
Originally Posted by
picazzo
add chain=dstnat
src-address=192.168.12.0/24 protocol=tcp
dst-port=80 \
action=dst-nat to-addresses=192.168.12.1 to-ports=878 comment="" disabled=no
klo yg d tebelin d ganti kyk itu gmn bro ?
br,
picazzo
wedew...ngga cuma hotspot, tapi yang ke LAN interface 1 juga ngga jalan internetnya
gini deh, ini setinganku, mohon koreksinya ya.
Code:
[admin@legowo] > ip address print
Flags: X - disabled, I - invalid, D - dynamic
# ADDRESS NETWORK BROADCAST INTERFACE
0 192.168.1.254/24 192.168.1.0 192.168.1.255 ether1lan
1 192.168.0.254/24 192.168.0.0 192.168.0.255 ether2speedy1
2 I 192.168.2.254/24 192.168.2.0 192.168.2.255 ether3speedy2
3 ;;; hotspot network
192.168.99.99/24 192.168.99.0 192.168.99.255 ether4wifi
4 ;;; proxy
192.168.5.254/24 192.168.5.0 192.168.5.255 ether5proxy
Ini NAT
Code:
5 ;;; masquerade hotspot network
chain=srcnat action=masquerade src-address=192.168.99.0/24
6 ;;; masquerade simple single line LAN
chain=srcnat action=masquerade src-address=192.168.1.0/24
out-interface=ether2speedy1
7 ;;; proxUNTUK IPCOP
chain=dstnat action=dst-nat to-addresses=192.168.5.12 to-ports=81
protocol=tcp dst-port=81
8 ;;; https acces ipcop
chain=dstnat action=dst-nat to-addresses=192.168.5.12 to-ports=445
protocol=tcp dst-port=445
9 chain=dstnat action=dst-nat to-addresses=192.168.5.12 to-ports=8080
protocol=tcp src-address=!192.168.5.0/24 dst-port=80
10 chain=srcnat action=masquerade out-interface=ether2speedy1
11 chain=srcnat action=masquerade
12 X chain=dstnat action=dst-nat to-addresses=192.168.5.12 to-ports=8080
protocol=tcp src-address=192.168.5.0/24 dst-port=80
itu NAT yang paling bawah yang di disable karena YM dan FB g mau konek
ini mangle
Code:
18 ;;; INI UNTUK PROXYNYA
chain=forward action=mark-connection new-connection-mark=squid_con
passthrough=yes content=x-cache: HIT
19 chain=forward action=mark-packet new-packet-mark=squid_packet
passthrough=no connection-mark=squid_con
20 chain=forward action=mark-connection new-connection-mark=all_con
passthrough=yes connection-mark=!squid_con
21 chain=forward action=mark-packet new-packet-mark=http_packet
passthrough=no protocol=tcp src-port=80 connection-mark=all_con
22 chain=forward action=mark-packet new-packet-mark=icmp_packet
passthrough=no protocol=icmp connection-mark=all_con
23 chain=forward action=mark-packet new-packet-mark=test_pkt passthrough=no
connection-mark=all_con
nah...gimana ntuh...