Follow us on...
Follow us on G+ Follow us on Twitter Follow us on Facebook Watch us on YouTube
Register
Page 4 of 5 FirstFirst ... 2345 LastLast
Results 46 to 60 of 67
  1. #46
    Status
    Offline
    cooling's Avatar
    Member
    Join Date
    Dec 2007
    Posts
    209
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by nux Click here to enlarge
    skripnya tinggal kopi paste di terminal (kalo pake winbox), tp edit dulu disesuiakan dengan ip yg mo diblok. misal:
    ip yg mo diblok 3 biji (192.168.0.1-192.168.0.3), jadi skripnya:

    :for e from 1 to 3 do={ /ip firewall filter add chain=input src-address=(192.168.0. . $e) action=drop }


    note: $e gak usah diganti, biarkan seperti itu, kan utk e udah didefinisikan di depan (for e from 1 to 3 do), yg perlu diedit yaitu ip mana aja yg mo diblok, contoh di sini adl antara 1 ampe 3, dan sesuaikan ip address anda, contoh disini adl 192.168.0.1-192.168.0.3 maka di skripnya 192.168.0. . $e
    Ane coba ini di mikrotik 3.16 ko kngak bisa yang di terminalnya , ada yang bisa bantu ndak yah Click here to enlarge selalu keluar value of range expects range of ip addresses
    Last edited by cooling; 18-12-2008 at 11:24.

  2. #47
    Status
    Offline
    spymedan's Avatar
    Moderator
    Join Date
    Oct 2007
    Location
    Medan Metropolitan
    Posts
    2,821
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0

    Blok IP Client di Mikrotik

    Saya juga punya masalah mengenai Blok ip client,
    mikrotik saya menggunakan transparan webproxy di mikrotik , jadi kalo browsing harus melalui transparan webproxy port : 3128, gimana cara nge-blok client di firewall mikrotik biar tidak bisa browsing dan cuman bisa Yahoo Messenger (YM) aja ?

    Speedy (brigde) >>> Mikrotik >>> Client
    192.168.1.1 192.168.53.254 192.168.53.1-100

    Ip Client yg ingin saya blok browsingnya dari IP 192.168.53.10 - 192.168.53.20 tetapi bisa YM-an ?

    saya sudah coba cara diatas tapi tidak berhasil apabila mengaktifkan transparan proxy saya, tapi kalo tidak memakai transparan proxy bisa digunakan cara di atas ...mohon pencerahannya kepada master-master mikrotik ? Click here to enlargeClick here to enlarge

  3. #48
    Status
    Offline
    rahwana's Avatar
    Forum Guru
    Join Date
    Nov 2007
    Location
    Sidoarjo, Jawa Timur, Indonesia, Indonesia
    Posts
    1,337
    Reviews
    Read 0 Reviews
    Downloads
    2
    Uploads
    0
    Feedback Score
    0
    Di proxy-nya ditambahkan saja allow dan deny untuk kelompok IP yang boleh dan yang tidak boleh.

  4. #49
    Status
    Offline
    spymedan's Avatar
    Moderator
    Join Date
    Oct 2007
    Location
    Medan Metropolitan
    Posts
    2,821
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by rahwana Click here to enlarge
    Di proxy-nya ditambahkan saja allow dan deny untuk kelompok IP yang boleh dan yang tidak boleh.
    Boleh minta rule-nya gak om rahwana ? biar makin jelas konfigurasinya ? boleh yaa ?

  5. #50
    Status
    Offline
    qzroeh's Avatar
    Baru Gabung
    Join Date
    Mar 2008
    Posts
    15
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by cooling Click here to enlarge
    Ane coba ini di mikrotik 3.16 ko kngak bisa yang di terminalnya , ada yang bisa bantu ndak yah Click here to enlarge selalu keluar value of range expects range of ip addresses
    :for e from=1 to=3 do={ /ip firewall filter add chain=input src-address="192.168.0.$e" action=drop }

    tanda dalam kurung diganti tanda petik
    Last edited by qzroeh; 03-04-2009 at 04:10.

  6. #51
    Status
    Offline
    d0n juant's Avatar
    Baru Gabung
    Join Date
    Apr 2009
    Posts
    15
    Reviews
    Read 0 Reviews
    Downloads
    1
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by nux Click here to enlarge
    misal sisa ip yg gak kepake adl 192.168.1.51 - 192.168.1.255, script nya berarti..
    drop input:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=input src-address=(192.168.1. . $e) action=drop }
    drop forward:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=forward src-address=(192.168.1. . $e) action=drop }
    drop output:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=output src-address=(192.168.1. . $e) action=drop }
    coba test bro...Click here to enlarge
    thanks broo Click here to enlarge

  7. #52
    Status
    Offline
    Joelz's Avatar
    Baru Gabung
    Join Date
    Feb 2010
    Posts
    1
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    to bro nux
    itu cara blok ip dalam script yang ente posting, ketiknya dalam mode dos ya?
    setelah ada tulisan
    admin@mikrotik:

    maklum newbie banget, tapi pengen banget bisa belajar mikrotik, thank to you
    tuk pencerahaannyaClick here to enlarge

  8. #53
    Status
    Offline
    rarenakal's Avatar
    Newbie
    Join Date
    Jul 2009
    Posts
    24
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    wew....thank's bgt....sangat membantu....

  9. #54
    Status
    Offline
    iyan_cowok's Avatar
    Baru Gabung
    Join Date
    Sep 2008
    Location
    Mojosari - Mojokerto
    Posts
    19
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Setelah saya pelajari dari master2 diatas untuk mikrotik v3.20
    scripnya sbb:

    misal sisa ip yg gak kepake adl 192.168.1.11 - 192.168.1.19
    script nya berarti..

    drop input:
    :for e from=11 to=19 do={ /ip firewall filter add chain=input src-address="192.168.0.$e" action=drop }

    drop forward:
    :for e from=11 to=19 do={ /ip firewall filter add chain=forward src-address="192.168.0.$e" action=drop }

    drop output:
    :for e from=11 to=19 do={ /ip firewall filter add chain=output src-address="192.168.0.$e" action=drop }

  10. The Following User Says Thank You to iyan_cowok For This Useful Post:


  11. #55
    Status
    Offline
    nazha's Avatar
    Baru Gabung
    Join Date
    Jan 2010
    Posts
    8
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by nux Click here to enlarge
    misal sisa ip yg gak kepake adl 192.168.1.51 - 192.168.1.255, script nya berarti..
    drop input:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=input src-address=(192.168.1. . $e) action=drop }
    drop forward:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=forward src-address=(192.168.1. . $e) action=drop }
    drop output:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=output src-address=(192.168.1. . $e) action=drop }
    coba test bro...Click here to enlarge
    sep.. skripnya berhasil tapi koq di statusnya filter rules winbox dropnya malah alamat 0.0.0.51-0.0.0.255 padahalkan src-addresnya 192.168.1.? Click here to enlarge mohon percerahanya juragan??

  12. #56
    Status
    Offline
    destruxx's Avatar
    Newbie
    Join Date
    May 2009
    Posts
    26
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    bos mw tanya donk saya kan udah block beberapa client mengunakan ip address knp semua kena gak bisa connect yaaa Click here to enlarge

  13. #57
    Status
    Offline
    Denie's Avatar
    Baru Gabung
    Join Date
    May 2011
    Posts
    4
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by [a] Click here to enlarge
    ada beberapa langkah bro menurut gua...

    - ARP di set=reply-only, jadi klo ada client gonta ganti IP secara manual ga akan bisa...

    - Bikin entry ARP static yang berisikan Mac Addr PC A, dengan IP yang diassign untuk PC A, jadi klo PC A ganti IP, ga akan bisa connect (ping aja ga bisa)

    - di DHCP Server, set :

    1. Address Pool, gunakan Static Only
    2. di Leases, bikin rule yang akan memberi IP Static ke PC A, masukkan juga Mac Address PC A disitu. Secara otomatis, rule tersebut akan menjadi Static.

    Coba kaya gitu dulu deh yahh....

    Klo ada yg salah2 mohon dimaafkan, namanya juga masih belajar...

    Mudah2an berhasil.....Click here to enlarge
    Mas tanya mohon bantuanya!!
    itu berarti semua user IP nya static yah?? harus di setting manual. (atelah sya coba ad user yg tdk diassign tdk bisa login hostpot/internet)
    nah, sya ingin yg static hnya bbrapa komputer saja. selain itu yg pake laptop dapet Dinamic DHCP... ??!!

  14. #58
    Status
    Offline
    yayangnet's Avatar
    Baru Gabung
    Join Date
    May 2011
    Posts
    6
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by nux Click here to enlarge
    skripnya tinggal kopi paste di terminal (kalo pake winbox), tp edit dulu disesuiakan dengan ip yg mo diblok. misal:
    ip yg mo diblok 3 biji (192.168.0.1-192.168.0.3), jadi skripnya:

    :for e from 1 to 3 do={ /ip firewall filter add chain=input src-address=(192.168.0. . $e) action=drop }


    note: $e gak usah diganti, biarkan seperti itu, kan utk e udah didefinisikan di depan (for e from 1 to 3 do), yg perlu diedit yaitu ip mana aja yg mo diblok, contoh di sini adl antara 1 ampe 3, dan sesuaikan ip address anda, contoh disini adl 192.168.0.1-192.168.0.3 maka di skripnya 192.168.0. . $e
    tq banget gan (belajar lebih)
    Click here to enlarge

  15. #59
    Status
    Offline
    gluetea's Avatar
    Baru Gabung
    Join Date
    Dec 2010
    Posts
    5
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    Click here to enlarge Originally Posted by nux Click here to enlarge
    misal sisa ip yg gak kepake adl 192.168.1.51 - 192.168.1.255, script nya berarti..
    drop input:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=input src-address=(192.168.1. . $e) action=drop }
    drop forward:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=forward src-address=(192.168.1. . $e) action=drop }
    drop output:
    Code:
    :for e from 51 to 255 do={ /ip firewall filter add chain=output src-address=(192.168.1. . $e) action=drop }
    coba test bro...Click here to enlarge
    Pada semua chain di drop yah..input, output, foward. Click here to enlarge
    Kirain cukup chain foward aja.

  16. #60
    Status
    Offline
    kanjeng_rizki's Avatar
    Baru Gabung
    Join Date
    Nov 2009
    Location
    Depok, Indonesia
    Posts
    7
    Reviews
    Read 0 Reviews
    Downloads
    0
    Uploads
    0
    Feedback Score
    0
    asyik asyik..
    dapet ilmu baru lg Click here to enlarge

 

 
Page 4 of 5 FirstFirst ... 2345 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •