Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Page 1 of 2 12 LastLast
Results 1 to 15 of 16
  1. #1
    Status
    Offline
    fianprasetia's Avatar
    Member
    Join Date
    Jan 2011
    Posts
    111
    Reviews
    Read 0 Reviews
    Downloads
    4
    Uploads
    0
    Feedback Score
    0

    cara ngebatesin receiving data di IDM

    suhu2 di FMI saya mau tanya kira2 mikrotik bisa tidak ngebatesin receiving data nya IDM,, misalkan defaultnya 9 lalu di batesin menjadi 3 or 4 saja,, maksud saya buka di limit content format dowloadnya dengan layer 7 or dll tetapi di batesin receivingnya saja,,
    Click here to enlarge

    sebelumnya terimakasih jika ada yang replay or just read

  2. #2
    Status
    Offline
    zdienos's Avatar
    Forum Guru
    Join Date
    Feb 2010
    Location
    ~/makasar
    Posts
    1,252
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    mungkin bisa seperti ini
    Click here to enlarge
    2: berarti jumlah koneksi yang diizinkan
    32:netmask 32, berarti satu host

    jadi dengan begitu, cuma dua koneksi yang diiznkan pada satu host/IP

    kalo ga bisa, jangan di marahi

    CMMIW

  3. #3
    Status
    Offline
    fianprasetia's Avatar
    Member
    Join Date
    Jan 2011
    Posts
    111
    Reviews
    Read 0 Reviews
    Downloads
    4
    Uploads
    0
    Feedback Score
    0
    @zdienos saya masih bingung sama yang mas maksud,, bang punya rule lengkap nya tidak

  4. #4
    Status
    Offline
    ndasjowo's Avatar
    Member
    Join Date
    Mar 2010
    Location
    Boyolali - Solo - Sragen
    Posts
    267
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Code:
    /ip fi fi add chain=forward connection-state=new src-address-list=ip-client connection-limit=2,32 action=accept;
    /ip fi fi add chain=forward connection-state=new src-address-list=ip-client action=drop;
    Jangan lupa mindahin rule tsb ke atas ... Click here to enlargeClick here to enlarge

  5. #5
    Status
    Offline
    fianprasetia's Avatar
    Member
    Join Date
    Jan 2011
    Posts
    111
    Reviews
    Read 0 Reviews
    Downloads
    4
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by ndasjowo Click here to enlarge
    Code:
    /ip fi fi add chain=forward connection-state=new src-address-list=ip-client connection-limit=2,32 action=accept;
    /ip fi fi add chain=forward connection-state=new src-address-list=ip-client action=drop;
    Jangan lupa mindahin rule tsb ke atas ... Click here to enlargeClick here to enlarge
    mas klo saya tidak salah baca rule yg no 2 itu,, apanya yang di drop coz tidak ada ket paket yang di drop,,ada nya cm ip clinet
    Last edited by fianprasetia; 03-04-2012 at 13:20.

  6. #6
    Status
    Offline
    yosanpro's Avatar
    Co-Admin
    Join Date
    Nov 2007
    Location
    Bantul, Bantul, Yogyakarta
    Posts
    2,548
    Reviews
    Read 0 Reviews
    Downloads
    11
    Uploads
    4
    Feedback Score
    1 (100%)
    Click here to enlarge Originally Posted by fianprasetia Click here to enlarge
    mas klo saya tidak salah baca rule yg no 2 itu,, apanya yang di drop coz tidak ada ket paket yang di drop,,ada nya cm ip clinet
    Yang didrop ya semuanya yang termasuk dalam address list ip-client, kecuali yang sudah di-accept di atasnya (dengan maksimal 2 connection per dst - subnet 32). CMIIW...
    A person's junk is another person's treasure.

  7. #7
    Status
    Offline
    ndasjowo's Avatar
    Member
    Join Date
    Mar 2010
    Location
    Boyolali - Solo - Sragen
    Posts
    267
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    ya emang gan kl di pasang langsung bisa2 gak bisa buka multi tab ...
    coba aja kembanging ama limit nya ... ex : / ip fi fi add chain=forward limit=20,5 connection-state=new .....

  8. #8
    Status
    Offline
    kogoro's Avatar
    Baru Gabung
    Join Date
    Feb 2012
    Posts
    12
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Maaf jika saya salah,apakah rule yang kedua itu bukan malah membuat klien tidak bisa buka website apapun meski itu
    bukan buka multi tab.

  9. #9
    Status
    Offline
    yosanpro's Avatar
    Co-Admin
    Join Date
    Nov 2007
    Location
    Bantul, Bantul, Yogyakarta
    Posts
    2,548
    Reviews
    Read 0 Reviews
    Downloads
    11
    Uploads
    4
    Feedback Score
    1 (100%)
    Click here to enlarge Originally Posted by kogoro Click here to enlarge
    Maaf jika saya salah,apakah rule yang kedua itu bukan malah membuat klien tidak bisa buka website apapun meski itu
    bukan buka multi tab.
    Pernyataan ini betul kalau diatas rule drop tersebut tidak ada rule apapun untuk accept, karena filter rule (dan rule mikrotik lain pada umumnya - kecuali queue tree) bekerja berdasarkan urutan, maka jika packet sudah match rule 1 (yang berarti di-accept) maka tidak akan dicek di rule 2.
    A person's junk is another person's treasure.

  10. The Following User Says Thank You to yosanpro For This Useful Post:


  11. #10
    Status
    Offline
    kogoro's Avatar
    Baru Gabung
    Join Date
    Feb 2012
    Posts
    12
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Terima kasih bung yosanpro atas pembetulannya, maklum lagi belajar juga Click here to enlarge

  12. #11
    Status
    Offline
    fianprasetia's Avatar
    Member
    Join Date
    Jan 2011
    Posts
    111
    Reviews
    Read 0 Reviews
    Downloads
    4
    Uploads
    0
    Feedback Score
    0
    saya sudah coba dengan limit 2 dan netmask 32,,, IDM receiving nya berhasil kelimit,,, yang saya mau tanya,,, rule di limit 2 itu per IP (masing2 ip di jatahkan 2) apa total keseluruhannya IP (semua ip di limit menjadi 2) ya
    Last edited by fianprasetia; 04-04-2012 at 15:11.

  13. #12
    Status
    Offline
    ndasjowo's Avatar
    Member
    Join Date
    Mar 2010
    Location
    Boyolali - Solo - Sragen
    Posts
    267
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    ato mungkin mo coba real shaping bisamake ini ...

  14. #13
    Status
    Offline
    sicopz's Avatar
    Calon Member
    Join Date
    Jan 2011
    Location
    Berau-Kaltim
    Posts
    97
    Reviews
    Read 0 Reviews
    Downloads
    6
    Uploads
    0
    Feedback Score
    0
    Cm mw ngasih contoh...
    silahkan disesuaikan dan kembangkan sesuai selera masing2......______________Click here to enlarge

    PHP Code:
    /ip firewall layer7-protocol
    add comment
    ="" name=EXE regexp="^.*get.+\\.exe.*\$"

    /ip firewall mangle
    add action
    =mark-connection chain=prerouting comment="" disabled=no layer7-protocol=EXE new-connection-mark=download_conn passthrough=yes \
        
    protocol=tcp

    /ip firewall filter
    add action
    =tarpit chain=forward comment="Limit Download Conn" connection-limit=9,32 connection-mark=download_conn disabled=no in-interface=ether3-client protocol=tcp 
    Last edited by sicopz; 05-04-2012 at 11:53.

  15. #14
    Status
    Offline
    crazingdaus's Avatar
    Newbie
    Join Date
    Apr 2012
    Posts
    22
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    karena IDM banyak membuka jalur koneksi baru agan bisa membuat rule menggunakan mark connection

  16. #15
    Status
    Offline
    tyang_dusun's Avatar
    Member Super Senior
    Join Date
    Jun 2008
    Location
    Klaten, Jawa Tengah, Indonesia, Indonesia
    Posts
    521
    Reviews
    Read 0 Reviews
    Downloads
    1
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by sicopz Click here to enlarge
    Cm mw ngasih contoh...
    silahkan disesuaikan dan kembangkan sesuai selera masing2......______________Click here to enlarge

    PHP Code:
    /ip firewall layer7-protocol
    add comment
    ="" name=EXE regexp="^.*get.+\\.exe.*\$"

    /ip firewall mangle
    add action
    =mark-connection chain=prerouting comment="" disabled=no layer7-protocol=EXE new-connection-mark=download_conn passthrough=yes \
        
    protocol=tcp

    /ip firewall filter
    add action
    =tarpit chain=forward comment="Limit Download Conn" connection-limit=9,32 connection-mark=download_conn disabled=no in-interface=ether3-client protocol=tcp 

    (add action=tarpit ) ....tarpit it apa gan ....???

 

 
Page 1 of 2 12 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Bagaimana cara menghapus data cache patch game ?
    By covip in forum Beginner Basics
    Replies: 6
    Last Post: 28-12-2010, 00:27
  2. Replies: 16
    Last Post: 16-07-2010, 02:31
  3. Gmn Cara Ngebatesin IP spy tidak konek internet ???
    By arovah in forum General Networking
    Replies: 6
    Last Post: 04-04-2008, 19:05
  4. Memisahkan Data VCon dengan Data biasa..
    By jay039 in forum General Networking
    Replies: 4
    Last Post: 26-01-2008, 11:24

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •