Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Page 1 of 3 123 LastLast
Results 1 to 15 of 35
  1. #1
    Status
    Offline
    singkong77's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    266
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    Queue tree & mangle squid box external

    mas bro ane mau nanya nih, ane bikin mangle + queue tree kaya begini

    spesifikasinya :

    mikrotik : 192.168.1.1
    Proxy : 192.168.1.2 <-- sejajar dengan client
    client : 192.168.1.11-192.168.1.20
    RB : 750 , OS :v3.29
    Status : Proxy sudah terkoneksi dengan client dan mikrotik

    Problem : bandwithnya loss
    DSCP nya juga engga ke HIT
    Click here to enlarge udah hampir 6 bulan cari refrensi ngoprek sana ngoprek sini sampe Click here to enlarge

    udah mentok banget, butuh bantuannya om om Click here to enlarge

    Code:
    [admin@Clown.net] /ip firewall mangle> pr
    Flags: X - disabled, I - invalid, D - dynamic 
     0   ;;; Proxy Hit
         chain=prerouting action=mark-packet new-packet-mark=hit passthrough=no 
         dscp=12 
    
     1   ;;; UP TRAFFIC
         chain=prerouting action=mark-packet new-packet-mark=test-up 
         passthrough=no src-address=192.168.1.0/24 
    
     2   ;;; CONN-MARK
         chain=forward action=mark-connection new-connection-mark=test-conn 
         passthrough=yes src-address=192.168.1.0/24 
    
     3   chain=forward action=mark-packet new-packet-mark=test-down passthrough=no 
         in-interface=speedy connection-mark=test-conn 
    
     4   ;;; DOWN-VIA PROXY
         chain=output action=mark-packet new-packet-mark=test-down passthrough=no 
         dst-address=192.168.1.0/24 out-interface=warnet-3

    yang ini setingan queue treenya mas bro Click here to enlarge


    Code:
    0   name="down" parent=warnet-3 packet-mark=test-up limit-at=0 queue=pcq-down 
         priority=8 max-limit=600k burst-limit=0 burst-threshold=0 burst-time=0s 
    
     1   name="upp" parent=global-in packet-mark=test-down limit-at=0 
         queue=pcq-down priority=8 max-limit=300k burst-limit=0 burst-threshold=0 
         burst-time=0s

    penampakannya mas bro

    Click here to enlarge

    tolong dibantu ya mas bro Click here to enlarge

    kalo salah mohon koreksi, maklum nubi , Click here to enlarge

  2. #2
    Status
    Offline
    maestro_smd's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by singkong77 Click here to enlarge
    mas bro ane mau nanya nih, ane bikin mangle + queue tree kaya begini

    spesifikasinya :

    Click here to enlarge udah hampir 6 bulan cari refrensi ngoprek sana ngoprek sini sampe Click here to enlarge

    udah mentok banget, butuh bantuannya om om Click here to enlarge

    [CODE][admin@Clown.net]

    Click here to enlarge

    tolong dibantu ya mas bro Click here to enlarge

    kalo salah mohon koreksi, maklum nubi , Click here to enlarge

    Untuk level paket marrkingnya di squid gimana?

  3. #3
    Status
    Offline
    singkong77's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    266
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by maestro_smd Click here to enlarge
    Untuk level paket marrkingnya di squid gimana?
    yang kayak gimana bro? monggo ditambahkan Click here to enlarge

  4. #4
    Status
    Offline
    uburcumi's Avatar
    :: Gw Banget Cing ::
    Join Date
    Jun 2009
    Location
    www.mikrotikservice.net
    Posts
    2,281
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    2 (100%)
    NAT redirectnya gmn?
    ZPH udah belom?

  5. #5
    Status
    Offline
    maestro_smd's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by singkong77 Click here to enlarge
    yang kayak gimana bro? monggo ditambahkan Click here to enlarge
    zph_mode tos
    zph_local 0x30
    zph_parent 0
    zph_option 136

    Tetapi saya tidak tahu kernel linux & netfilternya jika belum patch, lalu squid IP TOS bisa jalan, tetapi dari beberapa literatur saya baca nilai tos decimal 30 (0x30) tidak akan dikenali kalau pakai IP Tables, di Mikrotik... coba aja dech..

    Untuk pemahaman silahakan baca literatur dibawah ini :



    Anda bisa pilih IP TOS dengan nilai througoutput maximum, kemudian di manglenya dirubah DSCPnya sesuai dengan squid.conf, untuk menangkap HIT/MISSnya

    CMIIW
    Last edited by maestro_smd; 18-11-2010 at 09:12.

  6. #6
    Status
    Offline
    singkong77's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    266
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by uburcumi Click here to enlarge
    NAT redirectnya gmn?
    ZPH udah belom?
    redirectnya kaya gini mas bro

    Code:
      ;;; gabung
         chain=srcnat action=masquerade out-interface=speedy 
    
     1 X ;;; transparent
         chain=dstnat action=dst-nat to-addresses=192.168.1.2 to-ports=3128 
         protocol=tcp src-address=!192.168.1.2 in-interface=warnet-3 dst-port=80 
    
     2 X chain=srcnat action=src-nat to-addresses=192.168.1.1 
         src-address=192.168.1.0/24 out-interface=warnet-3
    zphnya udah ane taro di squid.conf

    Click here to enlarge Originally Posted by maestro_smd Click here to enlarge
    zph_mode tos
    zph_local 0x30
    zph_parent 0
    zph_option 136

    Tetapi saya tidak tahu kernel linux & netfilternya jika belum patch, lalu squid IP TOS bisa jalan, tetapi dari beberapa literatur saya baca nilai tos decimal 30 (0x30) tidak akan dikenali

    Untuk pemahaman silahakan baca literatur dibawah ini :



    Anda bisa pilih IP TOS dengan nilai througoutput maximum, kemudian di manglenya dirubah DSCPnya sesuai dengan squid.conf, untuk menangkap HIT/MISSnya

    CMIIW

    oke ane baca dulu mas bro, makasi banget , kalo ada refrensi yang bagus posting dimari lagi mas, udah 6 bulan baca ngalor ngidul, belom dapet pencerahan , heheheh Click here to enlarge

  7. #7
    Status
    Offline
    maestro_smd's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    235
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Gini mas brow, coba saja dulu..

    di squid dg 0x30, lalu di Mikrotik DSCP TOS 12, kalau nggak kejiret trial lagi,

    ke 0x04 squid, mikrotik DSCP 4
    yg nyata kalau pakai IP Tables nggak iso...

    Kalau nggak bisa lagi, chainya dirubah forward...

    untuk lebih memahami itu... silahkan baca ini :


  8. #8
    Status
    Offline
    uburcumi's Avatar
    :: Gw Banget Cing ::
    Join Date
    Jun 2009
    Location
    www.mikrotikservice.net
    Posts
    2,281
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    2 (100%)
    kalo ZPH udah bener rasanya gak mungkin kalo gak kejiret, pasti ZPH nya salah, coba di cek lagi zph nya dan itung dscp nya .

    ---------- Post added at 08:32 ---------- Previous post was at 08:31 ----------

    kalo sejajar dg client/masuk ke hub pake teknik aja.

  9. The Following User Says Thank You to uburcumi For This Useful Post:


  10. #9
    Status
    Offline
    joko_kuno's Avatar
    Member Super Senior
    Join Date
    Apr 2010
    Posts
    601
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    pakai aja mas, di jamin maknyus........Click here to enlargeClick here to enlarge

  11. The Following User Says Thank You to joko_kuno For This Useful Post:


  12. #10
    Status
    Offline
    singkong77's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    266
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by maestro_smd Click here to enlarge
    Gini mas brow, coba saja dulu..

    di squid dg 0x30, lalu di Mikrotik DSCP TOS 12, kalau nggak kejiret trial lagi,

    ke 0x04 squid, mikrotik DSCP 4
    yg nyata kalau pakai IP Tables nggak iso...

    Kalau nggak bisa lagi, chainya dirubah forward...

    untuk lebih memahami itu... silahkan baca ini :

    oke bro ane coba pahamin dulu ;D MAKASIh sarannya Click here to enlarge

    Click here to enlarge Originally Posted by uburcumi Click here to enlarge
    kalo ZPH udah bener rasanya gak mungkin kalo gak kejiret, pasti ZPH nya salah, coba di cek lagi zph nya dan itung dscp nya .

    ---------- Post added at 08:32 ---------- Previous post was at 08:31 ----------

    kalo sejajar dg client/masuk ke hub pake teknik aja.
    oke mas. saya coba, mudah mudahan bisa Click here to enlarge

    Click here to enlarge Originally Posted by joko_kuno Click here to enlarge
    pakai aja mas, di jamin maknyus........Click here to enlargeClick here to enlarge
    oke bro. ane coba usaha, nanti kalo oke hasilnya saya posting disini, makasih mas refrensi nya , Click here to enlarge

  13. #11
    Status
    Offline
    adiputrolds's Avatar
    Forum Guru
    Join Date
    Oct 2008
    Posts
    1,485
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    apa mungkin bisa jika proxy external sejajar client dalam subnet yang sama ?

    client request ke internet, di nat ke proxy , proxy request ke internet , dan langsung di kembalikan ke client tanpa masuk ke interface mikrotik lagi karena subnet client sama dengan subnet proxy

    wajar kalo BW loss
    karena traffic balik ke arah client gk pernah lewat HTB mikrotik lagi
    kecuali anda melimit traffic up dan down dari proxy dan menuju proxy
    tapi saya rasa juga percuma karena IDM pasti jebol

    sebaiknya tambah 1 interface khusus untuk proxy external
    Last edited by adiputrolds; 19-11-2010 at 00:20.

  14. #12
    Status
    Offline
    c0nf's Avatar
    Contributor
    Join Date
    Jul 2007
    Location
    Bandung, Indonesia
    Posts
    1,816
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by electrix_85 Click here to enlarge
    apa mungkin bisa jika proxy external sejajar client dalam subnet yang sama ?

    client request ke internet, di nat ke proxy , proxy request ke internet , dan langsung di kembalikan ke client tanpa masuk ke interface mikrotik lagi karena subnet client sama dengan subnet proxy

    wajar kalo BW loss
    karena traffic balik ke arah client gk pernah lewat HTB mikrotik lagi
    kecuali anda melimit traffic up dan down dari proxy dan menuju proxy
    tapi saya rasa juga percuma karena IDM pasti jebol

    sebaiknya tambah 1 interface khusus untuk proxy external
    bukannya jadinya begini ?

    client -> mikrotik -> proxy -> mikrotik -> internet -> mikrotik -> proxy -> mikrotik -> client

    piss ah Click here to enlarge

  15. #13
    Status
    Offline
    adiputrolds's Avatar
    Forum Guru
    Join Date
    Oct 2008
    Posts
    1,485
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by singkong77 Click here to enlarge
    mas bro ane mau nanya nih, ane bikin mangle + queue tree kaya begini

    spesifikasinya :

    Code:
    mikrotik : 192.168.1.1
    Proxy : 192.168.1.2 <-- sejajar dengan client
    client : 192.168.1.11-192.168.1.20
    RB : 750 , OS :v3.29
    Code:
    Status : Proxy sudah terkoneksi dengan client dan mikrotik
    
    Problem : bandwithnya loss
    DSCP nya juga engga ke HIT

    Click here to enlarge udah hampir 6 bulan cari refrensi ngoprek sana ngoprek sini sampe Click here to enlarge

    udah mentok banget, butuh bantuannya om om Click here to enlarge
    Click here to enlarge Originally Posted by c0nf Click here to enlarge
    bukannya jadinya begini ?

    client -> mikrotik -> proxy -> mikrotik -> internet -> mikrotik -> proxy -> mikrotik -> client

    piss ah Click here to enlarge
    bukankah begini ?

    client -> mikrotik -> proxy -> mikrotik -> internet -> mikrotik -> proxy -> client

    Click here to enlarge

  16. #14
    Status
    Offline
    c0nf's Avatar
    Contributor
    Join Date
    Jul 2007
    Location
    Bandung, Indonesia
    Posts
    1,816
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by electrix_85 Click here to enlarge
    bukankah begini ?

    client -> mikrotik -> proxy -> mikrotik -> internet -> mikrotik -> proxy -> client

    Click here to enlarge
    iya juga ya
    ngapain dari proxy kudu balik ke mikrotik baru ke client
    berarti harus maenan delay pool di squid jadinya
    Last edited by c0nf; 19-11-2010 at 03:55.

  17. #15
    Status
    Offline
    singkong77's Avatar
    Member
    Join Date
    Jan 2010
    Posts
    266
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    oo begitu ya mas.. terima kasih pencerahannya

    kalo ane 1 interface menggunakan 2 ip gimana mas ?


    contohnya

    Code:
    Flags: X - disabled, I - invalid, D - dynamic 
     #   ADDRESS            NETWORK         BROADCAST       INTERFACE              
     0   192.168.4.1/24     192.168.4.0     192.168.4.255   ether5                 
     1   192.168.1.1/24     192.168.1.0     192.168.1.255   warnet-3               
     2   192.168.2.1/24     192.168.2.0     192.168.2.255   ether1              
     3   192.168.5.1/24     192.168.5.0     192.168.5.255   ether2                 
     4   192.168.90.1/24    192.168.90.0    192.168.50.255  warnet-3               
     5 D 125.166.x.x/32 125.166.x.1   0.0.0.0         speedy
    ip client 192.168.1.1

    ip proxy 192.168.90.1

    dengan menggunakan 1 interfaces
    Last edited by singkong77; 19-11-2010 at 09:12.

 

 
Page 1 of 3 123 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Replies: 5
    Last Post: 01-11-2011, 12:11
  2. tanya buat mangle dan queue tree supaya akses ftp loss
    By mahaadit in forum General Networking
    Replies: 9
    Last Post: 04-09-2010, 18:18
  3. Setting Mangle & Queue Mikrotik Dengan Proxy Squid
    By cikruk21 in forum General Networking
    Replies: 1
    Last Post: 10-07-2010, 13:12
  4. HOTSPOT+mangle+pcq+queue tree
    By sartugiono in forum General Networking
    Replies: 11
    Last Post: 19-03-2008, 09:37
  5. script mangle - queue tree di ISP
    By ponywaterhouse in forum Scripting @ Mikrotik
    Replies: 1
    Last Post: 06-08-2007, 04:58

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •