Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Page 1 of 3 123 LastLast
Results 1 to 15 of 40
  1. #1
    Status
    Offline
    kucingGarong's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    correctly transparently redirect HTTP traffic from router to some other transparent-p

    sesuai judulnya, langsung aja kira2 mikrotik bisa kaya gini ga yah :

    correctly transparently redirect HTTP traffic from router to some other transparent-proxy server
    kalo bisa keren neh Click here to enlargeClick here to enlarge

  2. #2
    Status
    Offline
    lini's Avatar
    Forum Guru
    Join Date
    Sep 2007
    Location
    Karawaci
    Posts
    1,961
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    2 (100%)
    Click here to enlarge Originally Posted by kucingGarong Click here to enlarge
    sesuai judulnya, langsung aja kira2 mikrotik bisa kaya gini ga yah :



    kalo bisa keren neh Click here to enlargeClick here to enlarge
    Bukan kira-kira lage...bisa kok

  3. #3
    Status
    Offline
    lonthong2002's Avatar
    Member Senior
    Join Date
    Jul 2007
    Location
    Malang
    Posts
    397
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    1 (100%)
    maksudnya gimana tuh.....yg lebih jelas dong... maklum newbieClick here to enlargeClick here to enlarge

  4. #4
    Status
    Offline
    kucingGarong's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by lini Click here to enlarge
    Bukan kira-kira lage...bisa kok
    wow masa seh, coba dong bro kasih tau bagaimana caranya Click here to enlarge
    Last edited by kucingGarong; 26-10-2007 at 03:20.

  5. #5
    Status
    Offline
    emmerdale's Avatar
    Calon Member
    Join Date
    Oct 2007
    Location
    World
    Posts
    80
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    bingung aq...

  6. #6
    Status
    Offline
    kucingGarong's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by lonthong2002 Click here to enlarge
    maksudnya gimana tuh.....yg lebih jelas dong... maklum newbieClick here to enlargeClick here to enlarge
    waduh saya juga bingung terjemahaanya Click here to enlarge

  7. #7
    Status
    Offline
    si_uye's Avatar
    Baru Gabung
    Join Date
    Oct 2007
    Location
    Bandung
    Posts
    14
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    Smile

    iya neeh, kucing garong kasih tau dong lagi ngebahas apa sih??Click here to enlarge

  8. The Following User Says Thank You to si_uye For This Useful Post:


  9. #8
    Status
    Offline
    Dody's Avatar
    Newbie
    Join Date
    Jul 2007
    Location
    Madiun - East Java
    Posts
    40
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    Mungkin Maksudnya : Mikrotik memakai proxy luar / open proxy / proxy di internet

    Menghubungkan Router Mikrotik dengan Proxy Luar langsung di mikrotiknya tanpa ngeset satu-satu di browser client.

    Click here to enlarge

    1. Cari Open Proxy di Internet, bisa seach di google atau yang lain.
    contoh : , Ini yg saya pake ngetes : 192.146.7.18 port : 80

    2. Buat NAT
    / ip firewall nat
    add chain=dstnat protocol=tcp dst-port=80 action=dst-nat \
    to-addresses=[IP Address Proxy LuarNya] to-ports=[Port] \
    comment="" disabled=no

    3. PENGETESAN
    Coba browsing ke web yg bisa menampilkan IP Address kita, banyak di internet, cari juga di google ...
    contoh :

    Cepat tidaknya hasil browsing tentunya kita semua sudah tau yaitu dipengaruhi banyak faktor, kalo nggak mau
    pusing bikin aja koneksi dgn salah satu NODE dibawah ini :

    Click here to enlarge

    Masalah kecepatan koneksi tidak diragukan lagi, cuman masalah biaya, tanyakan pada rumput yg bergoyang.

    Click here to enlarge
    Last edited by Dody; 26-10-2007 at 20:34.

  10. The Following 4 Users Say Thank You to Dody For This Useful Post:


  11. #9
    Status
    Offline
    d3v4's Avatar
    Forum Guru
    Join Date
    Jul 2007
    Location
    di alam baka
    Posts
    1,015
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge

    klo bw nya kecil mo pake 100 siblings/parent proxy atau redirect sama juga bo'ong. enakan koneksi langsung.





    ngomong2 itu gambar yg atas om dody pake apa ya ?? kok keren sih Click here to enlarge

  12. #10
    Status
    Offline
    kucingGarong's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    @ dody maksud saya proxynya ada di local juga bro, bukan proxynya dari luar Click here to enlarge.
    sepertinya musti di assign satu2 clientnya, soalnya ip yg kebaca ama si proxy server tuh hanya ip local si mikrotiknya.
    ada yg bisa bantu kira2...?Click here to enlarge

  13. #11
    Status
    Offline
    kucingGarong's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    @lini mana neh bro tutorial supaya mikrotik bisa kaya kaya gitu....!!!

  14. #12
    Status
    Offline
    nux
    nux's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    268
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by kucingGarong Click here to enlarge
    @ dody maksud saya proxynya ada di local juga bro, bukan proxynya dari luar Click here to enlarge.
    sepertinya musti di assign satu2 clientnya, soalnya ip yg kebaca ama si proxy server tuh hanya ip local si mikrotiknya.
    ada yg bisa bantu kira2...?Click here to enlarge
    proxynya ada di lokal..., udah sering dibahas, tp mo sekedar sharing aja...
    ini contoh konfigurasi yg pernah aku pake:

    Click here to enlarge

    proxy server sejajar dengan client (lumayan buat ngirit switch & lancard Click here to enlarge)
    asumsi proxy & mikrotik udah diinstal & berjln dgn baik.
    ethernet Lokal dibikin dua ip:
    192.168.0.1/27 utk client
    192.168.1.1/29 utk proxy server

    bikin nat masq:
    ip firewall nat add chain=srcnat src-address=192.168.0.0/27 out-interface=Publik action=masquerade

    ip firewall nat add chain=srcnat src-address=192.168.1.0/29 out-interface=Publik action=masquerade

    buat daftar client yg mo dibelokin ke proxy:
    ip firewall address-list add list=belokinproxy address=192.168.0.0/27

    rule utk membelokkan ke port proxy (yg aku pake buat squid port 3128):
    ip firewall nat add chain=dstnat protocol=tcp dst-port=80 src-address-list=belokinproxy action=dst-nat to-addresses=192.168.1.2 to-ports=3128

    semoga membantu...

  15. The Following 2 Users Say Thank You to nux For This Useful Post:


  16. #13
    Status
    Offline
    kucingGarong's Avatar
    Member
    Join Date
    Jul 2007
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by nux Click here to enlarge
    proxynya ada di lokal..., udah sering dibahas, tp mo sekedar sharing aja...
    ini contoh konfigurasi yg pernah aku pake:

    Click here to enlarge

    proxy server sejajar dengan client (lumayan buat ngirit switch & lancard Click here to enlarge)
    asumsi proxy & mikrotik udah diinstal & berjln dgn baik.
    ethernet Lokal dibikin dua ip:
    192.168.0.1/27 utk client
    192.168.1.1/29 utk proxy server

    bikin nat masq:
    ip firewall nat add chain=srcnat src-address=192.168.0.0/27 out-interface=Publik action=masquerade

    ip firewall nat add chain=srcnat src-address=192.168.1.0/29 out-interface=Publik action=masquerade

    buat daftar client yg mo dibelokin ke proxy:
    ip firewall address-list add list=belokinproxy address=192.168.0.0/27

    rule utk membelokkan ke port proxy (yg aku pake buat squid port 3128):
    ip firewall nat add chain=dstnat protocol=tcp dst-port=80 src-address-list=belokinproxy action=dst-nat to-addresses=192.168.1.2 to-ports=3128

    semoga membantu...
    udah di coba tapi ga bisa, soalnya yg kebaca di proxy server itu IP si router/gatewaynya sendiri. kayanya mikrotik ga mungkin bisa deh selama gateway yg di proxy server itu IP si router mikrotik, kecuali kalo si proxy server itu jadi gateway Click here to enlarge

  17. #14
    Status
    Offline
    d3v4's Avatar
    Forum Guru
    Join Date
    Jul 2007
    Location
    di alam baka
    Posts
    1,015
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    gw masih ga ngerti maksud pertanyaan nya sampe sekarang Click here to enlarge

  18. #15
    Status
    Offline
    okto_2005's Avatar
    Member Super Senior
    Join Date
    Jul 2007
    Posts
    655
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    kl buat gitu bandwidthnya bocor ga bro????

    soalnya gue udah buat gitu, bandwidthnya narik ke proxy semua. di client ga kena shaping. udah gue coba pake pcq, simple queue sama aja bocor..

    kl gue sih cenderung buat gini:
    inet----squidproxy----mikrotik--- client

    soalnya udah pengalaman sih buat proxy yg bro nux bilang heheehe.....

    @deva
    maksutnya mungkin dikasi proxy external diluar mikrotik gitu....

    @kucinggarong
    bro.. mungkin kalo bisa diperjelas itu quote dari mana... soalnya nanti takutnya yg baca banyak orang jadi banyak yg salah persepsi. nanggepinya macem2.

    EDIT:
    udah searching google dari sini ya???


    ini kompletnya:
    Redirect and Masquerade

    Redirect and masquerade are special forms of destination NAT and source NAT, respectively. Redirect is similar to the regular destination NAT in the same way as masquerade is similar to the source NAT - masquerade is a special form of source NAT without need to specify to-addresses - outgoing interface address is used automatically. The same is for redirect - it is a form of destination NAT where to-addresses is not used - incoming interface address is used instead. Note that to-ports is meaningful for redirect rules - this is the port of the service on the router that will handle these requests (e.g. web proxy).

    When packet is dst-natted (no matter - action=nat or action=redirect), dst address is changed. Information about translation of addresses (including original dst address) is kept in router's internal tables. Transparent web proxy working on router (when web requests get redirected to proxy port on router) can access this information from internal tables and get address of web server from them. If you are dst-natting to some different proxy server, it has no way to find web server's address from IP header (because dst address of IP packet that previously was address of web server has changed to address of proxy server). Starting from HTTP/1.1 there is special header in HTTP request which tells web server address, so proxy server can use it, instead of dst address of IP packet. If there is no such header (older HTTP version on client), proxy server can not determine web server address and therefore can not work.

    It means, that it is impossible to correctly transparently redirect HTTP traffic from router to some other transparent-proxy box. Only correct way is to add transparent proxy on the router itself, and configure it so that your "real" proxy is parent-proxy. In this situation your "real" proxy does not have to be transparent any more, as proxy on router will be transparent and will forward proxy-style requests (according to standard; these requests include all necessary information about web server) to "real" proxy.
    Last edited by okto_2005; 31-10-2007 at 09:50.

 

 
Page 1 of 3 123 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Transparent Traffic Shaper
    By [a] in forum QOS & Traffic Shaping
    Replies: 13
    Last Post: 06-07-2015, 16:35
  2. There is a loop in network for HTTP traffic.
    By seafer in forum General Networking
    Replies: 21
    Last Post: 13-10-2012, 18:04
  3. Replies: 3
    Last Post: 21-05-2010, 08:54
  4. Nge redirect traffic Yahoo Messenger gimana caranya...
    By kdebugx86 in forum General Networking
    Replies: 3
    Last Post: 11-05-2009, 22:34

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •