Nama
: Nur Halimah
|
KONFIGURASI
QUEUE TREE PADA
MIKROTIK
|
Tanggal
: selasa, 23/09/14
|
Kelas
: XII TKJ 2
|
SK/KD
: -
|
|
No.
JobSheet : 5
|
KETERANGAN!!
IP ADDRESS :
1). GATEWAY : 192.168.2.1
2). WAN : 192.168.2.112/24
3). LAN :172.30.1.1/25
I. TUJUAN
1. Konfigurasi Mikrotik Dan DHCP Server
2. Konfigurasi Web Proxy Blocking Situs
3. Konfigurasi Queue Tree
IP ADDRESS :
1). GATEWAY : 192.168.2.1
2). WAN : 192.168.2.112/24
3). LAN :172.30.1.1/25
I. TUJUAN
1. Konfigurasi Mikrotik Dan DHCP Server
2. Konfigurasi Web Proxy Blocking Situs
3. Konfigurasi Queue Tree
II. PENDAHULUAN
Queue
Tree berfungsi untuk
mengimplementasikan fungsi yang lebih komplex dalam limit bandwidth pada
mikrotik dimana penggunaan packet mark nya memiliki fungsi yang lebih baik. Digunakan
untuk membatasi satu arah koneksi saja baik itu download maupun upload. Secara
umum Queue Tree ini tidak terlihat berbeda dari Simple Queue.
III. ALAT DAN BAHAN
- LAPTOP / PC
- VIRTUAL BOX
- ISO MIKROTIK
- ISO WINDOWS XP
- KONEKSI INTERNET ( MODEM / WIFI )
IV. LANGKAH KERJA
1). KONFIGURASI GATEWAY INTERNET :
1. Memberi nama interface pr
interface set ether1 name=WAN
interface set ether2 name=LAN
interface set ether2 name=LAN
2. Memberi ip address pr
ip address add address=192.168.2.112/24
interface=WAN
ip address add address=172.30.1.1/25 interface=LAN
ip address add address=172.30.1.1/25 interface=LAN
3. Memberi ip route pr
ip route add gateway=192.168.2.1
4. Memberi ip dns pr
ip dns set primary-dns=8.8.8.8
ip dns set secondary-dns=8.8.4.4
ip dns set allow-remote-requests=yes
ip dns set secondary-dns=8.8.4.4
ip dns set allow-remote-requests=yes
5. Memberi ip firewall nat pr
ip firewall nat add
chain=srcnat out-interface=WAN src- address=172.30.1.1/25 action=masquerade
2). KONFIGURASI DHCP :
1. ip pool pr
ip pool add name=dhcp_pool1
ranges=172.30.1.100-172.30.1.150
2. ip dhcp-server network pr
ip dhcp-server network add
address=172.30.1.0/25 gateway=172.30.1.1 dns-server=8.8.8.8,8.8.4.4
3. ip dhcp-server pr
ip dhcp-server add
name=dhcp_lan disabled=no interface=LAN address-pool=dhcp_pool
4. Lalu masuk ke Windows XP (client) OBTAIN kan Ip addressnya!!
5. Dan Windows XP (client) di REPAIRE!
3). KONFIGURASI PROXY :
1. KETIK :
# ip proxy set enabled=yes
# ip proxy set port=3128
# ip proxy set cache-administrator=pristi@albahri.sch.id
# ip proxy set cache-on-disk=yes
# ip proxy set always-from-cache=yes
# ip proxy set port=3128
# ip proxy set cache-administrator=pristi@albahri.sch.id
# ip proxy set cache-on-disk=yes
# ip proxy set always-from-cache=yes
2. KETIK :
# ip firewall nat add chain=dstnat
protocol=tcp src-address=172.30.1.1/25 dst-port=80 action=reidirect
to-ports=3128
# ip firewall nat add chain=dstnat
protocol=tcp src-address=172.30.1.1/25 dst-port=8080 action=reidirect
to-ports=3128
# ip firewall nat add chain=dstnat
protocol=tcp src-address=172.30.1.1/25 dst-port=3128 action=reidirect
to-ports=3128
4 ). KONFIGURASI WEBPROXY BLOCKING SITUS
# ip proxy access add
src-address=172.30.1.1/25 dst-host=www.detik.com action=deny
5). KONFIGURAI QUEUE TREE
Konfigurasi
Queue type, ketik :
#/queue type add name=PCQ-UPLOAD
kind=pcq pcq-classifier=src-address pcq-rate=0
#/queue type add name=PCQ-DOWNLOAD
kind=pcq pcq-classifier=dst-address pcq-rate=0
Marking Packet Terlimit, ketik :
#/ip firewall mangle add
chain=prerouting src-address=172.30.1.0/25 in-interface=LAN content=.zip \
action=mark-connection new-connection-mark=limited-siswa_CONN passthrough=yes
#/ip firewall mangle add
chain=prerouting src-address=172.30.1.0/25 in-interface=LAN content=.flv \
action=mark-connection new-connection-mark=limited-siswa_CONN passthrough=yes
#/ip firewall mangle add
chain=prerouting in-interface=LAN connection-mark=limited-siswa_CONN \
action=mark-packet new-packet-mark=limited-siswa_UPLOAD passthrough=no
#/ip firewall mangle add
chain=prerouting in-interface=LAN connection-mark=limited-siswa_CONN \
action=mark-packet new-packet-mark=limited-siswa_DOWNLOAD passthrough=no
Marking packet browsing dan upload biasa, ketik ;
#/ip firewall mangle add
chain=prerouting src-address=172.30.1.0/25 in-interface=LAN \
action=mark-connection new-connection-mark=all-siswa_CONN passthrough=yes
#/ip firewall mangle add
chain=prerouting in-interface=LAN connection-mark=all-siswa_CONN \
action=mark-packet new-packet-mark=all-siswa_UPLOAD passthrough=no
#/ip firewall mangle add
chain=prerouting in-interface=LAN connection-mark=all-siswa_CONN \
action=mark-packet new-packet-mark=all-siswa_DOWNLOAD passthrough=no
Queue Tree Parent, ketik :
#/queue tree add
name=all-siswa-DOWNLOAD parent=LAN max-limit=512k
#/queue tree add
name=all-siswa-UPLOAD parent=WAN max-limit=512k
Queue Treenya, ketik :
#/queue tree add
name=limited-siswa_DOWNLOAD packet-mark=limited-siswa_DOWNLOAD
parent=all-siswa-DOWNLOAD \ queue=PCQ-DOWNLOAD max-limit=32k limit-at=16k
#/queue tree add
name=normal-siswa_DOWNLOAD packet-mark=all-siswa_DOWNLOAD
parent=all-siswa-DOWNLOAD \ queue=PCQ-DOWNLOAD max-limit=384k limit-at=64k
#/queue tree add
name=limited-siswa_UPLOAD packet-mark=limited-siswa_UPLOAD
parent=all-siswa-UPLOAD \ queue=PCQ-UPLOAD max-limit=32k limit-at=16k
#/queue tree add
name=normal-siswa_UPLOAD packet-mark=all-siswa_UPLOAD parent=all-siswa-UPLOAD \
queue=PCQ-UPLOAD max-limit=384k limit-at=64k
V. HASIL KERJA
GATEWAY INTERNET :
- PING ke : 192.168.1.20
- PING ke : 172.30.1.1
- PING ke : 8.8.8.8
Jika hasilnya Reply semua berarti konfigurasi
berhasil !!
DHCP :
Komputer Client akan mendapatkan
nomor IP secara otomatis, kalau sudah dapat berarti DHCP server berhasil.
WEBPROXY BLOCKING SITUS :
Buka
situs yg sudah kita blok www.detik.com diKomputer client
Windows XP,
jika
sudah ERROR berarti sukses!
QUEUETREE
Buka Queue Treenya di Winbox, Kalau sudah terisi berarti konfigurasi ini berhasil!
VI. KESIMPULAN
1. Dalam Konfigurasi
DHCP , WEBPROXY BLOCKING & QUEUE TREE kita harus selalu teliti
dengan apa yang harus kita konfigurasikan !
Blogger Comment
Facebook Comment