Load Balancing di Mikrotik v2.9.27

del.icio.us TRACK TOP
By hqki. Filed in Mikrotik-Router.
4 comments filed

Seandainya kita punya ip seperti ini, nanti ip bisa di seting sesuai ISP masing2,

[hakiki@ketelebece] > ip address print
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; ISP1
202.111.111.10/24 192.168.55.0 192.168.55.255 isp1
1 ;;; ISP2
61.222.222.10/24 192.168.30.0 192.168.30.255 isp2
;;; LOKAL
2 D 192.168.99.1/24 61.247.13.0 61.247.13.255 lokal

Nah ini setingannya,

/ip firewall mangle print
add chain=prerouting in-interface=lan connection-state=new nth=1,1,0
action=mark-connection new-connection-mark=odd passthrough=yes

add chain=prerouting in-interface=lan connection-mark=odd action=mark-routing
new-routing-mark=odd passthrough=no

add chain=prerouting in-interface=lan connection-state=new nth=1,1,1
action=mark-connection new-connection-mark=even passthrough=yes

add chain=prerouting in-interface=lan connection-mark=even action=mark-routing
new-routing-mark=even passthrough=no

/ip firewall nat print
add chain=srcnat src-address=192.168.30.0/24 action=masquerade

/ip route
add dst-address=0.0.0.0/0 gateway=202.111.111.1
distance=1 routing-mark=odd disabled=no

add dst-address=0.0.0.0/0 gateway=202.111.111.1
distance=0 disabled=no

add dst-address=0.0.0.0/0 gateway=61.222.222.1
distance=2 routing-mark=even disabled=no

Filter Rules / Firewall untuk virus di Mikrotik

del.icio.us TRACK TOP
By hqki. Filed in Mikrotik-Router.
10 comments filed

/ip firewall filter

add chain=virus protocol=udp action=drop dst-port=1 comment=”Sockets des Troie”

add chain=virus protocol=tcp action=drop dst-port=2 comment=”Death”

add chain=virus protocol=tcp action=drop dst-port=20 comment=”Senna Spy FTP server”

add chain=virus protocol=tcp action=drop dst-port=21 comment=”Back Construction, Blade Runner, Cattivik FTP Server, CC Invader, Dark FTP, Doly Trojan, Fore, Invisible FTP, Juggernaut 42, Larva, MotIv FTP, Net Administrator, Ramen, Senna Spy FTP server, The Flu, Traitor 21, WebEx, WinCrash”

add chain=virus protocol=tcp action=drop dst-port=22 comment=”Shaft”

add chain=virus protocol=tcp action=drop dst-port=23 comment=”Fire HacKer, Tiny Telnet Server TTS, Truva Atl”

add chain=virus protocol=tcp action=drop dst-port=25 comment=”Ajan, Antigen, Barok, Email Password Sender EPS, EPS II, Gip, Gris, Happy99, Hpteam mail, Hybris, I love you, Kuang2, Magic Horse, MBT Mail Bombing Trojan, Moscow Email trojan, Naebi, NewApt worm, ProMail trojan, Shtirlitz, Stealth, Tapiras, Terminator, WinPC, WinSpy”

add chain=virus protocol=tcp action=drop dst-port=30 comment=”Agent 40421″

add chain=virus protocol=tcp action=drop dst-port=31 comment=”Agent 31, Hackers Paradise, Masters Paradise”

add chain=virus protocol=tcp action=drop dst-port=41 comment=”Deep Throat, Foreplay”

add chain=virus protocol=tcp action=drop dst-port=48 comment=”DRAT”

add chain=virus protocol=tcp action=drop dst-port=50 comment=”DRAT”

add chain=virus protocol=tcp action=drop dst-port=58 comment=”DMSetup”

add chain=virus protocol=tcp action=drop dst-port=59 comment=”DMSetup”

add chain=virus protocol=tcp action=drop dst-port=79 comment=”CDK, Firehotcker”

add chain=virus protocol=tcp action=drop dst-port=80 comment=”711 trojan, Seven Eleven, AckCmd, Back End, Back Orifice 2000 Plug-Ins, Cafeini, CGI Backdoor, Executor, God Message, God Message Creator, Hooker, IISworm, MTX, NCX, Reverse WWW Tunnel Backdoor, RingZero, Seeker, WAN Remote, Web Server CT, WebDownloader”

add chain=virus protocol=tcp action=drop dst-port=81 comment=”RemoConChubo”

add chain=virus protocol=tcp action=drop dst-port=99 comment=”Hidden Port, NCX”

add chain=virus protocol=tcp action=drop dst-port=110 comment=”ProMail trojan”

add chain=virus protocol=tcp action=drop dst-port=113 comment=”Invisible Identd Deamon, Kazimas”

add chain=virus protocol=tcp action=drop dst-port=119 comment=”Happy99″

add chain=virus protocol=tcp action=drop dst-port=121 comment=”Attack Bot, God Message, JammerKillah”

add chain=virus protocol=tcp action=drop dst-port=123 comment=”Net Controller”

add chain=virus protocol=tcp action=drop dst-port=133 comment=”Farnaz”

add chain=virus protocol=tcp action=drop dst-port=135-139 comment=”Blaster worm”

add chain=virus protocol=udp action=drop dst-port=135-139 comment=”messenger worm”

add chain=virus protocol=tcp action=drop dst-port=142 comment=”NetTaxi”

add chain=virus protocol=tcp action=drop dst-port=146 comment=”Infector”

add chain=virus protocol=udp action=drop dst-port=146 comment=”Infector”

add chain=virus protocol=tcp action=drop dst-port=170 comment=”A-trojan”

add chain=virus protocol=tcp action=drop dst-port=334 comment=”Backage”

add chain=virus protocol=tcp action=drop dst-port=411 comment=”Backage”

add chain=virus protocol=tcp action=drop dst-port=420 comment=”Breach, Incognito”

add chain=virus protocol=tcp action=drop dst-port=421 comment=”TCP Wrappers trojan”

add chain=virus protocol=tcp action=drop dst-port=445 comment=”Blaster worm”

add chain=virus protocol=tcp action=drop dst-port=455 comment=”Fatal Connections”

add chain=virus protocol=tcp action=drop dst-port=456 comment=”Hackers Paradise”

add chain=virus protocol=tcp action=drop dst-port=513 comment=”Grlogin”

add chain=virus protocol=tcp action=drop dst-port=514 comment=”RPC Backdoor”

add chain=virus protocol=tcp action=drop dst-port=531 comment=”Net666, Rasmin”

add chain=virus protocol=tcp action=drop dst-port=555 comment=”711 trojan, Seven Eleven, Ini-Killer, Net Administrator, Phase Zero, Phase-0, Stealth Spy”

add chain=virus protocol=tcp action=drop dst-port=605 comment=”Secret Service”

add chain=virus protocol=tcp action=drop dst-port=666 comment=”Attack FTP, Back Construction, BLA trojan, Cain & Abel, NokNok, Satans Back Door SBD, ServU, Shadow Phyre, th3r1pp3rz Therippers”

add chain=virus protocol=tcp action=drop dst-port=667 comment=”SniperNet”

add chain=virus protocol=tcp action=drop dst-port=669 comment=”DP trojan”

add chain=virus protocol=tcp action=drop dst-port=692 comment=”GayOL”

add chain=virus protocol=tcp action=drop dst-port=777 comment=”AimSpy, Undetected”

add chain=virus protocol=tcp action=drop dst-port=808 comment=”WinHole”

add chain=virus protocol=tcp action=drop dst-port=911 comment=”Dark Shadow”

add chain=virus protocol=tcp action=drop dst-port=999 comment=”Deep Throat, Foreplay, WinSatan”

add chain=virus protocol=tcp action=drop dst-port=1000 comment=”Der Spaeher, Direct Connection”

add chain=virus protocol=tcp action=drop dst-port=1001 comment=”Der Spaeher, Le Guardien, Silencer, WebEx”

add chain=virus protocol=tcp action=drop dst-port=1010-1016 comment=”Doly Trojan”

add chain=virus protocol=tcp action=drop dst-port=1020 comment=”Vampire”

add chain=virus protocol=tcp action=drop dst-port=1024 comment=”Jade, Latinus, NetSpy”

add chain=virus protocol=tcp action=drop dst-port=1025 comment=”Remote Storm”

add chain=virus protocol=udp action=drop dst-port=1025 comment=”Remote Storm”

add chain=virus protocol=tcp action=drop dst-port=1035 comment=”Multidropper”

add chain=virus protocol=tcp action=drop dst-port=1042 comment=”BLA trojan”

add chain=virus protocol=tcp action=drop dst-port=1045 comment=”Rasmin”

add chain=virus protocol=tcp action=drop dst-port=1049 comment=”sbin initd”

add chain=virus protocol=tcp action=drop dst-port=1050 comment=”MiniCommand”

add chain=virus protocol=tcp action=drop dst-port=1053 comment=”The Thief”

add chain=virus protocol=tcp action=drop dst-port=1054 comment=”AckCmd”

add chain=virus protocol=tcp action=drop dst-port=1080-1083 comment=”WinHole”

add chain=virus protocol=tcp action=drop dst-port=1090 comment=”Xtreme”

add chain=virus protocol=tcp action=drop dst-port=1095-1098 comment=”Remote Administration Tool RAT”

add chain=virus protocol=tcp action=drop dst-port=1099 comment=”Blood Fest Evolution, Remote Administration Tool RAT”

add chain=virus protocol=tcp action=drop dst-port=1150-1151 comment=”Orion”

add chain=virus protocol=tcp action=drop dst-port=1170 comment=”Psyber Stream Server PSS, Streaming Audio Server, Voice”

add chain=virus protocol=udp action=drop dst-port=1200-1201 comment=”NoBackO”

add chain=virus protocol=tcp action=drop dst-port=1207 comment=”SoftWAR”

add chain=virus protocol=tcp action=drop dst-port=1208 comment=”Infector”

add chain=virus protocol=tcp action=drop dst-port=1212 comment=”Kaos”

add chain=virus protocol=tcp action=drop dst-port=1234 comment=”SubSeven Java client, Ultors Trojan”

add chain=virus protocol=tcp action=drop dst-port=1243 comment=”BackDoor-G, SubSeven, SubSeven Apocalypse, Tiles”

add chain=virus protocol=tcp action=drop dst-port=1245 comment=”VooDoo Doll”

add chain=virus protocol=tcp action=drop dst-port=1255 comment=”Scarab”

add chain=virus protocol=tcp action=drop dst-port=1256 comment=”Project nEXT”

add chain=virus protocol=tcp action=drop dst-port=1269 comment=”Matrix”

add chain=virus protocol=tcp action=drop dst-port=1272 comment=”The Matrix”

add chain=virus protocol=tcp action=drop dst-port=1313 comment=”NETrojan”

add chain=virus protocol=tcp action=drop dst-port=1338 comment=”Millenium Worm”

add chain=virus protocol=tcp action=drop dst-port=1349 comment=”Bo dll”

add chain=virus protocol=tcp action=drop dst-port=1394 comment=”GoFriller, Backdoor G-1″

add chain=virus protocol=tcp action=drop dst-port=1441 comment=”Remote Storm”

add chain=virus protocol=tcp action=drop dst-port=1492 comment=”FTP99CMP”

add chain=virus protocol=tcp action=drop dst-port=1524 comment=”Trinoo”

add chain=virus protocol=tcp action=drop dst-port=1568 comment=”Remote Hack”

add chain=virus protocol=tcp action=drop dst-port=1600 comment=”Direct Connection, Shivka-Burka”

add chain=virus protocol=tcp action=drop dst-port=1703 comment=”Exploiter”

add chain=virus protocol=tcp action=drop dst-port=1777 comment=”Scarab”

add chain=virus protocol=tcp action=drop dst-port=1807 comment=”SpySender”

add chain=virus protocol=tcp action=drop dst-port=1966 comment=”Fake FTP”

add chain=virus protocol=tcp action=drop dst-port=1967 comment=”WM FTP Server”

add chain=virus protocol=tcp action=drop dst-port=1969 comment=”OpC BO”

add chain=virus protocol=tcp action=drop dst-port=1981 comment=”Bowl, Shockrave”

add chain=virus protocol=tcp action=drop dst-port=1999 comment=”Back Door, SubSeven, TransScout”

add chain=virus protocol=tcp action=drop dst-port=2000 comment=”Der Spaeher, Insane Network, Last 2000, Remote Explorer 2000, Senna Spy Trojan Generator”

add chain=virus protocol=tcp action=drop dst-port=2001 comment=”Der Spaeher, Trojan Cow”

add chain=virus protocol=tcp action=drop dst-port=2023 comment=”Ripper Pro”

add chain=virus protocol=tcp action=drop dst-port=2080 comment=”WinHole”

add chain=virus protocol=tcp action=drop dst-port=2115 comment=”Bugs”

add chain=virus protocol=udp action=drop dst-port=2130 comment=”Mini Backlash”

add chain=virus protocol=tcp action=drop dst-port=2140 comment=”The Invasor”

add chain=virus protocol=udp action=drop dst-port=2140 comment=”Deep Throat, Foreplay”

add chain=virus protocol=tcp action=drop dst-port=2155 comment=”Illusion Mailer”

add chain=virus protocol=tcp action=drop dst-port=2255 comment=”Nirvana”

add chain=virus protocol=tcp action=drop dst-port=2283 comment=”Hvl RAT”

add chain=virus protocol=tcp action=drop dst-port=2300 comment=”Xplorer”

add chain=virus protocol=tcp action=drop dst-port=2311 comment=”Studio 54″

add chain=virus protocol=tcp action=drop dst-port=2330-2339 comment=”Contact”

add chain=virus protocol=udp action=drop dst-port=2339 comment=”Voice Spy”

add chain=virus protocol=tcp action=drop dst-port=2345 comment=”Doly Trojan”

add chain=virus protocol=tcp action=drop dst-port=2565 comment=”Striker trojan”

add chain=virus protocol=tcp action=drop dst-port=2583 comment=”WinCrash”

add chain=virus protocol=tcp action=drop dst-port=2600 comment=”Digital RootBeer”

add chain=virus protocol=tcp action=drop dst-port=2716 comment=”The Prayer”

add chain=virus protocol=tcp action=drop dst-port=2773-2774 comment=”SubSeven, SubSeven 2.1 Gold”

add chain=virus protocol=tcp action=drop dst-port=2801 comment=”Phineas Phucker”

add chain=virus protocol=udp action=drop dst-port=2989 comment=”Remote Administration Tool RAT”

add chain=virus protocol=tcp action=drop dst-port=3000 comment=”Remote Shut”

add chain=virus protocol=tcp action=drop dst-port=3024 comment=”WinCrash”

add chain=virus protocol=tcp action=drop dst-port=3031 comment=”Microspy”

add chain=virus protocol=tcp action=drop dst-port=3128 comment=”Reverse WWW Tunnel Backdoor, RingZero”

add chain=virus protocol=tcp action=drop dst-port=3129 comment=”Masters Paradise”

add chain=virus protocol=tcp action=drop dst-port=3150 comment=”The Invasor”

add chain=virus protocol=udp action=drop dst-port=3150 comment=”Deep Throat, Foreplay, Mini Backlash”

add chain=virus protocol=tcp action=drop dst-port=3456 comment=”Terror trojan”

add chain=virus protocol=tcp action=drop dst-port=3459 comment=”Eclipse 2000, Sanctuary”

add chain=virus protocol=tcp action=drop dst-port=3700 comment=”Portal of Doom”

add chain=virus protocol=tcp action=drop dst-port=3777 comment=”PsychWard”

add chain=virus protocol=tcp action=drop dst-port=3791-3801 comment=”Total Solar Eclypse”

add chain=virus protocol=tcp action=drop dst-port=4000 comment=”SkyDance”

add chain=virus protocol=tcp action=drop dst-port=4092 comment=”WinCrash”

add chain=virus protocol=tcp action=drop dst-port=4242 comment=”Virtual Hacking Machine VHM”

add chain=virus protocol=tcp action=drop dst-port=4321 comment=”BoBo”

add chain=virus protocol=tcp action=drop dst-port=4444 comment=”Prosiak, Swift Remote”

add chain=virus protocol=tcp action=drop dst-port=4567 comment=”File Nail”

add chain=virus protocol=tcp action=drop dst-port=4590 comment=”ICQ Trojan”

add chain=virus protocol=tcp action=drop dst-port=4950 comment=”ICQ Trogen Lm”

add chain=virus protocol=tcp action=drop dst-port=5000 comment=”Back Door Setup, Blazer5, Bubbel, ICKiller, Ra1d, Sockets des Troie”

add chain=virus protocol=tcp action=drop dst-port=5001 comment=”Back Door Setup, Sockets des Troie”

add chain=virus protocol=tcp action=drop dst-port=5002 comment=”cd00r, Shaft”

add chain=virus protocol=tcp action=drop dst-port=5010 comment=”Solo”

add chain=virus protocol=tcp action=drop dst-port=5011 comment=”One of the Last Trojans OOTLT, One of the Last Trojans OOTLT, modified”

add chain=virus protocol=tcp action=drop dst-port=5025 comment=”WM Remote KeyLogger”

add chain=virus protocol=tcp action=drop dst-port=5031-5032 comment=”Net Metropolitan”

add chain=virus protocol=tcp action=drop dst-port=5321 comment=”Firehotcker”

add chain=virus protocol=tcp action=drop dst-port=5333 comment=”Backage, NetDemon”

add chain=virus protocol=tcp action=drop dst-port=5343 comment=”wCrat WC Remote Administration Tool”

add chain=virus protocol=tcp action=drop dst-port=5400-5402 comment=”Back Construction, Blade Runner”

add chain=virus protocol=tcp action=drop dst-port=5512 comment=”Illusion Mailer”

add chain=virus protocol=tcp action=drop dst-port=5534 comment=”The Flu”

add chain=virus protocol=tcp action=drop dst-port=5550 comment=”Xtcp”

add chain=virus protocol=tcp action=drop dst-port=5555 comment=”ServeMe”

add chain=virus protocol=tcp action=drop dst-port=5556-5557 comment=”BO Facil”

add chain=virus protocol=tcp action=drop dst-port=5569 comment=”Robo-Hack”

add chain=virus protocol=tcp action=drop dst-port=5637-5638 comment=”PC Crasher”

add chain=virus protocol=tcp action=drop dst-port=5742 comment=”WinCrash”

add chain=virus protocol=tcp action=drop dst-port=5760 comment=”Portmap Remote Root Linux Exploit”

add chain=virus protocol=tcp action=drop dst-port=5880-5889 comment=”Y3K RAT”

add chain=virus protocol=tcp action=drop dst-port=6000 comment=”The Thing”

add chain=virus protocol=tcp action=drop dst-port=6006 comment=”Bad Blood”

add chain=virus protocol=tcp action=drop dst-port=6272 comment=”Secret Service”

add chain=virus protocol=tcp action=drop dst-port=6400 comment=”The Thing”

add chain=virus protocol=tcp action=drop dst-port=6661 comment=”TEMan, Weia-Meia”

add chain=virus protocol=tcp action=drop dst-port=6666 comment=”Dark Connection Inside, NetBus worm”

add chain=virus protocol=tcp action=drop dst-port=6667 comment=”Dark FTP, ScheduleAgent, SubSeven, Subseven 2.1.4 DefCon 8, Trinity, WinSatan”

add chain=virus protocol=tcp action=drop dst-port=6669 comment=”Host Control, Vampire”

add chain=virus protocol=tcp action=drop dst-port=6670 comment=”BackWeb Server, Deep Throat, Foreplay, WinNuke eXtreame”

add chain=virus protocol=tcp action=drop dst-port=6711 comment=”BackDoor-G, SubSeven, VP Killer”

add chain=virus protocol=tcp action=drop dst-port=6712 comment=”Funny trojan, SubSeven”

add chain=virus protocol=tcp action=drop dst-port=6713 comment=”SubSeven”

add chain=virus protocol=tcp action=drop dst-port=6723 comment=”Mstream”

add chain=virus protocol=tcp action=drop dst-port=6771 comment=”Deep Throat, Foreplay”

add chain=virus protocol=tcp action=drop dst-port=6776 comment=”2000 Cracks, BackDoor-G, SubSeven, VP Killer”

add chain=virus protocol=udp action=drop dst-port=6838 comment=”Mstream”

add chain=virus protocol=tcp action=drop dst-port=6883 comment=”Delta Source DarkStar”

add chain=virus protocol=tcp action=drop dst-port=6912 comment=”Shit Heep”

add chain=virus protocol=tcp action=drop dst-port=6939 comment=”Indoctrination”

add chain=virus protocol=tcp action=drop dst-port=6969-6970 comment=”GateCrasher, IRC 3, Net Controller, Priority”

add chain=virus protocol=tcp action=drop dst-port=7000 comment=”Exploit Translation Server, Kazimas, Remote Grab, SubSeven, SubSeven 2.1 Gold”

add chain=virus protocol=tcp action=drop dst-port=7001 comment=”Freak88, Freak2k”

add chain=virus protocol=tcp action=drop dst-port=7215 comment=”SubSeven, SubSeven 2.1 Gold”

add chain=virus protocol=tcp action=drop dst-port=7300-7308 comment=”NetMonitor”

add chain=virus protocol=tcp action=drop dst-port=7424 comment=”Host Control”

add chain=virus protocol=udp action=drop dst-port=7424 comment=”Host Control”

add chain=virus protocol=tcp action=drop dst-port=7597 comment=”Qaz”

add chain=virus protocol=tcp action=drop dst-port=7626 comment=”Glacier”

add chain=virus protocol=tcp action=drop dst-port=7777 comment=”God Message, Tini”

add chain=virus protocol=tcp action=drop dst-port=7789 comment=”Back Door Setup, ICKiller”

add chain=virus protocol=tcp action=drop dst-port=7891 comment=”The ReVeNgEr”

add chain=virus protocol=tcp action=drop dst-port=7983 comment=”Mstream”

add chain=virus protocol=tcp action=drop dst-port=8787 comment=”Back Orifice 2000″

add chain=virus protocol=tcp action=drop dst-port=8988 comment=”BacHack”

add chain=virus protocol=tcp action=drop dst-port=8989 comment=”Rcon, Recon, Xcon”

add chain=virus protocol=tcp action=drop dst-port=9000 comment=”Netministrator”

add chain=virus protocol=udp action=drop dst-port=9325 comment=”Mstream”

add chain=virus protocol=tcp action=drop dst-port=9400 comment=”InCommand”

add chain=virus protocol=tcp action=drop dst-port=9872-9875 comment=”Portal of Doom”

add chain=virus protocol=tcp action=drop dst-port=9876 comment=”Cyber Attacker, Rux”

add chain=virus protocol=tcp action=drop dst-port=9878 comment=”TransScout”

add chain=virus protocol=tcp action=drop dst-port=9989 comment=”Ini-Killer”

add chain=virus protocol=tcp action=drop dst-port=9999 comment=”The Prayer”

add chain=virus protocol=tcp action=drop dst-port=10000-10005 comment=”OpwinTRojan”

add chain=virus protocol=udp action=drop dst-port=10067 comment=”Portal of Doom”

add chain=virus protocol=tcp action=drop dst-port=10085-10086 comment=”Syphillis”

add chain=virus protocol=tcp action=drop dst-port=10100 comment=”Control Total, Gift trojan”

add chain=virus protocol=tcp action=drop dst-port=10101 comment=”BrainSpy, Silencer”

add chain=virus protocol=udp action=drop dst-port=10167 comment=”Portal of Doom”

add chain=virus protocol=tcp action=drop dst-port=10520 comment=”Acid Shivers”

add chain=virus protocol=tcp action=drop dst-port=10528 comment=”Host Control”

add chain=virus protocol=tcp action=drop dst-port=10607 comment=”Coma”

add chain=virus protocol=udp action=drop dst-port=10666 comment=”Ambush”

add chain=virus protocol=tcp action=drop dst-port=11000 comment=”Senna Spy Trojan Generator”

add chain=virus protocol=tcp action=drop dst-port=11050-11051 comment=”Host Control”

add chain=virus protocol=tcp action=drop dst-port=11223 comment=”Progenic trojan, Secret Agent”

add chain=virus protocol=tcp action=drop dst-port=12076 comment=”Gjamer”

add chain=virus protocol=tcp action=drop dst-port=12223 comment=”Hack´99 KeyLogger”

add chain=virus protocol=tcp action=drop dst-port=12345 comment=”Ashley, cron  crontab, Fat Bitch trojan, GabanBus, icmp_client.c, icmp_pipe.c, Mypic, NetBus, NetBus Toy, NetBus worm, Pie Bill Gates, Whack Job, X-bill”

add chain=virus protocol=tcp action=drop dst-port=12346 comment=”Fat Bitch trojan, GabanBus, NetBus, X-bill”

add chain=virus protocol=tcp action=drop dst-port=12349 comment=”BioNet”

add chain=virus protocol=tcp action=drop dst-port=12361-12363 comment=”Whack-a-mole”

add chain=virus protocol=udp action=drop dst-port=12623 comment=”DUN Control”

add chain=virus protocol=tcp action=drop dst-port=12624 comment=”ButtMan”

add chain=virus protocol=tcp action=drop dst-port=12631 comment=”Whack Job”

add chain=virus protocol=tcp action=drop dst-port=12754 comment=”Mstream”

add chain=virus protocol=tcp action=drop dst-port=13000 comment=”Senna Spy Trojan Generator, Senna Spy Trojan Generator”

add chain=virus protocol=tcp action=drop dst-port=13010 comment=”Hacker Brasil HBR”

add chain=virus protocol=tcp action=drop dst-port=13013-13014 comment=”PsychWard”

add chain=virus protocol=tcp action=drop dst-port=13223 comment=”Hack´99 KeyLogger”

add chain=virus protocol=tcp action=drop dst-port=13473 comment=”Chupacabra”

add chain=virus protocol=tcp action=drop dst-port=14500-14503 comment=”PC Invader”

add chain=virus protocol=tcp action=drop dst-port=15000 comment=”NetDemon”

add chain=virus protocol=tcp action=drop dst-port=15092 comment=”Host Control”

add chain=virus protocol=tcp action=drop dst-port=15104 comment=”Mstream”

add chain=virus protocol=tcp action=drop dst-port=15382 comment=”SubZero”

add chain=virus protocol=tcp action=drop dst-port=15858 comment=”CDK”

add chain=virus protocol=tcp action=drop dst-port=16484 comment=”Mosucker”

add chain=virus protocol=tcp action=drop dst-port=16660 comment=”Stacheldraht”

add chain=virus protocol=tcp action=drop dst-port=16772 comment=”ICQ Revenge”

add chain=virus protocol=tcp action=drop dst-port=16959 comment=”SubSeven, Subseven 2.1.4 DefCon 8″

add chain=virus protocol=tcp action=drop dst-port=16969 comment=”Priority”

add chain=virus protocol=tcp action=drop dst-port=17166 comment=”Mosaic”

add chain=virus protocol=tcp action=drop dst-port=17300 comment=”Kuang2 the virus”

add chain=virus protocol=tcp action=drop dst-port=17449 comment=”Kid Terror”

add chain=virus protocol=tcp action=drop dst-port=17499-17500 comment=”CrazzyNet”

add chain=virus protocol=tcp action=drop dst-port=17569 comment=”Infector”

add chain=virus protocol=tcp action=drop dst-port=17593 comment=”Audiodoor”

add chain=virus protocol=tcp action=drop dst-port=17777 comment=”Nephron”

add chain=virus protocol=udp action=drop dst-port=18753 comment=”Shaft”

add chain=virus protocol=tcp action=drop dst-port=19864 comment=”ICQ Revenge”

add chain=virus protocol=tcp action=drop dst-port=20000 comment=”Millenium”

add chain=virus protocol=tcp action=drop dst-port=20001 comment=”Millenium, Millenium Lm”

add chain=virus protocol=tcp action=drop dst-port=20002 comment=”AcidkoR”

add chain=virus protocol=tcp action=drop dst-port=20005 comment=”Mosucker”

add chain=virus protocol=tcp action=drop dst-port=20023 comment=”VP Killer”

add chain=virus protocol=tcp action=drop dst-port=20034 comment=”NetBus 2.0 Pro, NetBus 2.0 Pro Hidden, NetRex, Whack Job”

add chain=virus protocol=tcp action=drop dst-port=20203 comment=”Chupacabra”

add chain=virus protocol=tcp action=drop dst-port=20331 comment=”BLA trojan”

add chain=virus protocol=tcp action=drop dst-port=20432 comment=”Shaft”

add chain=virus protocol=udp action=drop dst-port=20433 comment=”Shaft”

add chain=virus protocol=tcp action=drop dst-port=21544 comment=”GirlFriend, Kid Terror”

add chain=virus protocol=tcp action=drop dst-port=21554 comment=”Exploiter, Kid Terror, Schwindler, Winsp00fer”

add chain=virus protocol=tcp action=drop dst-port=22222 comment=”Donald Dick, Prosiak, Ruler, RUX The TIc.K”

add chain=virus protocol=tcp action=drop dst-port=23005-23006 comment=”NetTrash”

add chain=virus protocol=tcp action=drop dst-port=23023 comment=”Logged”

add chain=virus protocol=tcp action=drop dst-port=23032 comment=”Amanda”

add chain=virus protocol=tcp action=drop dst-port=23432 comment=”Asylum”

add chain=virus protocol=tcp action=drop dst-port=23456 comment=”Evil FTP, Ugly FTP, Whack Job”

add chain=virus protocol=tcp action=drop dst-port=23476 comment=”Donald Dick”

add chain=virus protocol=udp action=drop dst-port=23476 comment=”Donald Dick”

add chain=virus protocol=tcp action=drop dst-port=23477 comment=”Donald Dick”

add chain=virus protocol=tcp action=drop dst-port=23777 comment=”InetSpy”

add chain=virus protocol=tcp action=drop dst-port=24000 comment=”Infector”

add chain=virus protocol=tcp action=drop dst-port=25685-25982 comment=”Moonpie”

add chain=virus protocol=udp action=drop dst-port=26274 comment=”Delta Source”

add chain=virus protocol=tcp action=drop dst-port=26681 comment=”Voice Spy”

add chain=virus protocol=tcp action=drop dst-port=27374 comment=”Bad Blood, Ramen, Seeker, SubSeven, SubSeven 2.1 Gold, Subseven 2.1.4 DefCon 8, SubSeven Muie, Ttfloader”

add chain=virus protocol=udp action=drop dst-port=27444 comment=”Trinoo”

add chain=virus protocol=tcp action=drop dst-port=27573 comment=”SubSeven”

add chain=virus protocol=tcp action=drop dst-port=27665 comment=”Trinoo”

add chain=virus protocol=tcp action=drop dst-port=28678 comment=”Exploit”

add chain=virus protocol=tcp action=drop dst-port=29104 comment=”NetTrojan”

add chain=virus protocol=tcp action=drop dst-port=29369 comment=”ovasOn”

add chain=virus protocol=tcp action=drop dst-port=29891 comment=”The Unexplained”

add chain=virus protocol=tcp action=drop dst-port=30000 comment=”Infector”

add chain=virus protocol=tcp action=drop dst-port=30001 comment=”ErrOr32″

add chain=virus protocol=tcp action=drop dst-port=30003 comment=”Lamers Death”

add chain=virus protocol=tcp action=drop dst-port=30029 comment=”AOL trojan”

add chain=virus protocol=tcp action=drop dst-port=30100-30133 comment=”NetSphere”

add chain=virus protocol=udp action=drop dst-port=30103 comment=”NetSphere”

add chain=virus protocol=tcp action=drop dst-port=30303 comment=”Sockets des Troie”

add chain=virus protocol=tcp action=drop dst-port=30947 comment=”Intruse”

add chain=virus protocol=tcp action=drop dst-port=30999 comment=”Kuang2″

add chain=virus protocol=tcp action=drop dst-port=31335 comment=”Trinoo”

add chain=virus protocol=tcp action=drop dst-port=31336 comment=”Bo Whack, Butt Funnel”

add chain=virus protocol=tcp action=drop dst-port=31337 comment=”Back Fire, Back Orifice 1.20 patches, Back Orifice Lm, Back Orifice russian, Baron Night, Beeone, BO client, BO Facil, BO spy, BO2, cron  crontab, Freak88, Freak2k, icmp_pipe.c, Sockdmini”

add chain=virus protocol=udp action=drop dst-port=31337 comment=”Back Orifice, Deep BO”

add chain=virus protocol=tcp action=drop dst-port=31338 comment=”Back Orifice, Butt Funnel, NetSpy DK”

add chain=virus protocol=udp action=drop dst-port=31338 comment=”Deep BO”

add chain=virus protocol=tcp action=drop dst-port=31339 comment=”NetSpy DK”

add chain=virus protocol=tcp action=drop dst-port=31666 comment=”BOWhack”

add chain=virus protocol=tcp action=drop dst-port=31785-31792 comment=”Hack a Tack”

add chain=virus protocol=udp action=drop dst-port=31791-31792 comment=”Hack a Tack”

add chain=virus protocol=tcp action=drop dst-port=32001 comment=”Donald Dick”

add chain=virus protocol=tcp action=drop dst-port=32100 comment=”Peanut Brittle, Project nEXT”

add chain=virus protocol=tcp action=drop dst-port=32418 comment=”Acid Battery”

add chain=virus protocol=tcp action=drop dst-port=33270 comment=”Trinity”

add chain=virus protocol=tcp action=drop dst-port=33333 comment=”Blakharaz, Prosiak”

add chain=virus protocol=tcp action=drop dst-port=33577-33777 comment=”Son of PsychWard”

add chain=virus protocol=tcp action=drop dst-port=33911 comment=”Spirit 2000, Spirit 2001″

add chain=virus protocol=tcp action=drop dst-port=34324 comment=”Big Gluck, TN”

add chain=virus protocol=tcp action=drop dst-port=34444 comment=”Donald Dick”

add chain=virus protocol=udp action=drop dst-port=34555-35555 comment=”Trinoo for Windows”

add chain=virus protocol=tcp action=drop dst-port=37237 comment=”Mantis”

add chain=virus protocol=tcp action=drop dst-port=37651 comment=”Yet Another Trojan YAT”

add chain=virus protocol=tcp action=drop dst-port=40412 comment=”The Spy”

add chain=virus protocol=tcp action=drop dst-port=40421 comment=”Agent 40421, Masters Paradise”

add chain=virus protocol=tcp action=drop dst-port=40422-40426 comment=”Masters Paradise”

add chain=virus protocol=tcp action=drop dst-port=41337 comment=”Storm”

add chain=virus protocol=tcp action=drop dst-port=41666 comment=”Remote Boot Tool RBT, Remote Boot Tool RBT”

add chain=virus protocol=tcp action=drop dst-port=44444 comment=”Prosiak”

add chain=virus protocol=tcp action=drop dst-port=44575 comment=”Exploiter”

add chain=virus protocol=udp action=drop dst-port=47262 comment=”Delta Source”

add chain=virus protocol=tcp action=drop dst-port=49301 comment=”OnLine KeyLogger”

add chain=virus protocol=tcp action=drop dst-port=50130 comment=”Enterprise”

add chain=virus protocol=tcp action=drop dst-port=50505 comment=”Sockets des Troie”

add chain=virus protocol=tcp action=drop dst-port=50766 comment=”Fore, Schwindler”

add chain=virus protocol=tcp action=drop dst-port=51966 comment=”Cafeini”

add chain=virus protocol=tcp action=drop dst-port=52317 comment=”Acid Battery 2000″

add chain=virus protocol=tcp action=drop dst-port=53001 comment=”Remote Windows Shutdown RWS”

add chain=virus protocol=tcp action=drop dst-port=54283 comment=”SubSeven, SubSeven 2.1 Gold”

add chain=virus protocol=tcp action=drop dst-port=54320 comment=”Back Orifice 2000″

add chain=virus protocol=tcp action=drop dst-port=54321 comment=”Back Orifice 2000, School Bus”

add chain=virus protocol=tcp action=drop dst-port=55165 comment=”File Manager trojan, File Manager trojan, WM Trojan Generator”

add chain=virus protocol=tcp action=drop dst-port=55166 comment=”WM Trojan Generator”

add chain=virus protocol=tcp action=drop dst-port=57341 comment=”NetRaider”

add chain=virus protocol=tcp action=drop dst-port=58339 comment=”Butt Funnel”

add chain=virus protocol=tcp action=drop dst-port=60000 comment=”Deep Throat, Foreplay, Sockets des Troie”

add chain=virus protocol=tcp action=drop dst-port=60001 comment=”Trinity”

add chain=virus protocol=tcp action=drop dst-port=60068 comment=”Xzip 6000068″

add chain=virus protocol=tcp action=drop dst-port=60411 comment=”Connection”

add chain=virus protocol=tcp action=drop dst-port=61348 comment=”Bunker-Hill”

add chain=virus protocol=tcp action=drop dst-port=61466 comment=”TeleCommando”

add chain=virus protocol=tcp action=drop dst-port=61603 comment=”Bunker-Hill”

add chain=virus protocol=tcp action=drop dst-port=63485 comment=”Bunker-Hill”

add chain=virus protocol=tcp action=drop dst-port=64101 comment=”Taskman”

add chain=virus protocol=tcp action=drop dst-port=65000 comment=”Devil, Sockets des Troie, Stacheldraht”

add chain=virus protocol=tcp action=drop dst-port=65390 comment=”Eclypse”

add chain=virus protocol=tcp action=drop dst-port=65421 comment=”Jade”

add chain=virus protocol=tcp action=drop dst-port=65432 comment=”The Traitor th3tr41t0r”

add chain=virus protocol=udp action=drop dst-port=65432 comment=”The Traitor th3tr41t0r”

add chain=virus protocol=tcp action=drop dst-port=65534 comment=”sbin initd”

add chain=virus protocol=tcp action=drop dst-port=65535 comment=”RC1 trojan”

add chain=forward action=jump jump-target=virus comment=”jump to the virus chain”

Perbedaan adalah anugrah… (baca-baca aja dulu)

del.icio.us TRACK TOP
By hqki. Filed in Islami.
No comments yet. Be the first to comment!

Ironis sekali menurut saya jika Islam harus di kelompok-kelompokan..

Apalagi ada beberapa golongan anak muda di zaman sekarang yang dengan ilmu terbatas, rujukan terbatas, bahkan mengajinya juga belum tentu pas,  serta wawasan yang ngepas, tiba-tiba ibarat tentara stres menembakkan peluru membabi buta ke segala arah.

Semua orang dicaci maki sebagai ahli bid’ah, tidak satu pun yang tidak kena vonis bid’ahnya yang mematikan itu. Bahkan caci maki itu diteruskan dengan tindakan tidak terpuji lainnya, misalnya menyebarkan ‘aib dan semua kekurangan orang itu. Bahkan sampai urusan mencela secara fisik, sesuatu yang hanya terjadi di panggung lenong betawi saja.

Padahal terkadang sebenarnya masalah itu masih punya ruang untuk berbeda pendapat. Sementara para ulama masih belum sampai kata sepakat untuk membid’ahkannya, ternyata sekelompok anak muda ‘aneh’ yang tidak bisa bahasa arab ini sudah melaju duluan dan menyebar vonis bid’ah ke semua orang.

Sayang sekali memang, karena ternyata senjatanya cuma terjemahan dari fatwa si fulan dan fulan, itu pun cuma hasil copy paste dari situs internet. Tapi lagaknya sudah kayak mufti betulan. Sayang sekali memang, kalau ada anak muda penuh semangat tapi ilmu terbatas.

Semoga mereka bisa kembali ke jalan yang terang, biar tidak nabrak apa pun yang ada di depannya. Maklum anak muda, semangat dan nafsu boleh besar tapi sayang sekali ilmunya kurang. Kitab yang dibaca cuma itu-itu saja sih, tidak ada kitab lainnya.

Maka dengan itu penulis juga ingin memberikan sedikit artikel yg mungkin bisa di pakai sebagai rujukan-rujukan..

Mohon maaf bila tulisan-tulisan penulis kurang berkenan, Allah maha pemaaf loh :D

Tnks..

Sunnah-VS-Bidah

Nyekar-dengan-Membawa-Bunga

Istilah Wajib, Haram, Sunnah, Makruh dan Mubah

Mengaminkan-Do’a-bagaimana

Sikap-Menghadapi-Adat-Istiadat-di-Sekitar-Kita

Dakwah-Islam-dimulai-dari-mana

ahli-sunnah-wal-jamaah

belajar-tentang-islam

Bid’ah yang Hukumnya Mubah atau Wajib, Adakah

Rt/Rw Net Wilayah Ciputat & Sekitarnya

del.icio.us TRACK TOP
By hqki. Filed in Lainnya.
1 comment filed

spanduk-kecil.JPG

Marketing :

(021) 988859712

08568188041

Bid’ah yang Hukumnya Mubah atau Wajib, Adakah?

del.icio.us TRACK TOP
By hqki. Filed in Islami.
No comments yet. Be the first to comment!

Permasalahan hukum bid’ah, apakah semuanya sesat atau ada juga bid’ah yang tidak sesat (bid’ah hasanah), memang seringkali menjadi titik perbedaan pendapat di kalangan ulama. Walau pun pada akhirnya kalau kita perhatikan, ternyata ujung-ujungnya semua mengacu kepada kesimpulan yang sama.

bidah.docbelajar-tentang-islam.docahli-sunnah-wal-jamaah.docdakwah-islam.doc, sikap-menghadapi-adat-istiadat-di-sekitar-kita.doc, mengaminkan-doa.docistilah-wajib.doc

Orang arab naek motor

del.icio.us TRACK TOP
By hqki. Filed in Lucu-lucuan.
No comments yet. Be the first to comment!

ribet.wm

Seting-Router-Linux-Standart

del.icio.us TRACK TOP
By hqki. Filed in Linux.
1 comment filed

Pertama yang harus di lakukan adalah mensetting mgw(main gateway) supaya bisa connect ke internet. Sebelum Mensetting :

1. Minta IP public ke ISP lengkap dengan netmask,broadcast dan dns-nya misalnya :

RANGE : 202.159.121.0/29

IP : 202.159.121.2

GATEWAY : 202.159.121.1

Nemast : 255.255.255.248

Broadcast : 202.159.121.7

DNS1 : 202.159.0.10

DNS2 : 202.159.0.20

berarti kita mendapatkan ip 5 buah dari 202.159.121.2 - 202.159.121.6

2. Menentukan IP local yang akan kita gunakan buat client

Setting IP MGW : [root@mgw kiki]$ vi /etc/sysconfig/network

lalu isi dengan :

NETWORKING=yes

HOSTNAME=mgw.domain.com

GATEWAY=202.159.121.1

lalu simpen dengan menekan :wq

3. Menconfigurasi IP eth0(default)

[root@mgw root]$ vi /etc/sysconfig/network-scripts/ifcfg-eth0

lalu isi dengan :

DEVICE=eth0

BOOTPROTO=static

IPADDR=202.159.121.2

BROADCAST=202.159.121.7

NETMASK=255.255.255.249

onfiltered=yes

USERCTL=no

lalu simpen dengan menekan :wq

4. Setting dns resolve

[root@mgw root]$ vi /etc/resolve.conf

lalu isi dengan nameserver dari isp kita tadi :

nameserver 202.159.0.10

nameserver 202.159.0.20

lalu simpen dengan menekan :wq

5. Setting ip_forwarding

[root@mgw kiki]$ vi /etc/sysctl.conf

rubah net.ipv4.ip_forward = 0 menjadi net.ipv4.ip_forward = 1

atau kalau gak ada net.ipv4.ip_forward = 0 tambahin net.ipv4.ip_forward = 1

simpen dengan menekan :wq

6. Restart network

[root@mgw kiki]$ /etc/init.d/network restart

Shutting down interface eth0: [ OK ]

Shutting down loopback interface: [ OK ]

Disabling IPv4 packet forwarding: [ OK ]

Setting network parameters: [ OK ]

Bringing up loopback interface: [ OK ]

Bringing up interface eth0: [ OK ]

[root@www root]#chkconfig –level 2345 network on

[root@www root]#

7. Testing dengan ngeping ke default gateway 202.159.121.1

[root@mgw kiki]$ ping 202.159.121.1

PING 202.159.121.1 (202.159.121.1) 56(84) bytes of data.

64 bytes from 202.159.121.1: icmp_seq=1 ttl=63 time=0.356 ms

64 bytes from 202.159.121.1: icmp_seq=2 ttl=63 time=0.269 ms

64 bytes from 202.159.121.1: icmp_seq=3 ttl=63 time=0.267 ms

64 bytes from 202.159.121.1: icmp_seq=4 ttl=63 time=0.268 ms

— 202.159.121.1 ping statistics —

4 packets transmitted, 4 received, 0% packet loss, time 2997ms

rtt min/avg/max/mdev = 0.267/0.290/0.356/0.038 ms

8. Testing untuk ngeping google.com untuk ngecek dns-nya, kalau muncul :

PING google.com (216.239.39.99) 56(84) bytes of data, berarti dns kita untuk mgw dah bekerja, tapi kalau muncul = ping: unknown host google.com

berarti dns yang kita isikan di /etc/resolve.conf masih salah,silahkan cek lagi ke ISP nya. Nah bereskan sudah setting IP untuk mgw-nya, supaya mgw ini bisa sekaligus digunakan sebagai dns server oleh client maka harus di install daemon bind atau daemon nameserver yang lain atau kalau sudah ada tinggal hidupkan bind-nya.

[root@www root]# /etc/init.d/named restart

Stopping named: [ OK ]

Starting named: [ OK ]

[root@www root]#chkconfig –level 2345 named on

[root@www root]#

Misalnya ip ke client adalah :

192.168.0.1/24

IP : 192.168.0.1

Netmask : 255.255.255.0

Broadcast : 192.168.0.255

RANGE IP CLIENT : 192.168.0.2-192.168.0.254

1. Setting ip untuk eth1 (yang ke client)

[root@mgw kiki]$ vi /etc/sysconfig/network-scripts/ifcfg-eth1

lalu isi dengan :

DEVICE=eth1

BOOTPROTO=static

IPADDR=192.168.0.1

NETMASK=255.255.255.0

BROADCAST=192.168.0.255

onfiltered=yes

USERCTL=no

lalu simpen dengan menekan :wq

2. Restart networknya

[root@mgw root]$ /etc/init.d/network restart

Shutting down interface eth0: [ OK ]

Shutting down interface eth1: [ OK ]

Shutting down loopback interface: [ OK ]

Disabling IPv4 packet forwarding: [ OK ]

Setting network parameters: [ OK ]

Bringing up loopback interface: [ OK ]

Bringing up interface eth0: [ OK ]

Bringing up interface eth1: [ OK ]

3. Testing dengan cara ping ip eth1

[root@mgw kiki]$ ping 192.168.0.1

PING 192.168.0.1 (192.168.0.1) 56(84) bytes of data.

64 bytes from 192.168.0.1: icmp_seq=1 ttl=63 time=0.356 ms

64 bytes from 192.168.0.1: icmp_seq=2 ttl=63 time=0.269 ms

64 bytes from 192.168.0.1: icmp_seq=3 ttl=63 time=0.267 ms

64 bytes from 192.168.0.1: icmp_seq=4 ttl=63 time=0.268 ms

— 192.168.0.1 ping statistics —

4 packets transmitted, 4 received, 0% packet loss, time 2997ms

rtt min/avg/max/mdev = 0.267/0.290/0.356/0.038 ms

Tinggal Setting IP computer client dengan ketentuan di bawah ini :

IP : 192.168.0.2 - 192.168.0.254

GATEWAY : 192.168.0.1

NETMASK : 255.255.255.0

BROADCAST : 192.168.0.255

NAMESERVER : 192.168.0.1

Misal :

Client01

===============================

IP : 192.168.0.2

GATEWAY : 192.168.0.1

NETMASK : 255.255.255.0

BROADCAST : 192.168.0.255

NAMESERVER : 192.168.0.1

Client02

===============================

IP : 192.168.0.3

GATEWAY : 192.168.0.1

NETMASK : 255.255.255.0

BROADCAST : 192.168.0.255

NAMESERVER : 192.168.0.1

Dan seterusnya sesuai banyaknya client,yang berubah hanya IP untuk client windows maka setting IP di bagian Start Menu/Setting/Control Panel/Network.

Setelah di setting ip client, maka coba ping ke 192.168.0.1 dari client,kalau berhasil berarti client dan MGW nya sudah tersambung.

Setting MGW supaya client bisa internet dengan menggunakan NAT

1. Matikan iptablesnya

[root@mgw root]# /etc/init.d/iptables stop

Flushing all chains: [ OK ]

Removing user defined chains: [ OK ]

Resetting built-in chains to the default ACCEPT policy: [ OK ]

[root@mgw root]#

2. Tambahkan iptables untuk Source NAt sesuai dengan ip di eth0

[root@mgw root]# /sbin/iptables -t nat -A POSTROUTING -o eth0 -s

192.168.0.0/24 -j SNAT –to-source 202.159.121.2

[root@mgw root]# /sbin/iptables-save > /etc/sysconfig/iptables

[root@mgw root]# /etc/init.d/iptables restart

Flushing all current rules and user defined chains: [ OK ]

Clearing all current rules and user defined chains: [ OK ]

Applying iptables firewall rules: [ OK ]

[root@mgw root]# iptables-save

SNAT sudah,SNAT disini standar sekali dan gak ada proteksi untuk mengetestnya kita browser di client lalu buka google.com, kalau jalan berati kita sudah berhasil :) .

Wassallam

Untung kah membuka warnet?

del.icio.us TRACK TOP
By hqki. Filed in Artikel IT.
No comments yet. Be the first to comment!

April 16th, 2007

Ini adalah pertanyaan mendasar dari setiap individu yang hendak terjun ke bisnis warnet. Untuk menjawabnya tidaklah mudah, sebab banyak faktor yang terlibat di dalamnya.

Tulisan ini tidak dimaksudkan untuk menjadi panduan super yang pasti benar :)namun lebih bertujuan untuk memberikan dasar pemikiran bagi mereka yang hendak berbisnis warnet. Seperti biasa, dalam tulisan yang saya buat pada akhirnya akan menuju sebuah rumusan sederhana yang dapat digunakan sebagai patokan awal.

 

Dalam hal menghitung keuntungan tentu rumus yang paling sederhana adalah:

 

(Pendapatan) – (Pengeluaran) = Keuntungan

 

Rumus sederhana ini lah yang akan kita kembangkan sebagai berikut:

 

Pertama, kita lihat dulu variabel-variabel apa saja dalam berbisnis warnet:

·         Jumlah Investasi

·         Biaya Bulanan

·         Masa sewa tempat

·         Jumlah PC

·         Harga Jual

·         Efisiensi

·         Masa operasi per bulan

 

Kemudian, kita coba untuk memasukkan angka-angka ke variabel di atas dengan asumsi-asumsi umum berdasarkan apa yang ada di lapangan saat ini.

 

·         Investasi = Rp 150.000.000

·         Jumlah PC = 15

·         Biaya Bulanan = Rp 9.400.000

·         Masa sewa tempat = 3 tahun ( 36 bulan)

·         Harga Jual = Rp 5.000,-

·         Efisiensi = 7

·         Masa operasi per bulan = 28 hari

 

Pertanyaan berikut tentu: variabel mana yang termasuk pada golongan “pemasukan”? Jumlah PC, Harga Jual, efisiensi dan masa operasi per bulan termasuk pada golongan tersebut. Sehingga jumlah pemasukan bisa di dapatkan dengan rumus:

 

( Harga jual x jumlah PC x Efisiensi x Masa operasi per bulan ) = Jumlah Pendapatan per Bulan

 

Setelah mendapatkan jumlah pendapatan, berikut adalah mari kita hitung Pengeluaran. Variabel Pengeluaran adalah: Investasi, Biaya bulanan. Adapun rumusannya adalah sbb:

 

( Investasi / masa sewa tempat + Biaya Bulanan ) = Jumlah Pengeluaran per Bulan.

 

Sehingga jika angka-angka asumsi di masukkan, maka hasilnya adalah sbb:

 

Pendapatan = ( Rp 5000 x 15 x 7 x 28 ) = Rp 14.700.000,-

Pengeluaran = ( Rp 150.000.000 / 36 + Rp 9.400.000 ) = Rp 13.567.000,- ( pembulatan )

Sehingga selisihnya = Rp 1.333.000,-

 

Nah, silahkan anda nilai sendiri apakah ber bisnis warnet itu menguntungkan atau tidak.

 

Setting dasar Mikrotik-Os

del.icio.us TRACK TOP
By hqki. Filed in Mikrotik-Router.
5862 comments filed

1. Memberikan IP address pada interface Mikrotik. Misalkan ether1
akan kita gunakan untuk koneksi ke Internet dengan IP 192.168.0.1
dan ether2 akan kita gunakan untuk network local kita dengan IP
172.16.0.1

[admin@Hakiki] > ip address add address=192.168.0.195/24
interface=ether1
[admin@Hakiki] > ip address add address=192.168.2.1/24
interface=ether2

2. Melihat konfigurasi IP address yang sudah kita berikan
[admin@Hakiki] >ip address print
Flags: X - disabled, I - invalid, D - dynamic
# ADDRESS NETWORK BROADCAST INTERFACE
0 192.168.0.195/24 192.168.0.1 192.168.0.255 ether1
1 192.168.2.1/24 192.168.2.1 192.168.2.255 ether2

3. Memberikan default Gateway, diasumsikan gateway untuk koneksi
internet adalah 192.168.0.1
[admin@Hakiki] > /ip route add gateway=192.168.0.1

4. Melihat Tabel routing pada Mikrotik Routers
[admin@Hakiki] > ip route print
Flags: X - disabled, A - active, D - dynamic,
C - connect, S - static, r - rip, b - bgp, o - ospf
# DST-ADDRESS PREFSRC G GATEWAY DISTANCE INTERFACE
0 ADC 192.168.2.0/24 192.168.2.1 ether2
1 ADC 192.168.0.0/26 192.168.0.195 ether1
2 A S 0.0.0.0/0 r 192.168.0.1 ether1

5. Tes Ping ke Gateway untuk memastikan konfigurasi sudah benar
[admin@Hakiki] > ping 192.168.0.1
192.168.0.1 64 byte ping: ttl=64 time<1 ms
192.168.0.1 64 byte ping: ttl=64 time<1 ms
2 packets transmitted, 2 packets received, 0% packet loss
round-trip min/avg/max = 0/0.0/0 ms

6. Setup DNS pada Mikrotik Routers
[admin@Hakiki] > ip dns set primary-dns=202.159.32.2 allow-
remoterequests=yes
[admin@Hakiki] > ip dns set secondary-dns=202.159.33.3 allow-
remoterequests=yes

7. Melihat konfigurasi DNS
[admin@Hakiki] > ip dns print
primary-dns: 202.159.32.2
secondary-dns: 202.159.33.3
allow-remote-requests: no
cache-size: 2048KiB
cache-max-ttl: 1w
cache-used: 16KiB

8. Tes untuk akses domain, misalnya dengan ping nama domain
[admin@Hakiki] > ping yahoo.com
216.109.112.135 64 byte ping: ttl=48 time=250 ms
10 packets transmitted, 10 packets received, 0% packet loss
round-trip min/avg/max = 571/571.0/571 ms

Jika sudah berhasil reply berarti seting DNS sudah benar.

9. Setup Masquerading, Jika Mikrotik akan kita pergunakan sebagai
gateway server maka agar client computer pada network dapat
terkoneksi ke internet perlu kita masquerading.
[admin@Hakiki]> ip firewall nat add action=masquerade outinterface=
ether1 chain:srcnat

10. Melihat konfigurasi Masquerading
[admin@Hakiki]ip firewall nat print
Flags: X - disabled, I - invalid, D - dynamic
0 chain=srcnat out-interface=ether1 action=masquerade

Setelah langkah ini bisa dilakukan pemeriksaan untuk koneksi dari
jaringan local. Dan jika berhasil berarti kita sudah berhasil
melakukan instalasi Mikrotik Router sebagai Gateway server. Setelah
terkoneksi dengan jaringan Mikrotik dapat dimanage menggunakan WinBox
yang bisa di download dari Mikrotik.com atau dari server mikrotik
kita.

Wassallam

Mikrotik BW-Manajemen Standart

del.icio.us TRACK TOP
By hqki. Filed in Mikrotik-Router.
3 comments filed

MikroTik RouterOS™ adalah sistem operasi dan yang dapat digunakan untuk menjadikan komputer manjadi router network yang handal, mencakup berbagai fitur lengkap untuk network dan wireless, salah satunya adalah bandwidth manajemen.
Saya coba mengulas cara2 paling awal untuk setting mikrotik untuk BW manajemen.

1. Install Mikrotik OS
- Siapkan PC, minimal Pentium II juga gak papa RAM 64,HD 500M atau pake flash memory 64
- Di server / PC kudu ada minimal 2 ethernet, 1 ke arah luar dan 1 lagi ke Network local yg akan di manage BWnya
- Burn Source CD Mikrotik OS masukan ke CDROM
- Boot dari CDROM
- Ikuti petunjuk yang ada, gunakan syndrom next-next dan default
- Install paket2 utama, lebih baiknya semua packet dengan cara menandainya (mark)
- Setelah semua paket ditandai maka untuk menginstallnya tekan “I”
- Lama Install normalnya ga sampe 15menit, kalo lebih berarti gagal, ulangi ke step awal
- Setelah diinstall beres, PC restart akan muncul tampilan login

2. Setting dasar mikrotik
Langkah awal dari semua langkah konfigurasi mikrotik adalah setting ip
Hal ini bertujuan agar mikrotik bisa di remote dan dengan winbox dan memudahkan kita untuk melakukan berbagai macam konfigurasi
- Login sebaga admin degan default password ga usah diisi langsung enter
- Setelah masuk ke promt ketikkan command:
[ropix@GblSdd] > ip address add address=222.124.21.26/29 interface=ether1
Gantilah dengan ip address anda dan interface yg akan digunakan untuk meremote sementara
- Lakukan ping ke dan dari komputer lain
- Setelah konek lanjutkan ke langkah berikutnya, kalo belum ulangi langkah 2

3. Setting Lanjutan
- Akses ip mikrotik lewat browser, maka akan muncul halaman welcome dan login
- Klik link Download it untuk download winbox yg digunakan untuk remote mikrotik secara GUI
- Jalankan winbox, login sebagai admin password kosong
- Masuklah ke menu paling atas (interface), tambahkan interface yg belum ada dengan mengklik tanda +
- Tambahkan pula interface “bridge” untuk memfungsikan mikrotik sebagai bridge

4. Setting Bandwidth limiter
- Klik menu ip>firewall>magle

Buat rule (klik tanda + merah) dengan parameter sbb:
Pada tab General:
Chain=forward,
Src.address=192.168.0.2 (atau ip yg ingin di limit)
Pada tab Action :
Action = mark connection,
New connection mark=ropix-con (atau nama dari mark conection yg kita buat)
Klik Apply dan OK

Buat rule lagi dengan parameter sbb:
Pada tab General: Chain=forward,
Connection mark=ropix-con (pilih dari dropdown menu)
Pada tab Action:
Action=mark packet,
New pcket Mark=ropix (atau nama packet mark yg kita buat)
Klik Apply dan OK

- Klik menu Queues>Queues Tree
Buat rule (klik tanda + merah) dengan parameter sbb:

Pada tab General:
Name=ropix-downstrem (misal),
Parent=ether2 (adalah interface yg arah keluar),
Paket Mark=ropix (pilih dari dropdown, sama yg kita buat pada magle),
Queue Type=default,
Priority=8,
Limit At=8k (untuk bandwidth minimum)
Max limit=64k (untuk seting bandwith brustable)
Klik aplly dan Ok

Buat rule lagi dengan parameter sbb:
Pada tab General:
Name=ropix-Upstrem (misal),
Parent=ether1 (adalah interface yg arah kedalam),
Paket Mark=ropix (pilih dari dropdown, sama yg kita buat pada magle),
Queue Type=default,
Priority=8,
Limit At=8k (untuk bandwidth minimum upstrem)
Max limit=64k (untuk seting bandwith brustable)
Klik aplly dan Ok

-Cobalah browsing dan download dari ip yg kita limit tadi, Rate pada Queues rule tadi harus mengcounter, kalo belum periksa lagi langkah- langkah tadi

- Icon hijau menandakan bandwidth kurang dari batasan, Icon berubah kuning berarti bandwidth mendekali full dan merah berarti full.