Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Results 1 to 9 of 9
  1. #1
    Status
    Offline
    _aRye's Avatar
    Newbie
    Join Date
    Jul 2007
    Posts
    35
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    [Tanya]Blok DNS Tertentu

    sorry newbie, bingung taroh dimana pertanyaan gw..

    misal klo kita mau bikin dns 202.xx.xxx.xxx Request Time Out, terus dns 201.xx.xxx.xxx Reply gimana ya ???

    udah ubek2 disini, cm dapet nya info bkin semua DNS request time out

  2. #2
    Status
    Offline
    yosanpro's Avatar
    Co-Admin
    Join Date
    Nov 2007
    Location
    Bantul, Bantul, Yogyakarta
    Posts
    2,548
    Reviews
    Read 0 Reviews
    Downloads
    11
    Uploads
    4
    Feedback Score
    1 (100%)
    Code:
    /ip firewall filter add chain=forward dst-address=202.0.0.0/8 protocol=icmp action=drop
    CMIIW...

    Anyway... itu yang dimaksud apakah DNS server yang pake 202.x.x.x? ato semua IP di 202.x.x.x? kalo DNS server soalnya pakenya UDP/TCP port 53 dan kurang relevan dengan ping yang memakai protocol ICMP. Dari konteksnya sih kayaknya yang dimaksud bukan DNS tapi IP (baca-baca dasarnya dulu kalo belum ngerti bedanya).

    Misalnya yang dimaksud agar user tidak dapat menggunakan DNS server di 202.x.x.x, bisa kasih rule gini:

    Code:
    /ip firewall filter add chain=forward dst-address=202.0.0.0/8 dst-port=53 protocol=udp action=drop
    /ip firewall filter add chain=forward dst-address=202.0.0.0/8 dst-port=53 protocol=tcp action=drop
    p.s. Aku kasih kode cuman berdasar logika, post disini kalo rule tsb tidak jalan atau menginginkan persyaratan laen lagi
    Last edited by yosanpro; 19-09-2008 at 21:06.

  3. The Following User Says Thank You to yosanpro For This Useful Post:


  4. #3
    Status
    Offline
    _aRye's Avatar
    Newbie
    Join Date
    Jul 2007
    Posts
    35
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    wah sebelum di jawab mas yosanpro aku dah dapet Click here to enlarge

    btw trims mas yosanpro

  5. #4
    Status
    Offline
    yosanpro's Avatar
    Co-Admin
    Join Date
    Nov 2007
    Location
    Bantul, Bantul, Yogyakarta
    Posts
    2,548
    Reviews
    Read 0 Reviews
    Downloads
    11
    Uploads
    4
    Feedback Score
    1 (100%)
    Yups... siplah

    Click here to enlarge

  6. #5
    Status
    Offline
    mustikanet's Avatar
    Member Senior
    Join Date
    Oct 2010
    Location
    http://mustikanet.com
    Posts
    445
    Reviews
    Read 0 Reviews
    Downloads
    4
    Uploads
    0
    Feedback Score
    0
    Kenapa Harus di blok Gan...Click here to enlargeClick here to enlarge

  7. #6
    Status
    Offline
    iamspa's Avatar
    Member Super Senior
    Join Date
    Jan 2010
    Location
    MEDAN DONK AH....
    Posts
    685
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by mustikanet Click here to enlarge
    Kenapa Harus di blok Gan...Click here to enlargeClick here to enlarge
    karna mungkin si TS mau ngelok situs tertentu...
    karna gak smua dns menutup suatu situs....
    contoh...

    dns google bisa membuka smua situs termasuk situs bo**p...
    sedangkan situs nawala memblok situs bo**p....

    kenapa gak dibuat aja di client dns nawala?
    jika warnet pasti bisa...
    kalo hotspot gimana hayo...
    apalagi ada user yang rada2 advanced....
    heheheheeh....

    mohon di koreksi bila salah.....

  8. #7
    Status
    Offline
    dhopack's Avatar
    Forum Guru
    Join Date
    Dec 2010
    Location
    KUDUS
    Posts
    1,919
    Reviews
    Read 0 Reviews
    Downloads
    2
    Uploads
    0
    Feedback Score
    0
    @^

    lha kalo hotspot kan bs diset di /ip dhcp-server dhcp-network,
    CMIIW

  9. #8
    Status
    Offline
    iamspa's Avatar
    Member Super Senior
    Join Date
    Jan 2010
    Location
    MEDAN DONK AH....
    Posts
    685
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by dhopack Click here to enlarge
    @^

    lha kalo hotspot kan bs diset di /ip dhcp-server dhcp-network,
    CMIIW
    kalo udah di set seperti itu, apa gak bisa di ganti manual dns nya gan..?

  10. #9
    Status
    Offline
    ipoelnet's Avatar
    Member
    Join Date
    Sep 2009
    Location
    Ngalah
    Posts
    216
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by iamspa Click here to enlarge
    karna mungkin si TS mau ngelok situs tertentu...
    karna gak smua dns menutup suatu situs....
    contoh...

    dns google bisa membuka smua situs termasuk situs bo**p...
    sedangkan situs nawala memblok situs bo**p....

    kenapa gak dibuat aja di client dns nawala?
    jika warnet pasti bisa...
    kalo hotspot gimana hayo...
    apalagi ada user yang rada2 advanced....
    heheheheeh....

    mohon di koreksi bila salah.....
    Pake aja transparent DNS gan di NAT MTnya...

    ---------- Post added at 09:45 ---------- Previous post was at 09:41 ----------


    /ip firewall nat add chain=dstnat action=dst-nat to-addresses=180.131.144.144 to-ports=53 protocol=udp src-address-list=IP-YANG-DI-TRANSPARENT-DNS dst-port=53
    yang saya bold merupakan ip lan hostspot,ip warnet / pokoknya yang mau transparent DNS.

 

 

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. [asK] Mengarahkan user ke situs tertentu
    By joniquest in forum General Networking
    Replies: 8
    Last Post: 23-10-2011, 15:12
  2. Replies: 10
    Last Post: 10-06-2010, 10:47
  3. [ASK] Routing PORT tertentu ...
    By New2MT in forum General Networking
    Replies: 11
    Last Post: 11-08-2008, 01:35
  4. <ask>direct website tertentu</ask>
    By zvtral in forum General Networking
    Replies: 3
    Last Post: 02-08-2008, 19:34
  5. blok jpg pada webpage tertentu saja
    By xamdah in forum General Networking
    Replies: 8
    Last Post: 29-08-2007, 02:00

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •