > ip firewall mangle add chain=output connection-mark=mark-con-local
action=mark-routing new-routing-mark=mark-routing-local[admin@FeryJunaedi-Router] > ip firewall mangle print
Flags: X – disabled, I – invalid, D – dynamic
0 chain=output action=mark-connection new-connection-mark=mark-con-local passthrough=yes dst-address-list=nice

1 chain=output action=mark-routing new-routing-mark=mark-routing-local passthrough=yes connection-mark=mark-con-local
[admin@FeryJunaedi-Router] >

[admin@FeryJunaedi-Router] > tool traceroute http://www.yahoo.com
ADDRESS STATUS
1 202.47.68.249 1ms 1ms 1ms
2 202.47.79.35 2ms 1ms 1ms
3 202.93.245.153 23ms 26ms 22ms
4 121.52.62.193 20ms 20ms 22ms
5 202.152.245.165 23ms 23ms 22ms
6 202.152.245.130 27ms 27ms 25ms
7 203.208.192.45 61ms 27ms 25ms
8 203.208.182.1 27ms 22ms 27ms
9 0.0.0.0 timeout timeout timeout
[admin@FeryJunaedi-Router] > tool traceroute http://www.kompas.co.id
ADDRESS STATUS
1 202.47.79.69 1ms 1ms 1ms
2 202.47.79.212 4ms 5ms 5ms
3 218.100.27.147 4ms 4ms 6ms
4 202.146.5.33 5ms 5ms 5ms
[admin@FeryJunaedi-Router] >

[admin@FeryJunaedi-Router] > tool traceroute http://www.google.com
ADDRESS STATUS
1 202.47.68.249 1ms 2ms 1ms
2 202.47.79.35 1ms 1ms 1ms
3 202.93.245.153 23ms 23ms 21ms
4 121.52.62.193 22ms 21ms 20ms
5 202.152.245.165 23ms 26ms 22ms
6 202.152.245.130 24ms 21ms 24ms
7 203.208.192.45 21ms 24ms 21ms
8 203.208.182.1 20ms 25ms 22ms
9 203.208.182.110 27ms 23ms 23ms
10 203.208.149.166 21ms 56ms 60ms
11 0.0.0.0 timeout timeout timeout
[admin@FeryJunaedi-Router] >

~ by feryjunaedi on January 16, 2008.

2 Responses to “Setting Memisahkan Gateway Local dan international”

  1. [admin@FeryJunaedi-Router] > ip firewall nat add chain=srcnat dst-address
    dst-address dst-address-list dst-address-type

    —-

    perintah itu buat apaan yah ???

  2. Hi! I was surfing and found your blog post… nice! I love your blog. 🙂 Cheers! Sandra. R.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

 
%d bloggers like this: