Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Results 1 to 6 of 6
  1. #1
    Status
    Offline
    opiceboy's Avatar
    Member
    Join Date
    Oct 2008
    Posts
    219
    Reviews
    Read 0 Reviews
    Downloads
    6
    Uploads
    0
    Feedback Score
    0

    Web Proxy Internal bermasalah

    topologi jaringan

    Isp 1 -------|
    ------------| ----| Mikrotik ------- Client
    Speedy ---- |

    Isp 1 Ip 192.168.3.2/24
    Client Ip 192.168.1.0/24
    Speedy 192.168.4.2/24
    Modem 192.168.4.1/24

    Route

    0.0.0.0/0 r 192.168.3.1 Isp 1
    0.0.0.0/0 r 192.168.4.1 Speedy

    Nat

    chain=srcnat action=masquerade

    web proxy

    ip web-proxy print
    enabled: yes
    src-address: 0.0.0.0
    port: 3128
    hostname: "warnet"
    transparent-proxy: yes
    parent-proxy: 0.0.0.0:0
    cache-administrator: "warnet@gmail.com"
    max-object-size: 4294967295KiB
    cache-drive: system
    max-cache-size: unlimited
    max-ram-cache-size: unlimited
    status: running
    reserved-for-cache: 32946176KiB
    reserved-for-ram-cache: 7168KiB


    Yang jadi masalah kenapa tiap saya mengaktifkan rule untuk nat :

    chain=dstnat src-address=192.168.1.0/24 protocol=tcp dst-port=80 action=redirect to-ports=3128

    selalu

    * Connection Failed

    The system returned:

    (101) Network is unreachable

    ada kah yang mau membantu resolve masalah saya Click here to enlarge maap klo merepotkan sebelumnya terima kasih

  2. #2
    Status
    Offline
    putra_maiwa's Avatar
    Forum Guru
    Join Date
    Sep 2009
    Posts
    1,298
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by opiceboy Click here to enlarge
    topologi jaringan

    Isp 1 -------|
    ------------| ----| Mikrotik ------- Client
    Speedy ---- |

    Isp 1 Ip 192.168.3.2/24
    Client Ip 192.168.1.0/24
    Speedy 192.168.4.2/24
    Modem 192.168.4.1/24

    Route

    0.0.0.0/0 r 192.168.3.1 Isp 1
    0.0.0.0/0 r 192.168.4.1 Speedy

    Nat

    chain=srcnat action=masquerade

    web proxy

    ip web-proxy print
    enabled: yes
    src-address: 0.0.0.0
    port: 3128
    hostname: "warnet"
    transparent-proxy: yes
    parent-proxy: 0.0.0.0:0
    cache-administrator: "warnet@gmail.com"
    max-object-size: 4294967295KiB
    cache-drive: system
    max-cache-size: unlimited
    max-ram-cache-size: unlimited
    status: running
    reserved-for-cache: 32946176KiB
    reserved-for-ram-cache: 7168KiB


    Yang jadi masalah kenapa tiap saya mengaktifkan rule untuk nat :

    chain=dstnat src-address=192.168.1.0/24 protocol=tcp dst-port=80 action=redirect to-ports=3128

    selalu

    * Connection Failed

    The system returned:

    (101) Network is unreachable

    ada kah yang mau membantu resolve masalah saya Click here to enlarge maap klo merepotkan sebelumnya terima kasih
    ip di src-address coba d ilangin dl

  3. #3
    Status
    Offline
    dingo's Avatar
    Member Super Senior
    Join Date
    Jan 2008
    Location
    Puncak Kesejukan
    Posts
    641
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    OS nya versi brp?
    RB apa PC?

  4. #4
    Status
    Offline
    opiceboy's Avatar
    Member
    Join Date
    Oct 2008
    Posts
    219
    Reviews
    Read 0 Reviews
    Downloads
    6
    Uploads
    0
    Feedback Score
    0
    owh ia lupa os msh Hasil kocokan 2.9.*7

  5. #5
    Status
    Offline
    jemmy wahyudi's Avatar
    Member
    Join Date
    Aug 2009
    Location
    samarinda, kalimantan timur
    Posts
    171
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    MMM MMM KKK TTTTTTTTTTT KKK
    MMMM MMMM KKK TTTTTTTTTTT KKK
    MMM MMMM MMM III KKK KKK RRRRRR OOOOOO TTT III KKK KKK
    MMM MM MMM III KKKKK RRR RRR OOO OOO TTT III KKKKK
    MMM MMM III KKK KKK RRRRRR OOO OOO TTT III KKK KKK
    MMM MMM III KKK KKK RRR RRR OOOOOO TTT III KKK KKK

    MikroTik RouterOS 4.5 (c) 1999-2010

    Using nice.rsc from , 25 February 2010 00:17:44 WIB, 732 li...
    [jemmy@wijaya kusuma hotspot] > ip fir nat
    [jemmy@wijaya kusuma hotspot] /ip firewall nat> pr
    Flags: X - disabled, I - invalid, D - dynamic
    0 X ;;; place hotspot rules here
    chain=unused-hs-chain action=passthrough

    1 ;;; nat to inet
    chain=srcnat action=masquerade out-interface=SPIDOL

    2 ;;; nat to inet
    chain=srcnat action=masquerade out-interface=Public

    3 ;;; masquerade hotspot network
    chain=srcnat action=masquerade src-address=192.168.88.0/24

    4 ;;; DNS resolver
    chain=dstnat action=redirect to-ports=53 protocol=tcp dst-port=53

    5 chain=dstnat action=redirect to-ports=53 protocol=udp dst-port=53

    6 ;;; Manipulasi TOS
    chain=srcnat action=accept

    7 ;;; Rule to Web-proxy
    chain=dstnat action=redirect to-ports=3128 protocol=tcp src-address=192.168.88.0/24 dst-address=!69.63.181.0/24 in-interface=Local dst-port=80

    8 ;;; masquerade hotspot network
    chain=srcnat action=masquerade src-address=192.168.88.0/24

    9 ;;; PING
    chain=srcnat action=accept
    [jemmy@wijaya kusuma hotspot] /ip route> pr
    Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf, m - mme, B - blackhole, U - unreachable, P - prohibit
    # DST-ADDRESS PREF-SRC GATEWAY DISTANCE
    0 ADS 0.0.0.0/0 125.160.72.1 1
    1 X S 0.0.0.0/0 192.168.1.1 1
    2 ADC 125.160.72.1/32 125.160.74.XX SPIDOL 0
    3 ADC 192.168.1.0/27 192.168.1.2 Public 0
    4 ADC 192.168.88.0/24 192.168.88.1 Local 0
    [jemmy@wijaya kusuma hotspot] /ip route> /
    [jemmy@wijaya kusuma hotspot] > ip fir mangle
    [jemmy@wijaya kusuma hotspot] /ip firewall mangle> pr
    Flags: X - disabled, I - invalid, D - dynamic
    0 ;;; Speedtest
    chain=postrouting action=mark-connection new-connection-mark=Speedtest passthrough=yes protocol=tcp dst-address-list=!speed dst-port=80

    1 chain=postrouting action=mark-packet new-packet-mark=Speedtest passthrough=no connection-mark=Speedtest

    2 ;;; proxy-hit
    chain=output action=mark-packet new-packet-mark=proxy-hit passthrough=yes dst-address=192.168.88.0/24 out-interface=Local

    3 ;;; Point Blank
    chain=GAME action=mark-connection new-connection-mark=GAME passthrough=yes protocol=tcp dst-address=203.89.146.0/23 dst-port=39190

    4 chain=GAME action=mark-connection new-connection-mark=GAME passthrough=yes protocol=udp dst-address=203.89.146.0/23 dst-port=40000-40010

    5 chain=GAME action=mark-packet new-packet-mark=Game-pkt passthrough=no connection-mark=GAME

    6 ;;; Ping
    chain=postrouting action=mark-connection new-connection-mark=icmp-con passthrough=yes protocol=icmp src-address=192.168.88.0/24 src-address-list=Klien

    7 chain=output action=change-dscp new-dscp=4 connection-mark=icmp-con

    8 chain=postrouting action=mark-packet new-packet-mark=icmp-pkt passthrough=no connection-mark=icmp-con

    9 ;;; FB LOSS
    chain=prerouting action=mark-connection new-connection-mark=FB Loss passthrough=yes protocol=tcp dst-port=80 content=http://www.facebook.com

    10 chain=prerouting action=mark-packet new-packet-mark=FB Loss passthrough=no connection-mark=FB Loss

    11 ;;; Limited Download
    chain=postrouting action=mark-connection new-connection-mark=Limit Down 1 passthrough=yes protocol=tcp out-interface=Local connection-mark=!Poker
    content=! connection-bytes=128000-4294967295

    12 chain=postrouting action=mark-packet new-packet-mark=Limit Down passthrough=no protocol=tcp out-interface=Local connection-mark=Limit Down 1

    13 ;;; Poker
    chain=prerouting action=mark-connection new-connection-mark=Poker passthrough=yes protocol=tcp dst-port=80 content=http://apps.facebook.com/texas_holdem

    14 chain=prerouting action=mark-packet new-packet-mark=Poker Oke passthrough=no connection-mark=Poker

    15 ;;; Semua Poker
    chain=forward action=mark-connection new-connection-mark=semua poker passthrough=yes src-address=192.168.88.0/24 dst-address-list=POKER

    16 chain=prerouting action=jump jump-target=GAME

    17 chain=postrouting action=mark-packet new-packet-mark=Poker passthrough=no connection-mark=semua poker

    18 chain=output action=mark-packet new-packet-mark=x-down passthrough=yes out-interface=Local connection-mark=x-con

    19 ;;; Download via proxy
    chain=output action=mark-connection new-connection-mark=x-con passthrough=yes protocol=tcp src-address=192.168.88.0/24 out-interface=Local src-port=3128
    content=X-Cache: HIT

    20 chain=output action=mark-connection new-connection-mark=x-con passthrough=yes protocol=tcp src-address=192.168.88.0/24 out-interface=Local src-port=3128
    content=X-Cache-Lookup: HIT

    21 chain=output action=change-dscp new-dscp=2 ipv4-options=strict-source-routing connection-mark=x-con

    22 chain=output action=mark-packet new-packet-mark=x-down-pkt passthrough=no out-interface=Local connection-mark=x-con

    23 chain=postrouting action=mark-packet new-packet-mark=http-pkt passthrough=no protocol=tcp connection-mark=http

    24 chain=postrouting action=mark-packet new-packet-mark=http-pkt passthrough=no protocol=tcp connection-mark=http

    25 ;;; PCQ
    chain=prerouting action=mark-packet new-packet-mark=ALL passthrough=no

    [jemmy@wijaya kusuma hotspot] > ip proxy
    [jemmy@wijaya kusuma hotspot] /ip proxy> mon
    status: running
    uptime: 3d11h36m48s
    requests: 530256
    hits: 84932
    cache-used: 1221580KiB
    total-ram-used: 2850KiB
    received-from-servers: 5076017KiB
    sent-to-clients: 5729596KiB
    hits-sent-to-clients: 664042KiB
    -- [Q quit|D dump|C-z pause]


    Ntar, ANE COBA INSTALL YG KOCOKAN TP GAK JAMIN AKAN DI APPROVE AMA MOMOD/MIMIN YA

  6. #6
    Status
    Offline
    jemmy wahyudi's Avatar
    Member
    Join Date
    Aug 2009
    Location
    samarinda, kalimantan timur
    Posts
    171
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlargeClick here to enlargeClick here to enlargeNAH NI DIA YG KOCOKAN





    MMM MMM KKK TTTTTTTTTTT KKK
    MMMM MMMM KKK TTTTTTTTTTT KKK
    MMM MMMM MMM III KKK KKK RRRRRR OOOOOO TTT III KKK KKK
    MMM MM MMM III KKKKK RRR RRR OOO OOO TTT III KKKKK
    MMM MMM III KKK KKK RRRRRR OOO OOO TTT III KKK KKK
    MMM MMM III KKK KKK RRR RRR OOOOOO TTT III KKK KKK

    MikroTik RouterOS 2.9.27 (c) 1999-2006


    ip firewall nat> pr
    Flags: X - disabled, I - invalid, D - dynamic
    0 chain=srcnat out-interface=pppoe-out1 action=masquerade

    1 ;;; DNS RESOLVER
    chain=dstnat protocol=udp dst-port=53 action=redirect to-ports=53

    2 chain=dstnat protocol=tcp dst-port=53 action=redirect to-ports=53

    3 chain=dstnat in-interface=local protocol=icmp action=redirect to-ports=1

    4 ;;; Rule to Web Proxy
    chain=dstnat in-interface=local src-address=192.168.2.0/24 dst-address=!69.63.181.0/24 protocol=tcp dst-port=80
    action=redirect to-ports=8080

    5 ;;; Remote Admin
    chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4881 action=dst-nat to-addresses=192.168.2.2
    to-ports=4899

    6 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4882 action=dst-nat to-addresses=192.168.2.3
    to-ports=4899

    7 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4883 action=dst-nat to-addresses=192.168.2.4
    to-ports=4899

    8 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4884 action=dst-nat to-addresses=192.168.2.5
    to-ports=4899

    9 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4885 action=dst-nat to-addresses=192.168.2.6
    to-ports=4899

    10 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4886 action=dst-nat to-addresses=192.168.2.7
    to-ports=4899

    11 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4887 action=dst-nat to-addresses=192.168.2.8
    to-ports=4899

    12 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4888 action=dst-nat to-addresses=192.168.2.9
    to-ports=4899

    13 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4889 action=dst-nat to-addresses=192.168.2.10
    to-ports=4899

    14 chain=dstnat dst-address=110.139.1xx.xxx protocol=tcp dst-port=4890 action=dst-nat to-addresses=192.168.2.11
    to-ports=4899

    ip firewall mangle> pr
    Flags: X - disabled, I - invalid, D - dynamic
    0 ;;; Point Blank
    chain=GAME dst-address=203.89.146.0/23 protocol=tcp dst-port=39190 action=mark-connection new-connection-mark=GAME
    passthrough=yes

    1 chain=GAME dst-address=203.89.146.0/23 protocol=udp dst-port=40000-40010 action=mark-connection
    new-connection-mark=GAME passthrough=yes

    2 chain=GAME connection-mark=GAME action=mark-packet new-packet-mark=Game-pkt passthrough=no

    3 chain=prerouting action=jump jump-target=GAME

    4 ;;; test farmville
    chain=prerouting protocol=tcp dst-port=80 content=farmville action=mark-connection new-connection-mark=farmville
    passthrough=yes

    5 chain=prerouting connection-mark=farmville action=mark-packet new-packet-mark=farmville oke passthrough=no

    6 ;;; Poker
    chain=forward protocol=tcp content=statics.poker.static.zynga.com action=mark-connection
    new-connection-mark=Poker-con passthrough=yes

    7 chain=forward connection-mark=Poker-con action=mark-packet new-packet-mark=Poker passthrough=no

    8 ;;; semua poker
    chain=forward src-address=192.168.2.0/24 dst-address-list=POINK action=mark-connection
    new-connection-mark=semua poker passthrough=yes

    9 chain=postrouting connection-mark=semua poker action=mark-packet new-packet-mark=Poker passthrough=no

    10 chain=output out-interface=local connection-mark=x-con action=mark-packet new-packet-mark=x-down-pkt passthrough=no

    11 ;;; Limit Download
    chain=postrouting out-interface=local protocol=tcp packet-mark=!Game-pkt connection-mark=!Poker-con
    connection-bytes=256146-4294967295 action=mark-connection new-connection-mark=Download passthrough=yes

    12 chain=postrouting packet-mark=!Game-pkt connection-mark=Download action=mark-packet new-packet-mark=Download-pkt
    passthrough=no

    13 ;;; Browsing
    chain=forward in-interface=pppoe-out1 out-interface=local protocol=tcp packet-mark=!Game-pkt connection-mark=!GAME
    connection-bytes=0-262146 action=mark-connection new-connection-mark=http passthrough=yes

    14 chain=forward protocol=tcp connection-mark=http action=mark-packet new-packet-mark=http-pkt passthrough=no

    15 chain=forward protocol=tcp connection-mark=http action=mark-packet new-packet-mark=http-pkt passthrough=no

    16 ;;; Upload
    chain=prerouting in-interface=local src-address=192.168.2.0/24 protocol=tcp packet-mark=!icmp-pkt action=mark-packet
    new-packet-mark=Upload passthrough=no

    17 ;;; Ping
    chain=prerouting src-address=192.168.2.0/24 protocol=icmp src-address-list=klien action=mark-connection
    new-connection-mark=icmp-con passthrough=yes

    18 chain=prerouting connection-mark=icmp-con action=change-tos new-tos=min-delay

    19 chain=prerouting connection-mark=icmp-con action=mark-packet new-packet-mark=icmp-pkt passthrough=no

    20 ;;; DNS
    chain=prerouting protocol=tcp dst-port=53 action=accept

    21 chain=prerouting protocol=udp dst-port=53 action=accept

    22 ;;; Proxy HIT
    chain=output out-interface=local dst-address=192.168.2.0/24 action=mark-packet new-packet-mark=proxy-hit
    passthrough=yes

    23 ;;; test hit proxy
    chain=output out-interface=local src-address=192.168.2.0/24 protocol=tcp src-port=8080 content=X-Cache: HIT
    action=mark-connection new-connection-mark=x-con passthrough=yes

    24 chain=output out-interface=local src-address=192.168.2.0/24 protocol=tcp src-port=8080 content=X-Cache-Lookup: HIT
    action=mark-connection new-connection-mark=x-con passthrough=yes

    25 chain=output connection-mark=x-con action=change-tos new-tos=max-throughput

    26 chain=output out-interface=local connection-mark=x-con action=mark-packet new-packet-mark=x-down-pkt passthrough=no

    ip route> pr
    Flags: X - disabled, A - active, D - dynamic, C - connect, S - static, r - rip, b - bgp, o - ospf
    # DST-ADDRESS PREF-SRC G GATEWAY DISTANCE INTERFACE
    0 ADC 110.139.1xx.1/32 110.139.1xx.xxx pppoe-out1
    1 ADC 192.168.2.0/24 192.168.2.1 local
    2 AD 0.0.0.0/0 r 110.139.144.1 1 pppoe-out1

    ip web-proxy> mon
    status: running
    uptime: 1h6m14s
    clients: 3
    requests: 1697
    hits: 0
    cache-size: 11738356KiB
    ram-storage-size: 136KiB
    received-from-servers: 8796KiB
    sent-to-clients: 6759KiB
    hits-sent-to-clients: 0KiB


    dah jalan normal, hitnya gak keliatan karena gak dipake buat klien, heheheheh cuman buat testing sendiri. SARAN ANE BELI LISENSI AJA, KAN UDAH MURAHClick here to enlargeClick here to enlarge

  7. The Following 2 Users Say Thank You to jemmy wahyudi For This Useful Post:


 

 

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Internal Proxy V.3.22 vs Latency
    By dingo in forum Beginner Basics
    Replies: 3
    Last Post: 06-09-2012, 09:42
  2. Dstnat untuk proxy external ke mikrotik dengan proxy internal
    By awarmanf in forum General Networking
    Replies: 3
    Last Post: 21-02-2010, 21:17
  3. Replies: 21
    Last Post: 25-11-2009, 02:35
  4. proxy internal haw-haw
    By sufandi in forum General Networking
    Replies: 5
    Last Post: 23-08-2009, 21:43
  5. [help]MCT 3.26, Internal proxy
    By yephta in forum Scripting @ Mikrotik
    Replies: 9
    Last Post: 10-08-2009, 14:26

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •