<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-7102121149868120507</id><updated>2011-04-22T09:45:20.742+08:00</updated><title type='text'>monggo on jono site</title><subtitle type='html'>silahkan ada melihat apa saja yang terdapat di blog ini</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>11</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-6320809856212430192</id><published>2008-02-01T12:53:00.000+08:00</published><updated>2008-10-28T12:55:18.772+08:00</updated><title type='text'>setingan privat router</title><content type='html'># oct/28/2008 11:37:35 by RouterOS 2.9.6&lt;br /&gt;# software id = 4B3X-XNT&lt;br /&gt;#&lt;br /&gt;/ interface ethernet &lt;br /&gt;set PRIVATE name="PRIVATE" mtu=1500 mac-address=00:0B:6A:89:AD:F3 arp=enabled \&lt;br /&gt;    disable-running-check=yes auto-negotiation=yes full-duplex=yes \&lt;br /&gt;    cable-settings=default speed=100Mbps comment="" disabled=no &lt;br /&gt;set Proxy name="Proxy" mtu=1500 mac-address=00:08:C7:D2:3B:24 arp=enabled \&lt;br /&gt;    disable-running-check=yes auto-negotiation=yes full-duplex=yes \&lt;br /&gt;    cable-settings=default speed=100Mbps comment="" disabled=no &lt;br /&gt;set PUBLIC name="PUBLIC" mtu=1500 mac-address=00:50:04:76:F0:49 arp=enabled \&lt;br /&gt;    disable-running-check=yes auto-negotiation=yes full-duplex=yes \&lt;br /&gt;    cable-settings=default speed=100Mbps comment="" disabled=no &lt;br /&gt;/ interface wireless security-profiles &lt;br /&gt;set default name="default" mode=none wpa-unicast-ciphers="" \&lt;br /&gt;    wpa-group-ciphers="" pre-shared-key="" static-algo-0=none static-key-0="" \&lt;br /&gt;    static-algo-1=none static-key-1="" static-algo-2=none static-key-2="" \&lt;br /&gt;    static-algo-3=none static-key-3="" static-transmit-key=key-0 \&lt;br /&gt;    static-sta-private-algo=none static-sta-private-key="" \&lt;br /&gt;    radius-mac-authentication=no group-key-update=5m &lt;br /&gt;/ interface wireless align &lt;br /&gt;set frame-size=300 active-mode=yes receive-all=no \&lt;br /&gt;    audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 ssid-all=no \&lt;br /&gt;    frames-per-second=25 audio-min=-100 audio-max=-20 &lt;br /&gt;/ interface wireless snooper &lt;br /&gt;set multiple-channels=yes channel-time=200ms receive-errors=no &lt;br /&gt;/ interface wireless sniffer &lt;br /&gt;set multiple-channels=no channel-time=200ms only-headers=no receive-errors=no \&lt;br /&gt;    memory-limit=10 file-name="" file-limit=10 streaming-enabled=no \&lt;br /&gt;    streaming-server=0.0.0.0 streaming-max-rate=0 &lt;br /&gt;/ interface bridge port &lt;br /&gt;set PRIVATE bridge=none priority=128 path-cost=10 &lt;br /&gt;set Proxy bridge=none priority=128 path-cost=10 &lt;br /&gt;set PUBLIC bridge=none priority=128 path-cost=10 &lt;br /&gt;/ interface l2tp-server server &lt;br /&gt;set enabled=no max-mtu=1460 max-mru=1460 \&lt;br /&gt;    authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption &lt;br /&gt;/ interface pppoe-server server &lt;br /&gt;add service-name="pppoe" interface=PRIVATE max-mtu=1480 max-mru=1480 \&lt;br /&gt;    authentication=pap,chap,mschap1,mschap2 keepalive-timeout=10 \&lt;br /&gt;    one-session-per-host=no max-sessions=0 default-profile=default disabled=no &lt;br /&gt;/ interface pptp-server server &lt;br /&gt;set enabled=yes max-mtu=1460 max-mru=1460 \&lt;br /&gt;    authentication=pap,chap,mschap1,mschap2 keepalive-timeout=30 \&lt;br /&gt;    default-profile=default-encryption &lt;br /&gt;/ ip telephony region &lt;br /&gt;/ ip telephony gatekeeper &lt;br /&gt;set gatekeeper=none remote-id="" remote-address=0.0.0.0 &lt;br /&gt;/ ip telephony aaa &lt;br /&gt;set use-radius-accounting=no interim-update=0s &lt;br /&gt;/ ip telephony codec &lt;br /&gt;move G.711-uLaw-64k/sw &lt;br /&gt;move G.711-ALaw-64k/sw &lt;br /&gt;move G.729A-8k/sw &lt;br /&gt;move G.729-8k/sw &lt;br /&gt;move G.723.1-6.3k/sw &lt;br /&gt;move GSM-06.10-13.2k/sw &lt;br /&gt;move LPC-10-2.5k/sw &lt;br /&gt;/ ip accounting &lt;br /&gt;set enabled=no account-local-traffic=no threshold=256 &lt;br /&gt;/ ip accounting web-access &lt;br /&gt;set accessible-via-web=no address=0.0.0.0/0 &lt;br /&gt;/ ip service &lt;br /&gt;set telnet port=23 address=0.0.0.0/0 disabled=no &lt;br /&gt;set ftp port=21 address=0.0.0.0/0 disabled=no &lt;br /&gt;set www port=80 address=0.0.0.0/0 disabled=no &lt;br /&gt;set ssh port=22 address=0.0.0.0/0 disabled=no &lt;br /&gt;set www-ssl port=443 address=0.0.0.0/0 certificate=none disabled=yes &lt;br /&gt;/ ip socks &lt;br /&gt;set enabled=no port=1080 connection-idle-timeout=2m max-connections=200 &lt;br /&gt;/ ip arp &lt;br /&gt;/ ip upnp &lt;br /&gt;set enabled=no allow-disable-external-interface=yes show-dummy-rule=yes &lt;br /&gt;/ ip traffic-flow &lt;br /&gt;set enabled=no interfaces=all cache-entries=4k active-flow-timeout=30m \&lt;br /&gt;    inactive-flow-timeout=15s &lt;br /&gt;/ ip dns &lt;br /&gt;set primary-dns=202.134.0.155 secondary-dns=202.134.2.5 \&lt;br /&gt;    allow-remote-requests=yes cache-size=2048KiB cache-max-ttl=1w &lt;br /&gt;/ ip address &lt;br /&gt;add address=10.29.1.25/30 network=10.29.1.24 broadcast=10.29.1.27 \&lt;br /&gt;    interface=PRIVATE comment="CityNet" disabled=no &lt;br /&gt;add address=10.29.1.1/30 network=10.29.1.0 broadcast=10.29.1.3 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.29.1.6/30 network=10.29.1.4 broadcast=10.29.1.7 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.29.1.10/30 network=10.29.1.8 broadcast=10.29.1.11 \&lt;br /&gt;    interface=PRIVATE comment="Komp Tari" disabled=no &lt;br /&gt;add address=10.29.1.13/30 network=10.29.1.12 broadcast=10.29.1.15 \&lt;br /&gt;    interface=PRIVATE comment="LAB ICT Center + Multimedia" disabled=no &lt;br /&gt;add address=10.29.1.22/30 network=10.29.1.20 broadcast=10.29.1.23 \&lt;br /&gt;    interface=PRIVATE comment="MTU" disabled=no &lt;br /&gt;add address=10.29.1.30/30 network=10.29.1.28 broadcast=10.29.1.31 \&lt;br /&gt;    interface=PRIVATE comment="SD Teladan" disabled=no &lt;br /&gt;add address=10.29.1.33/30 network=10.29.1.32 broadcast=10.29.1.35 \&lt;br /&gt;    interface=PRIVATE comment="Perintis 1 - 195.170.5.77" disabled=no &lt;br /&gt;add address=10.29.1.41/30 network=10.29.1.40 broadcast=10.29.1.43 \&lt;br /&gt;    interface=PRIVATE comment="SMP Negeri 25" disabled=no &lt;br /&gt;add address=10.29.1.53/30 network=10.29.1.52 broadcast=10.29.1.55 \&lt;br /&gt;    interface=PRIVATE comment="SMA Negeri 2 - 195.170.5.16" disabled=yes &lt;br /&gt;add address=10.29.1.65/30 network=10.29.1.64 broadcast=10.29.1.67 \&lt;br /&gt;    interface=PRIVATE comment="SMA Utama - 195.170.5.17" disabled=no &lt;br /&gt;add address=10.29.1.69/30 network=10.29.1.68 broadcast=10.29.1.71 \&lt;br /&gt;    interface=PRIVATE comment="SMP Al-Kautsar" disabled=no &lt;br /&gt;add address=10.29.1.81/30 network=10.29.1.80 broadcast=10.29.1.83 \&lt;br /&gt;    interface=PRIVATE comment="Dinas Pendidikan Kota - 195.170.5.30" \&lt;br /&gt;    disabled=yes &lt;br /&gt;add address=10.29.1.85/30 network=10.29.1.84 broadcast=10.29.1.87 \&lt;br /&gt;    interface=PRIVATE comment="SD Negeri 1 Perumnas Way Halim" disabled=no &lt;br /&gt;add address=10.29.1.89/30 network=10.29.1.88 broadcast=10.29.1.91 \&lt;br /&gt;    interface=PRIVATE comment="SMA Negeri 12" disabled=no &lt;br /&gt;add address=10.29.1.101/30 network=10.29.1.100 broadcast=10.29.1.103 \&lt;br /&gt;    interface=PRIVATE comment="SMK Negeri 1" disabled=no &lt;br /&gt;add address=10.29.1.105/30 network=10.29.1.104 broadcast=10.29.1.107 \&lt;br /&gt;    interface=PRIVATE comment="SMP N 23 195.170.5.44" disabled=no &lt;br /&gt;add address=10.29.1.117/30 network=10.29.1.116 broadcast=10.29.1.119 \&lt;br /&gt;    interface=PRIVATE comment="UML" disabled=no &lt;br /&gt;add address=10.29.1.125/30 network=10.29.1.124 broadcast=10.29.1.127 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.129/30 network=10.29.1.128 broadcast=10.29.1.131 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.133/30 network=10.29.1.132 broadcast=10.29.1.135 \&lt;br /&gt;    interface=PRIVATE comment="SMK Surya Dharma - 195.170.6.8" disabled=no &lt;br /&gt;add address=10.29.1.137/30 network=10.29.1.136 broadcast=10.29.1.139 \&lt;br /&gt;    interface=PRIVATE comment="SMP Negeri 3" disabled=no &lt;br /&gt;add address=10.29.1.141/30 network=10.29.1.140 broadcast=10.29.1.143 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.145/30 network=10.29.1.144 broadcast=10.29.1.147 \&lt;br /&gt;    interface=PRIVATE comment="SMK Negeri 3" disabled=no &lt;br /&gt;add address=10.29.1.149/30 network=10.29.1.148 broadcast=10.29.1.151 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.153/30 network=10.29.1.152 broadcast=10.29.1.155 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.157/30 network=10.29.1.156 broadcast=10.29.1.159 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.161/30 network=10.29.1.160 broadcast=10.29.1.163 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.165/30 network=10.29.1.164 broadcast=10.29.1.167 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.169/30 network=10.29.1.168 broadcast=10.29.1.171 \&lt;br /&gt;    interface=PRIVATE comment="MA Nahdatuh Ulama" disabled=no &lt;br /&gt;add address=10.29.1.173/30 network=10.29.1.172 broadcast=10.29.1.175 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.177/30 network=10.29.1.176 broadcast=10.29.1.179 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.181/30 network=10.29.1.180 broadcast=10.29.1.183 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.185/30 network=10.29.1.184 broadcast=10.29.1.187 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.189/30 network=10.29.1.188 broadcast=10.29.1.191 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.193/30 network=10.29.1.192 broadcast=10.29.1.195 \&lt;br /&gt;    interface=PRIVATE comment="SMP Negeri 16" disabled=no &lt;br /&gt;add address=10.29.1.197/30 network=10.29.1.196 broadcast=10.29.1.199 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.201/30 network=10.29.1.200 broadcast=10.29.1.203 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.205/30 network=10.29.1.204 broadcast=10.29.1.207 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.29.1.209/30 network=10.29.1.208 broadcast=10.29.1.211 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.29.1.213/30 network=10.29.1.212 broadcast=10.29.1.215 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.217/30 network=10.29.1.216 broadcast=10.29.1.219 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.221/30 network=10.29.1.220 broadcast=10.29.1.223 \&lt;br /&gt;    interface=PRIVATE comment="SMA Negeri 8" disabled=no &lt;br /&gt;add address=10.29.1.225/30 network=10.29.1.224 broadcast=10.29.1.227 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.229/30 network=10.29.1.228 broadcast=10.29.1.231 \&lt;br /&gt;    interface=PRIVATE comment="SMA Negeri 5" disabled=no &lt;br /&gt;add address=10.29.1.233/30 network=10.29.1.232 broadcast=10.29.1.235 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.237/30 network=10.29.1.236 broadcast=10.29.1.239 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.241/30 network=10.29.1.240 broadcast=10.29.1.243 \&lt;br /&gt;    interface=PRIVATE comment="SMA Immanuel" disabled=no &lt;br /&gt;add address=10.29.1.245/30 network=10.29.1.244 broadcast=10.29.1.247 \&lt;br /&gt;    interface=PRIVATE comment="SMA BPK Penabur" disabled=no &lt;br /&gt;add address=10.29.1.249/30 network=10.29.1.248 broadcast=10.29.1.251 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.1.254/30 network=10.29.1.252 broadcast=10.29.1.255 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.2.1/30 network=10.29.2.0 broadcast=10.29.2.3 \&lt;br /&gt;    interface=PRIVATE comment="CityNet SMK" disabled=no &lt;br /&gt;add address=10.29.2.5/30 network=10.29.2.4 broadcast=10.29.2.7 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.2.9/30 network=10.29.2.8 broadcast=10.29.2.11 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.2.13/30 network=10.29.2.12 broadcast=10.29.2.15 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.2.17/30 network=10.29.2.16 broadcast=10.29.2.19 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=10.29.2.21/30 network=10.29.2.20 broadcast=10.29.2.23 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=yes &lt;br /&gt;add address=195.170.89.200/16 network=195.170.0.0 broadcast=195.170.255.255 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.29.10.1/24 network=10.29.10.0 broadcast=10.29.10.255 \&lt;br /&gt;    interface=PRIVATE comment="IP Voip" disabled=no &lt;br /&gt;add address=192.168.88.249/29 network=192.168.88.248 broadcast=192.168.88.255 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.3.3.2/30 network=10.3.3.0 broadcast=10.3.3.3 interface=Proxy \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add address=192.168.20.1/24 network=192.168.20.0 broadcast=192.168.20.255 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=10.29.0.18/28 network=10.29.0.16 broadcast=10.29.0.31 \&lt;br /&gt;    interface=PUBLIC comment="" disabled=no &lt;br /&gt;add address=193.168.0.1/28 network=193.168.0.0 broadcast=193.168.0.15 \&lt;br /&gt;    interface=PRIVATE comment="" disabled=no &lt;br /&gt;add address=199.168.18.2/27 network=199.168.18.0 broadcast=199.168.18.31 \&lt;br /&gt;    interface=PUBLIC comment="IP ke Server Pustekom" disabled=no &lt;br /&gt;/ ip proxy &lt;br /&gt;set enabled=no ports=8080 parent-proxy=0.0.0.0:0 \&lt;br /&gt;    maximal-client-connecions=1000 maximal-server-connectons=1000 \&lt;br /&gt;    cache-administrator="webmaster" max-object-size=4096KiB \&lt;br /&gt;    max-disk-cache-size=none max-ram-cache-size=67000KiB disk-database=yes &lt;br /&gt;/ ip proxy drive &lt;br /&gt;set &lt;br /&gt;/ ip proxy access &lt;br /&gt;add dst-port=23-25 action=deny comment="block telnet &amp; spam e-mail relaying" \&lt;br /&gt;    disabled=no &lt;br /&gt;add method=CONNECT dst-port=443 action=allow comment="allow CONNECT only to \&lt;br /&gt;    SSL ports 443 \[https\] and 563 \[snews\]" disabled=no &lt;br /&gt;add method=CONNECT dst-port=563 action=allow comment="allow CONNECT only to \&lt;br /&gt;    SSL ports 443 \[https\] and 563 \[snews\]" disabled=no &lt;br /&gt;add method=CONNECT action=deny comment="allow CONNECT only to SSL ports 443 \&lt;br /&gt;    \[https\] and 563 \[snews\]" disabled=no &lt;br /&gt;/ ip proxy cache &lt;br /&gt;add path=:\\? action=deny comment="don't cache dynamic http pages" disabled=no &lt;br /&gt;add path=:\\.php action=deny comment="don't cache dynamic http pages" \&lt;br /&gt;    disabled=no &lt;br /&gt;add path=:\\.asp action=deny comment="don't cache dynamic http pages" \&lt;br /&gt;    disabled=no &lt;br /&gt;/ ip neighbor discovery &lt;br /&gt;set PRIVATE discover=yes &lt;br /&gt;set Proxy discover=yes &lt;br /&gt;set PUBLIC discover=yes &lt;br /&gt;set pppoe-pur discover=no &lt;br /&gt;set pppoe-tari discover=no &lt;br /&gt;/ ip route &lt;br /&gt;add dst-address=192.168.0.250/32 gateway=10.29.1.26 scope=255 target-scope=10 \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add dst-address=202.150.0.0/24 gateway=10.29.1.26 scope=255 target-scope=10 \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add dst-address=202.154.183.8/32 gateway=10.29.0.17 scope=255 target-scope=10 \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.3.3.1 scope=255 target-scope=10 \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.29.0.17 scope=255 target-scope=10 \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;/ ip firewall nat &lt;br /&gt;add chain=dstnat in-interface=PRIVATE protocol=tcp dst-port=80 action=dst-nat \&lt;br /&gt;    to-addresses=10.3.3.1 to-ports=3128 comment="Transparent Proxy" \&lt;br /&gt;    disabled=yes &lt;br /&gt;add chain=dstnat in-interface=PRIVATE protocol=udp dst-port=953 action=dst-nat \&lt;br /&gt;    to-addresses=10.29.0.18 to-ports=953 comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy action=masquerade comment="Masquerade" \&lt;br /&gt;    disabled=yes &lt;br /&gt;add chain=srcnat action=masquerade comment="Masquerade" disabled=yes &lt;br /&gt;add chain=srcnat src-address=10.29.1.2 action=masquerade comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.5 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.9 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.14 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.17 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.21 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.29 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat src-address=10.29.1.26 action=masquerade comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.34 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.38 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.42 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.46 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.50 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.54 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.58 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.62 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.66 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.70 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.74 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.78 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.82 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.86 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.90 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.94 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.98 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.98 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.102 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.106 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.110 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.114 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.118 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.122 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.126 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.130 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.134 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.142 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.146 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.150 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.154 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.158 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.162 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.166 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.138 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.170 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.174 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.178 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.182 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.186 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.190 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.194 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.198 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.202 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.206 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.210 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.214 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.218 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.222 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.226 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.230 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.234 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.238 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.242 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.246 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.250 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.1.253 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat src-address=10.29.2.2 action=masquerade comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.6 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.10 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.14 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.22 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.26 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.30 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.34 action=masquerade \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.38 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.42 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.2.46 action=masquerade \&lt;br /&gt;    comment="" disabled=no &lt;br /&gt;add chain=srcnat src-address=192.168.20.0/24 action=masquerade comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=srcnat src-address=169.254.66.0/24 action=masquerade comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=10.29.10.0/24 \&lt;br /&gt;    action=masquerade comment="" disabled=no &lt;br /&gt;add chain=srcnat dst-address=10.29.0.0/24 action=masquerade comment="" \&lt;br /&gt;    disabled=yes &lt;br /&gt;add chain=dstnat in-interface=PRIVATE dst-address=10.29.1.0/24 protocol=tcp \&lt;br /&gt;    dst-port=80 action=dst-nat to-addresses=10.29.0.24 to-ports=80 \&lt;br /&gt;    comment="Redirect Port 80" disabled=no &lt;br /&gt;add chain=srcnat src-address=10.29.0.0/16 dst-address=195.170.0.0/16 \&lt;br /&gt;    action=masquerade comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=192.168.1.0/26 \&lt;br /&gt;    action=masquerade comment="" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=193.168.0.0/28 \&lt;br /&gt;    action=masquerade comment="Perintis 1" disabled=no &lt;br /&gt;add chain=srcnat out-interface=Proxy src-address=125.160.10.0/28 \&lt;br /&gt;    action=masquerade comment="Kantor SMKN2" disabled=no &lt;br /&gt;/ ip firewall connection tracking &lt;br /&gt;set enabled=yes tcp-syn-sent-timeout=2m tcp-syn-received-timeout=1m \&lt;br /&gt;    tcp-established-timeout=5d tcp-fin-wait-timeout=2m \&lt;br /&gt;    tcp-close-wait-timeout=1m tcp-last-ack-timeout=30s \&lt;br /&gt;    tcp-time-wait-timeout=2m tcp-close-timeout=10s udp-timeout=30s \&lt;br /&gt;    udp-stream-timeout=3m icmp-timeout=30s generic-timeout=10m &lt;br /&gt;/ ip firewall filter &lt;br /&gt;add chain=input connection-state=invalid action=drop comment="Drop Invalid \&lt;br /&gt;    connections" disabled=no &lt;br /&gt;add chain=input connection-state=established action=accept comment="Allow \&lt;br /&gt;    Established connections" disabled=no &lt;br /&gt;add chain=input protocol=udp action=accept comment="Allow UDP" disabled=no &lt;br /&gt;add chain=input protocol=icmp action=accept comment="Allow ICMP" disabled=no &lt;br /&gt;add chain=forward protocol=tcp connection-state=invalid action=drop \&lt;br /&gt;    comment="drop invalid connections" disabled=no &lt;br /&gt;add chain=forward connection-state=established action=accept comment="allow \&lt;br /&gt;    already established connections" disabled=no &lt;br /&gt;add chain=forward connection-state=related action=accept comment="allow \&lt;br /&gt;    related connections" disabled=no &lt;br /&gt;add chain=forward protocol=tcp action=jump jump-target=tcp comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=forward protocol=udp action=jump jump-target=udp comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=forward protocol=icmp action=jump jump-target=icmp comment="" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=69 action=drop comment="deny TFTP" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=111 action=drop comment="deny RPC \&lt;br /&gt;    portmapper" disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=135 action=drop comment="deny RPC \&lt;br /&gt;    portmapper" disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=137-139 action=drop comment="deny NBT" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=445 action=drop comment="deny cifs" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=2049 action=drop comment="deny NFS" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=12345-12346 action=drop comment="deny \&lt;br /&gt;    NetBus" disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=20034 action=drop comment="deny NetBus" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=3133 action=drop comment="deny \&lt;br /&gt;    BackOriffice" disabled=no &lt;br /&gt;add chain=tcp protocol=tcp dst-port=67-68 action=drop comment="deny DHCP" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=udp protocol=udp dst-port=69 action=drop comment="deny TFTP" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=udp protocol=udp dst-port=111 action=drop comment="deny PRC \&lt;br /&gt;    portmapper" disabled=no &lt;br /&gt;add chain=udp protocol=udp dst-port=135 action=drop comment="deny PRC \&lt;br /&gt;    portmapper" disabled=no &lt;br /&gt;add chain=udp protocol=udp dst-port=137-139 action=drop comment="deny NBT" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=udp protocol=udp dst-port=2049 action=drop comment="deny NFS" \&lt;br /&gt;    disabled=no &lt;br /&gt;add chain=udp protocol=udp dst-port=3133 action=drop comment="deny \&lt;br /&gt;    BackOriffice" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=0:0 action=accept comment="drop \&lt;br /&gt;    invalid connections" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=3:0 action=accept comment="allow \&lt;br /&gt;    established connections" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=3:1 action=accept comment="allow \&lt;br /&gt;    already established connections" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=4:0 action=accept comment="allow \&lt;br /&gt;    source quench" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=8:0 action=accept comment="allow \&lt;br /&gt;    echo request" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=11:0 action=accept comment="allow \&lt;br /&gt;    time exceed" disabled=no &lt;br /&gt;add chain=icmp protocol=icmp icmp-options=12:0 action=accept comment="allow \&lt;br /&gt;    parameter bad" disabled=no &lt;br /&gt;add chain=icmp action=drop comment="deny all other types" disabled=no &lt;br /&gt;add chain=forward src-address=10.29.10.0/24 dst-address=0.0.0.0/0 protocol=tcp \&lt;br /&gt;    dst-port=80 action=drop comment="firewall-jalur-voip" disabled=no &lt;br /&gt;add chain=forward dst-address=66.55.141.0/24 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=64.191.65.149 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=69.50.129.124 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=146.82.202.0/24 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=146.82.203.0/24 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=146.82.200.0/24 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=64.72.114.0/24 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=forward dst-address=76.9.6.0/24 protocol=tcp action=drop \&lt;br /&gt;    comment="Bokep" disabled=no &lt;br /&gt;add chain=input in-interface=PRIVATE dst-address=255.255.255.255 protocol=udp \&lt;br /&gt;    dst-port=5678 action=accept comment="Winbox Viewer" disabled=no &lt;br /&gt;/ ip firewall service-port &lt;br /&gt;set ftp ports=21 disabled=no &lt;br /&gt;set tftp ports=69 disabled=no &lt;br /&gt;set irc ports=6667 disabled=no &lt;br /&gt;set h323 disabled=yes &lt;br /&gt;set quake3 disabled=no &lt;br /&gt;set mms disabled=no &lt;br /&gt;set gre disabled=yes &lt;br /&gt;set pptp disabled=yes &lt;br /&gt;/ ip dhcp-server config &lt;br /&gt;set store-leases-disk=5m &lt;br /&gt;/ ip hotspot service-port &lt;br /&gt;set ftp ports=21 disabled=no &lt;br /&gt;/ ip hotspot profile &lt;br /&gt;set default name="default" hotspot-address=0.0.0.0 dns-name="" \&lt;br /&gt;    html-directory=hotspot rate-limit="" http-proxy=0.0.0.0:0 \&lt;br /&gt;    smtp-server=0.0.0.0 login-by=cookie,http-chap http-cookie-lifetime=3d \&lt;br /&gt;    split-user-domain=no use-radius=no &lt;br /&gt;/ ip hotspot user profile &lt;br /&gt;set default name="default" idle-timeout=none keepalive-timeout=2m \&lt;br /&gt;    status-autorefresh=1m shared-users=1 transparent-proxy=yes \&lt;br /&gt;    open-status-page=always advertise=no &lt;br /&gt;/ ip ipsec policy &lt;br /&gt;add src-address=0.0.0.0/0:any dst-address=169.254.66.0/24:any protocol=all \&lt;br /&gt;    action=encrypt level=use ipsec-protocols=esp tunnel=yes \&lt;br /&gt;    sa-src-address=0.0.0.0 sa-dst-address=0.0.0.0 proposal=default \&lt;br /&gt;    manual-sa=none dont-fragment=clear disabled=no &lt;br /&gt;/ ip ipsec proposal &lt;br /&gt;add name="default" auth-algorithms=sha1 enc-algorithms=3des lifetime=30m \&lt;br /&gt;    lifebytes=0 pfs-group=modp1024 disabled=no &lt;br /&gt;/ system logging &lt;br /&gt;add topics=info prefix="" action=memory disabled=no &lt;br /&gt;add topics=error prefix="" action=memory disabled=no &lt;br /&gt;add topics=warning prefix="" action=memory disabled=no &lt;br /&gt;add topics=critical prefix="" action=echo disabled=no &lt;br /&gt;/ system logging action &lt;br /&gt;set memory name="memory" target=memory memory-lines=100 memory-stop-on-full=no &lt;br /&gt;set disk name="disk" target=disk disk-lines=100 disk-stop-on-full=no &lt;br /&gt;set echo name="echo" target=echo remember=yes &lt;br /&gt;set remote name="remote" target=remote remote=0.0.0.0:514 &lt;br /&gt;/ system upgrade mirror &lt;br /&gt;set enabled=no primary-server=0.0.0.0 secondary-server=0.0.0.0 \&lt;br /&gt;    check-interval=1d user="" &lt;br /&gt;/ system clock dst &lt;br /&gt;set dst-delta=+01:00 dst-start="jan/01/1970 00:00:00" dst-end="jan/01/1970 \&lt;br /&gt;    00:00:00" &lt;br /&gt;/ system watchdog &lt;br /&gt;set reboot-on-failure=yes watch-address=none watchdog-timer=yes \&lt;br /&gt;    no-ping-delay=5m automatic-supout=yes auto-send-supout=no &lt;br /&gt;/ system console &lt;br /&gt;add port=serial0 term="" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;set FIXME term="linux" disabled=no &lt;br /&gt;/ system console screen &lt;br /&gt;set line-count=25 &lt;br /&gt;/ system identity &lt;br /&gt;set name="PRIVATE-ROUTER" &lt;br /&gt;/ system note &lt;br /&gt;set show-at-login=yes note="" &lt;br /&gt;/ system gps &lt;br /&gt;set enabled=no set-system-time=no &lt;br /&gt;/ system lcd &lt;br /&gt;set enabled=no type=24x4 port=parallel contrast=0 &lt;br /&gt;/ system lcd page &lt;br /&gt;set time display-time=5s disabled=yes &lt;br /&gt;set resources display-time=5s disabled=yes &lt;br /&gt;set uptime display-time=5s disabled=yes &lt;br /&gt;set packets display-time=5s disabled=yes &lt;br /&gt;set bits display-time=5s disabled=yes &lt;br /&gt;set version display-time=5s disabled=yes &lt;br /&gt;set pppoe-tari display-time=5s disabled=yes &lt;br /&gt;set PRIVATE display-time=5s disabled=yes &lt;br /&gt;set Proxy display-time=5s disabled=yes &lt;br /&gt;set PUBLIC display-time=5s disabled=yes &lt;br /&gt;set pppoe-pur display-time=5s disabled=yes &lt;br /&gt;/ system ntp server &lt;br /&gt;set enabled=no broadcast=no multicast=no manycast=yes &lt;br /&gt;/ system ntp client &lt;br /&gt;set enabled=no mode=unicast primary-ntp=0.0.0.0 secondary-ntp=0.0.0.0 &lt;br /&gt;/ system routerboard bios &lt;br /&gt;set &lt;br /&gt;/ system health &lt;br /&gt;set state-after-reboot=enabled &lt;br /&gt;/ port &lt;br /&gt;set serial0 name="serial0" baud-rate=9600 data-bits=8 parity=none stop-bits=1 \&lt;br /&gt;    flow-control=hardware &lt;br /&gt;/ ppp profile &lt;br /&gt;set default name="default" use-compression=default use-vj-compression=default \&lt;br /&gt;    use-encryption=default only-one=default change-tcp-mss=default comment="" &lt;br /&gt;add name="RtRwNet" local-address=169.254.66.1 use-compression=default \&lt;br /&gt;    use-vj-compression=default use-encryption=default only-one=default \&lt;br /&gt;    change-tcp-mss=default rate-limit=0/0 dns-server=10.29.1.1 comment="" &lt;br /&gt;add name="bandwidth-128" local-address=169.254.66.1 use-compression=default \&lt;br /&gt;    use-vj-compression=default use-encryption=default only-one=default \&lt;br /&gt;    change-tcp-mss=default rate-limit=128000/128000 comment="" &lt;br /&gt;add name="bandwidth-256" local-address=169.254.66.1 use-compression=default \&lt;br /&gt;    use-vj-compression=default use-encryption=default only-one=default \&lt;br /&gt;    change-tcp-mss=default rate-limit=256000/256000 comment="" &lt;br /&gt;add name="ICT" local-address=169.254.66.1 use-compression=default \&lt;br /&gt;    use-vj-compression=default use-encryption=default only-one=default \&lt;br /&gt;    change-tcp-mss=default rate-limit=1024000/1024000 comment="" &lt;br /&gt;add name="kantor" local-address=125.160.134.1 use-compression=default \&lt;br /&gt;    use-vj-compression=default use-encryption=default only-one=default \&lt;br /&gt;    change-tcp-mss=default rate-limit=128000/128000 comment="" &lt;br /&gt;set default-encryption name="default-encryption" use-compression=default \&lt;br /&gt;    use-vj-compression=default use-encryption=yes only-one=default \&lt;br /&gt;    change-tcp-mss=default comment="" &lt;br /&gt;/ ppp secret &lt;br /&gt;add name="tari" service=pppoe caller-id="" password="tari" profile=ICT \&lt;br /&gt;    local-address=169.254.66.1 remote-address=169.254.66.6 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="harry" service=pppoe caller-id="" password="harry" profile=ICT \&lt;br /&gt;    local-address=169.254.66.1 remote-address=169.254.66.2 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="jono" service=pppoe caller-id="" password="jono" profile=ICT \&lt;br /&gt;    local-address=169.254.66.1 remote-address=169.254.66.3 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="jpinluv" service=pppoe caller-id="" password="jpinluv" profile=ICT \&lt;br /&gt;    local-address=169.254.66.1 remote-address=169.254.66.4 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="pur" service=pppoe caller-id="" password="pur" profile=ICT \&lt;br /&gt;    local-address=169.254.66.1 remote-address=169.254.66.5 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="hadi" service=pppoe caller-id="" password="hadi" profile=ICT \&lt;br /&gt;    local-address=0.0.0.0 remote-address=169.254.66.8 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="budi" service=pppoe caller-id="" password="budi" profile=ICT \&lt;br /&gt;    local-address=0.0.0.0 remote-address=169.254.66.9 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="arjuna" service=pppoe caller-id="" password="008" \&lt;br /&gt;    profile=bandwidth-256 local-address=10.29.1.142 \&lt;br /&gt;    remote-address=169.254.66.10 routes="" limit-bytes-in=0 limit-bytes-out=0 \&lt;br /&gt;    comment="" disabled=yes &lt;br /&gt;add name="smkn2" service=pppoe caller-id="" password="123" profile=kantor \&lt;br /&gt;    local-address=125.160.10.1 remote-address=125.160.10.4 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="kantor01" service=pppoe caller-id="" password="smkn2" profile=kantor \&lt;br /&gt;    local-address=125.160.10.1 remote-address=125.160.10.2 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="kantor02" service=pppoe caller-id="" password="smkn2" profile=kantor \&lt;br /&gt;    local-address=125.160.10.1 remote-address=125.160.10.3 routes="" \&lt;br /&gt;    limit-bytes-in=0 limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;add name="pptp" service=pptp caller-id="" password="pptp1" profile=default \&lt;br /&gt;    local-address=10.0.0.1 remote-address=10.0.0.2 routes="" limit-bytes-in=0 \&lt;br /&gt;    limit-bytes-out=0 comment="" disabled=no &lt;br /&gt;/ ppp aaa &lt;br /&gt;set use-radius=no accounting=yes interim-update=0s &lt;br /&gt;/ queue type &lt;br /&gt;set default name="default" kind=pfifo pfifo-limit=50 &lt;br /&gt;set ethernet-default name="ethernet-default" kind=pfifo pfifo-limit=50 &lt;br /&gt;set wireless-default name="wireless-default" kind=sfq sfq-perturb=5 \&lt;br /&gt;    sfq-allot=1514 &lt;br /&gt;set synchronous-default name="synchronous-default" kind=red red-limit=60 \&lt;br /&gt;    red-min-threshold=10 red-max-threshold=50 red-burst=20 red-avg-packet=1000 &lt;br /&gt;set hotspot-default name="hotspot-default" kind=sfq sfq-perturb=5 \&lt;br /&gt;    sfq-allot=1514 &lt;br /&gt;/ queue simple &lt;br /&gt;add name="Sesama" dst-address=10.29.0.0/16 interface=all parent=none \&lt;br /&gt;    priority=8 queue=default/default limit-at=0/0 max-limit=0/0 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="Streaming CityNet" dst-address=192.168.0.250/32 interface=all \&lt;br /&gt;    parent=none priority=8 queue=default/default limit-at=0/0 max-limit=0/0 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="Web CityNet" target-addresses=0.0.0.0/0 dst-address=202.150.0.0/24 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=0/0 total-queue=default disabled=no &lt;br /&gt;add name="Voip" dst-address=10.29.0.23/32 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=0/0 total-queue=default \&lt;br /&gt;    disabled=no &lt;br /&gt;add name="HotSpot Server" target-addresses=10.29.1.2/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=512000/512000 total-queue=default disabled=no &lt;br /&gt;add name="Rumah pak harry" target-addresses=10.29.1.5/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=128000/128000 total-queue=default disabled=no &lt;br /&gt;add name="Komp Tari" target-addresses=10.29.1.9/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=128000/128000 total-queue=default disabled=no &lt;br /&gt;add name="Lab ICT/Multimedia" target-addresses=10.29.1.14/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=512000/512000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="MTU" target-addresses=10.29.1.21/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=128000/128000 total-queue=default disabled=no &lt;br /&gt;add name="City.Net" target-addresses=10.29.1.26/32,10.29.2.42/32,192.168.0.0/24\&lt;br /&gt;     dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=3000000/3000000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SD Teladan" target-addresses=10.29.1.29/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="SMA Perintis 1" target-addresses=10.29.1.34/32,193.168.0.0/28 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=64000/64000 max-limit=512000/512000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMP Negeri 25" target-addresses=10.29.1.42/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=128000/128000 total-queue=default disabled=no &lt;br /&gt;add name="SMP Al-Kautsar" target-addresses=10.29.1.70/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="SMA Utama" target-addresses=10.29.1.66/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="SMK Surya Dharma" target-addresses=10.29.1.134/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SD Negeri 1 Perumnas Way Halim" target-addresses=10.29.1.86/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=128000/128000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMA Negeri 12" target-addresses=10.29.1.90/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="SMA Xaverius - 195.170.5.22" target-addresses=10.29.1.98/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMP Negeri 23 - 195.170.5.44" target-addresses=10.29.1.106/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMK Negeri 1-195.170.5.68" target-addresses=10.29.1.102/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="UML" target-addresses=10.29.1.118/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="SMP Negeri 3" target-addresses=10.29.1.138/32,192.168.20.0/24 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=128000/128000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMK Negeri 3 - 195.170.5.29" target-addresses=10.29.1.146/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=512000/512000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="MA Nahdatul Ulama -195.170.5.18" target-addresses=10.29.1.170/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMP Negeri 16 - 195.170.5.28" target-addresses=10.29.1.194/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMP Negeri  3 - 195.170.5.75" \&lt;br /&gt;    target-addresses=10.29.1.206/32,192.168.20.0/24 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="HotspotCityNet" target-addresses=10.29.1.210/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=2000000/2000000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMA Negeri 8 - 195.170.5.81" \&lt;br /&gt;    target-addresses=10.29.1.222/32,192.168.88.248/29 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=256000/256000 total-queue=default disabled=no &lt;br /&gt;add name="SMA Negeri 5" target-addresses=10.29.1.230/32 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default limit-at=0/0 \&lt;br /&gt;    max-limit=128000/128000 total-queue=default disabled=no &lt;br /&gt;add name="SMA Imanuel - 195.170.5.32" target-addresses=10.29.1.242/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="SMA BPK Penabur 195.170.5.38" target-addresses=10.29.1.246/32 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=256000/256000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="CityNet - SMK" target-addresses=10.29.2.2/32,192.168.212.0/24 \&lt;br /&gt;    dst-address=0.0.0.0/0 interface=all parent=none priority=8 \&lt;br /&gt;    queue=default/default limit-at=0/0 max-limit=2000000/2000000 \&lt;br /&gt;    total-queue=default disabled=no &lt;br /&gt;add name="Kantor SMKN2" target-addresses=125.160.10.0/28 dst-address=0.0.0.0/0 \&lt;br /&gt;    interface=all parent=none priority=8 queue=default/default \&lt;br /&gt;    limit-at=64000/64000 max-limit=256000/256000 total-queue=default \&lt;br /&gt;    disabled=no &lt;br /&gt;/ user &lt;br /&gt;add name="admin" group=full address=0.0.0.0/0 comment="system default user" \&lt;br /&gt;    disabled=no &lt;br /&gt;/ user group &lt;br /&gt;add name="read" policy=local,telnet,ssh,reboot,read,test,winbox,password,web,!f\&lt;br /&gt;    tp,!write,!policy &lt;br /&gt;add name="write" policy=local,telnet,ssh,reboot,read,write,test,winbox,password\&lt;br /&gt;    ,web,!ftp,!policy &lt;br /&gt;add name="full" policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,winbo\&lt;br /&gt;    x,password,web &lt;br /&gt;/ user aaa &lt;br /&gt;set use-radius=no accounting=yes interim-update=0s default-group=read &lt;br /&gt;/ radius incoming &lt;br /&gt;set accept=no port=1700 &lt;br /&gt;/ driver &lt;br /&gt;/ snmp &lt;br /&gt;set enabled=no contact="" location="" &lt;br /&gt;/ snmp community &lt;br /&gt;set public name="public" address=0.0.0.0/0 read-access=yes &lt;br /&gt;/ tool bandwidth-server &lt;br /&gt;set enabled=yes authenticate=yes allocate-udp-ports-from=2000 max-sessions=10 &lt;br /&gt;/ tool mac-server ping &lt;br /&gt;set enabled=yes &lt;br /&gt;/ tool e-mail &lt;br /&gt;set server=0.0.0.0 from="&lt;&gt;" &lt;br /&gt;/ tool sniffer &lt;br /&gt;set interface=all only-headers=no memory-limit=10 file-name="" file-limit=10 \&lt;br /&gt;    streaming-enabled=no streaming-server=0.0.0.0 filter-stream=yes \&lt;br /&gt;    filter-protocol=ip-only filter-address1=0.0.0.0/0:0-65535 \&lt;br /&gt;    filter-address2=0.0.0.0/0:0-65535 &lt;br /&gt;/ tool graphing &lt;br /&gt;set store-every=5min &lt;br /&gt;/ tool graphing queue &lt;br /&gt;add simple-queue=all allow-address=0.0.0.0/0 store-on-disk=yes \&lt;br /&gt;    allow-target=yes disabled=no &lt;br /&gt;/ tool graphing interface &lt;br /&gt;add interface=PRIVATE allow-address=0.0.0.0/0 store-on-disk=yes disabled=no &lt;br /&gt;add interface=Proxy allow-address=0.0.0.0/0 store-on-disk=yes disabled=no &lt;br /&gt;add interface=PUBLIC allow-address=0.0.0.0/0 store-on-disk=yes disabled=no &lt;br /&gt;/ routing bgp instance &lt;br /&gt;set default as=65530 router-id=0.0.0.0 redistribute-static=no \&lt;br /&gt;    redistribute-connected=no redistribute-rip=no redistribute-ospf=no \&lt;br /&gt;    redistribute-other-bgp=no name="default" out-filter="" disabled=no &lt;br /&gt;/ routing rip &lt;br /&gt;set redistribute-static=no redistribute-connected=no redistribute-ospf=no \&lt;br /&gt;    redistribute-bgp=no metric-static=1 metric-connected=1 metric-ospf=1 \&lt;br /&gt;    metric-bgp=1 update-timer=30s timeout-timer=3m garbage-timer=2m &lt;br /&gt;/ routing ospf &lt;br /&gt;set router-id=0.0.0.0 distribute-default=never redistribute-connected=no \&lt;br /&gt;    redistribute-static=no redistribute-rip=no redistribute-bgp=no \&lt;br /&gt;    metric-default=1 metric-connected=20 metric-static=20 metric-rip=20 \&lt;br /&gt;    metric-bgp=20 &lt;br /&gt;/ routing ospf area &lt;br /&gt;set backbone area-id=0.0.0.0 authentication=none prefix-list-import="" \&lt;br /&gt;    prefix-list-export="" disabled=no&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-6320809856212430192?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/6320809856212430192/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=6320809856212430192&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/6320809856212430192'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/6320809856212430192'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2008/02/setingan-privat-router.html' title='setingan privat router'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-3186076246817171963</id><published>2007-08-29T22:51:00.001+08:00</published><updated>2008-05-10T17:58:33.727+08:00</updated><title type='text'>Tentang kulo</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_0qG9vc0PDBk/SCVxjz7CXeI/AAAAAAAAAAg/m4Pudtjq-Y4/s1600-h/jonolpg.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://1.bp.blogspot.com/_0qG9vc0PDBk/SCVxjz7CXeI/AAAAAAAAAAg/m4Pudtjq-Y4/s320/jonolpg.jpg" alt="" id="BLOGGER_PHOTO_ID_5198686204916293090" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://images.bigoo.ws/content/image/divider/dividers_135.gif"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 829px; height: 8px;" src="http://images.bigoo.ws/content/image/divider/dividers_135.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;marquee direction="LEFT" behavior="SCROLL" scrollamount="14" scrolldelay="250"&gt;&lt;br /&gt;************  I’m Just a NewBie but I Learn to be a Stupied  *************&lt;br /&gt;&lt;/marquee&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;marquee direction="LEFT" behavior="SCROLL" scrollamount="14" scrolldelay="250"&gt;&lt;br /&gt;************ Selamat datang di jono site silah akan ada melihat-lihat blog ini.created by jono on warnet citynet lampung *************&lt;br /&gt;&lt;/marquee&gt;&lt;br /&gt;&lt;br /&gt;&lt;script language="javascript" type="text/javascript"&gt;&lt;br /&gt;window.status="Welcome on jono";&lt;br /&gt;window.alert("Selamat Datang on jono site")&lt;br /&gt;&lt;/script&gt;&lt;br /&gt;&lt;div style="text-align: justify;"&gt;kulo hanya orang yang coba untuk berbagi kepada saudara pembaca sekalian apabila ada sesutu yang tidak sedap menurut anda wahai pembaca budiman.Walauw komentar yang tidak  penak silahkan ken saja .di web ini tidak ada larangan untuk menghina tau mengenyek silahakan saya berikan 98% hal anda .Toh ada sudah gede tapi kalo ada yang gk gede kulo minta  ngapuro(maaf).yayayayayaya.&lt;br /&gt;Neg kene sampean iso delok beberapa artikel yang mungkin berguna untuk anda sekalian.Apabila anda posting di web ini kiyambaan harapkan anda memberikan komentar walau menyakitkan hati gpp kok .Kiyambaan hanya wong deso yang mencoba untuk berbagi kepada anda semua yang membutuhkan informasi yang anda cari ya sapa tao ada di dalam site ini.Site ini baru nebeng aja karena kalo buat sendiri belom bisa ya nebeng aja lah dulu ya doa kan wae ben kulo iso gawe web server dewe hehehehe.&lt;br /&gt;&lt;/div&gt;&lt;blockquote&gt;&lt;ul&gt;&lt;li&gt;Nama lengkap kulo                  Hari budi saputro&lt;/li&gt;&lt;li&gt;Tempat,tanggal lahir          Tanjung karang,05 oktober 1987&lt;/li&gt;&lt;li&gt;Tempat kuliah                                     Politeknik bandar lampung&lt;/li&gt;&lt;li&gt;E-maill                                                                    jono_lpg@yahoo.com&lt;/li&gt;&lt;/ul&gt;&lt;div style="text-align: justify;"&gt;Apabila anda  merasa puas dengan apa yang ada dapat kan sekarng anda adalah orang yang terpuji.Dan apa bila ada orang yang tidah pernah puas untuk melakukan hal-hal yang berguna  demi masyarakat atau demi  orang banyak anda adalah manusia yang mulia.menurut sapa yayaya gak taulalah .&lt;br /&gt;&lt;div style="text-align: justify;"&gt;&lt;blockquote&gt;&lt;br /&gt;&lt;/blockquote&gt;&lt;/div&gt;&lt;br /&gt;&lt;/div&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;marquee direction="LEFT" behavior="SCROLL" scrollamount="14" scrolldelay="200"&gt;&lt;br /&gt;************ created by jono on warnet citynet lampung *************&lt;br /&gt;&lt;/marquee&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-3186076246817171963?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/3186076246817171963/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=3186076246817171963&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/3186076246817171963'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/3186076246817171963'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/selamat-datang-di-web-kulo-neg-kene.html' title='Tentang kulo'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_0qG9vc0PDBk/SCVxjz7CXeI/AAAAAAAAAAg/m4Pudtjq-Y4/s72-c/jonolpg.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-4197836723864257802</id><published>2007-08-29T22:21:00.000+08:00</published><updated>2007-08-29T23:05:39.388+08:00</updated><title type='text'>tutorial-mikrotik</title><content type='html'>ni ada sedikit ilmu dr gw untuk sipa aja yg mao belajar mikrotik&lt;br /&gt;&lt;br /&gt;Langkah-langkah berikut adalah dasar-dasar setup mikrotik yang dikonfigurasikan untuk jaringan&lt;br /&gt;sederhana sebagai gateway server.&lt;br /&gt;&lt;br /&gt;1. Langkah pertama adalah install Mikrotik RouterOS pada PC atau pasang DOM.(paling 10 menit selesai)&lt;br /&gt;&lt;br /&gt;2. Login Pada Mikrotik Routers melalui console :&lt;br /&gt;MikroTik v2.9.6&lt;br /&gt;&lt;br /&gt;Login: admin &lt;enter&gt;&lt;br /&gt;Password: (kosongkan) &lt;enter&gt;&lt;br /&gt;&lt;br /&gt;Sampai langkah ini kita sudah bisa masuk pada mesin Mikrotik. User default adalah admin&lt;br /&gt;dan tanpa password, tinggal ketik admin kemudian tekan tombol enter.&lt;br /&gt;&lt;br /&gt;3. Untuk keamanan ganti password default&lt;br /&gt;[admin@Mikrotik] &gt; password&lt;br /&gt;old password: *****&lt;br /&gt;new password: *****&lt;br /&gt;retype new password: *****&lt;br /&gt;[admin@ Mikrotik]] &gt;&lt;br /&gt;&lt;br /&gt;4. Mengganti nama Mikrotik Router, pada langkah ini nama server akan diganti menjadi “XAVIERO” (nama ini sih bebas2 aja mo diganti)&lt;br /&gt;[admin@Mikrotik] &gt; system identity set name=jono&lt;br /&gt;&lt;br /&gt;[admin@jono] &gt;&lt;br /&gt;&lt;br /&gt;5. Melihat interface pada Mikrotik Router&lt;br /&gt;[admin@jono] &gt; interface print&lt;br /&gt;Flags: X - disabled, D - dynamic, R - running&lt;br /&gt;# NAME TYPE RX-RATE TX-RATE MTU&lt;br /&gt;0 R ether1 ether 0 0 1500&lt;br /&gt;1 R ether2 ether 0 0 1500&lt;br /&gt;[admin@jono] &gt;&lt;br /&gt;&lt;br /&gt;6. Memberikan IP address pada interface Mikrotik. Misalkan ether1 akan kita gunakan untuk koneksi ke Internet dengan IP 202.154.89.152 dan ether2 akan kita gunakan untuk network local kita dengan IP 192.168.0.1&lt;br /&gt;&lt;br /&gt;[admin@jono] &gt; ip address add address=202.154.89.152&lt;br /&gt;netmask=255.255.255.0 interface=ether1&lt;br /&gt;[admin@jono] &gt; ip address add address=192.168.0.1&lt;br /&gt;netmask=255.255.255.0 interface=ether2&lt;br /&gt;&lt;br /&gt;7. Melihat konfigurasi IP address yang sudah kita berikan&lt;br /&gt;[admin@jono] &gt;ip address print&lt;br /&gt;&lt;br /&gt;8. Memberikan default Gateway, diasumsikan gateway untuk koneksi internet adalah 192.168.0.254&lt;br /&gt;[admin@jono] &gt; /ip route add gateway=202.154.5.36&lt;br /&gt;&lt;br /&gt;9. Melihat Tabel routing pada Mikrotik Routers&lt;br /&gt;[admin@jono] &gt; ip route print&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;10. Tes Ping ke Gateway untuk memastikan konfigurasi sudah benar&lt;br /&gt;[admin@jono] &gt; ping 202.154.5.36&lt;br /&gt;192.168.0.254 64 byte ping: ttl=64 time&lt;1 ttl="64" max =" 0/0.0/0"&gt; ip dns set primary-dns=202.152.5.36 allow-remoterequests=no&lt;br /&gt;[admin@jono] &gt; ip dns set secondary-dns=202.152.5.39 allow-remoterequests=no&lt;br /&gt;&lt;br /&gt;12. Melihat konfigurasi DNS&lt;br /&gt;[admin@jono] &gt; ip dns print&lt;br /&gt;primary-dns: 202.152.5.36&lt;br /&gt;secondary-dns: 202.152.5.39&lt;br /&gt;allow-remote-requests: no&lt;br /&gt;cache-size: 2048KiB&lt;br /&gt;cache-max-ttl: 1w&lt;br /&gt;cache-used: 16KiB&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;13. Tes untuk akses domain, misalnya dengan ping nama domain&lt;br /&gt;[admin@jono] &gt; ping yahoo.com&lt;br /&gt;216.109.112.135 64 byte ping: ttl=48 time=250 ms&lt;br /&gt;Jika sudah berhasil reply berarti seting DNS sudah benar.&lt;br /&gt;&lt;br /&gt;14. Setup Masquerading, Jika Mikrotik akan kita pergunakan sebagai gateway server maka agar client computer pada network dapat terkoneksi ke internet perlu kita beri masquerading.&lt;br /&gt;[admin@jono]&gt; ip firewall nat add action=masquerade outinterface=&lt;br /&gt;ether1 chain:srcnat&lt;br /&gt;&lt;br /&gt;15. Melihat konfigurasi Masquerading&lt;br /&gt;[admin@jono]ip firewall nat print&lt;br /&gt;Flags: X - disabled, I - invalid, D - dynamic&lt;br /&gt;0 chain=srcnat out-interface=ether1 action=masquerade&lt;br /&gt;&lt;br /&gt;Setelah langkah ini bisa dilakukan pemeriksaan untuk koneksi dari jaringan local. Dan jika berhasil berarti kita sudah berhasil melakukan instalasi Mikrotik Router sebagai Gateway server.&lt;br /&gt;&lt;MARQUEE DIRECTION=LEFT BEHAVIOR=SCROLL SCROLLAMOUNT=10 SCROLLDELAY=250&gt;&lt;br /&gt;&lt;======================= created by jono and mikrotik.com ====================&gt;&lt;br /&gt;&lt;/MARQUEE&gt;&lt;/enter&gt;&lt;/enter&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-4197836723864257802?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/4197836723864257802/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=4197836723864257802&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/4197836723864257802'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/4197836723864257802'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/tutorial-mikrotik.html' title='tutorial-mikrotik'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-3994106002088487934</id><published>2007-08-29T20:59:00.000+08:00</published><updated>2007-08-30T21:28:55.291+08:00</updated><title type='text'>Tutorial Load Balancing</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://wiki.mikrotik.com/images/3/35/LoadBalancing.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 200px;" src="http://wiki.mikrotik.com/images/3/35/LoadBalancing.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;ini ada ilmu tentang Load Balancing sorry ya semua engglish gw males gartiin nya (gk bisa juga sih)ini gambar denah nya&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Configuration export from the gateway router:&lt;br /&gt;&lt;br /&gt;/ ip address&lt;br /&gt;add address=192.168.0.1/24 network=192.168.0.0 broadcast=192.168.0.255 interface=Local comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;add address=10.111.0.2/24 network=10.111.0.0 broadcast=10.111.0.255 interface=wlan2 \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;add address=10.112.0.2/24 network=10.112.0.0 broadcast=10.112.0.255 interface=wlan1 \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;/ ip firewall mangle&lt;br /&gt;add chain=prerouting in-interface=Local connection-state=new nth=1,1,0 \&lt;br /&gt; action=mark-connection new-connection-mark=odd passthrough=yes comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;add chain=prerouting in-interface=Local connection-mark=odd action=mark-routing \&lt;br /&gt; new-routing-mark=odd passthrough=no comment="" disabled=no&lt;br /&gt;add chain=prerouting in-interface=Local connection-state=new nth=1,1,1 \&lt;br /&gt; action=mark-connection new-connection-mark=even passthrough=yes comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;add chain=prerouting in-interface=Local connection-mark=even action=mark-routing \&lt;br /&gt; new-routing-mark=even passthrough=no comment="" disabled=no&lt;br /&gt;/ ip firewall nat&lt;br /&gt;add chain=srcnat connection-mark=odd action=src-nat to-addresses=10.111.0.2 \&lt;br /&gt; to-ports=0-65535 comment="" disabled=no&lt;br /&gt;add chain=srcnat connection-mark=even action=src-nat to-addresses=10.112.0.2 \&lt;br /&gt; to-ports=0-65535 comment="" disabled=no&lt;br /&gt;/ ip route&lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.111.0.1 scope=255 target-scope=10 routing-mark=odd \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.112.0.1 scope=255 target-scope=10 routing-mark=even \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.112.0.1 scope=255 target-scope=10 comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;&lt;br /&gt;[edit] Explanation&lt;br /&gt;&lt;br /&gt;First we give a code snippet and then explain what it actually does.&lt;br /&gt;[edit] Mangle&lt;br /&gt;&lt;br /&gt;/ ip address&lt;br /&gt;add address=192.168.0.1/24 network=192.168.0.0 broadcast=192.168.0.255 interface=Local comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;add address=10.111.0.2/24 network=10.111.0.0 broadcast=10.111.0.255 interface=wlan2 \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;add address=10.112.0.2/24 network=10.112.0.0 broadcast=10.112.0.255 interface=wlan1 \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;&lt;br /&gt;The router has two upstream (WAN) interfaces with the addresses of 10.111.0.2/24 and 10.112.0.2/24. The LAN interface has the name "Local" and IP address of 192.168.0.1/24.&lt;br /&gt;&lt;br /&gt;/ ip firewall mangle&lt;br /&gt;&lt;br /&gt;add chain=prerouting in-interface=Local connection-state=new nth=1,1,0 \&lt;br /&gt; action=mark-connection new-connection-mark=odd passthrough=yes comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;First we take every second packet that establishes new session (note connection-state=new), and mark it with connection mark "odd". Consequently all successive packets belonging to the same session will carry the connection mark "odd". Note that we are passing these packets to the second rule (passthrough=yes) to place a routing mark on these packets in addition to the connection mark.&lt;br /&gt;&lt;br /&gt;add chain=prerouting in-interface=Local connection-mark=odd action=mark-routing \&lt;br /&gt; new-routing-mark=odd passthrough=no comment="" disabled=no&lt;br /&gt;&lt;br /&gt;The rule above places the routing mark "odd" on all packets that belong to the "odd" connection and stops processing all other mangle in prerouting chain rules for these packets.&lt;br /&gt;&lt;br /&gt;add chain=prerouting in-interface=Local connection-state=new nth=1,1,1 \&lt;br /&gt; action=mark-connection new-connection-mark=even passthrough=yes comment="" \&lt;br /&gt; disabled=no&lt;br /&gt;add chain=prerouting in-interface=Local connection-mark=even action=mark-routing \&lt;br /&gt; new-routing-mark=even passthrough=no comment="" disabled=no&lt;br /&gt;&lt;br /&gt;These rules do the same for the remaining half of the traffic as the first two rules for the first half of the traffic.&lt;br /&gt;&lt;br /&gt;The code above effectively means that each new connection initiated through the router from the local network will be marked as either "odd" or "even" with both routing and connection marks.&lt;br /&gt;[edit] NAT&lt;br /&gt;&lt;br /&gt;/ ip firewall nat&lt;br /&gt;add chain=srcnat connection-mark=odd action=src-nat to-addresses=10.111.0.2 \&lt;br /&gt; to-ports=0-65535 comment="" disabled=no&lt;br /&gt;add chain=srcnat connection-mark=even action=src-nat to-addresses=10.112.0.2 \&lt;br /&gt; to-ports=0-65535 comment="" disabled=no&lt;br /&gt;&lt;br /&gt;All traffic marked "odd" is being NATted to source IP address of 10.111.0.2, while traffic marked "even" gets "10.112.0.2" source IP address.&lt;br /&gt;[edit] Routing&lt;br /&gt;&lt;br /&gt;/ ip route&lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.111.0.1 scope=255 target-scope=10 routing-mark=odd \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.112.0.1 scope=255 target-scope=10 routing-mark=even \&lt;br /&gt; comment="" disabled=no&lt;br /&gt;add dst-address=0.0.0.0/0 gateway=10.112.0.1 scope=255 target-scope=10 comment="" \&lt;br /&gt; disabled=no comment="gateway for the router itself"&lt;br /&gt;&lt;br /&gt;For all traffic marked "odd" (consequently having 10.111.0.2 translated source address) we use 10.111.0.1 gateway. In the same manner all traffic marked "even" is routed through the 10.112.0.1 gateway. Finally, we have one additional entry specifying that traffic from the router itself (the traffic without any routing marks) should go to 10.112.0.1 gateway.&lt;br /&gt;&lt;marquee direction="LEFT" behavior="SCROLL" scrollamount="14" scrolldelay="250"&gt;&lt;br /&gt;&lt;===========************ created by http://wiki.mikrotik.com ************* ======&gt;&lt;/marquee&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-3994106002088487934?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/3994106002088487934/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=3994106002088487934&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/3994106002088487934'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/3994106002088487934'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/tutorial-load-balancing.html' title='Tutorial Load Balancing'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-3409477740328990695</id><published>2007-08-29T20:41:00.000+08:00</published><updated>2007-08-30T20:50:54.744+08:00</updated><title type='text'>Load Balancing over Multiple Gateways</title><content type='html'>From MikroTik Wiki&lt;br /&gt;Jump to: navigation, search&lt;br /&gt;&lt;br /&gt;ini adalah rule yang digunakan dalam sistem ini &lt;br /&gt;Image:dual_gw_01.jpg&lt;br /&gt;&lt;br /&gt;ini ada sedikit ilmu tentang loadbalancing yang gw tau sorry ada sedikit bahasa inggis ya gw males gartiin nya &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Let us assume we use for our workstations IP addresses from network 192.168.100.0/24. The IP addresses are assigned as follows:&lt;br /&gt;&lt;br /&gt;   * 192.168.100.1-127 are used for Group A workstations&lt;br /&gt;   * 192.168.100.128-253 are used for Group B workstations&lt;br /&gt;   * 192.168.100.254 is used for the router.&lt;br /&gt;&lt;br /&gt;All workstations have IP configuration with the IP address from the relevant group, they all have network mask 255.255.255.0, and 192.168.100.254 is the default gateway for them. We will talk about DNS servers later.&lt;br /&gt;&lt;br /&gt;Now, when we have workstations divided into groups, we can refer to them using subnet addressing:&lt;br /&gt;&lt;br /&gt;   * Group A is 192.168.100.0/25, i.e., addresses 192.168.100.0-127&lt;br /&gt;   * Group B is 192.168.100.128/25, i.e., addresses 192.168.100.128-255&lt;br /&gt;&lt;br /&gt;If you do not understand this, take the TCP/IP Basics course,&lt;br /&gt;or, look for some resources about subnetting on the Internet!&lt;br /&gt;&lt;br /&gt;We need to add two IP Firewall Mangle rules to mark the packets originated from Group A or Group B workstations.&lt;br /&gt;&lt;br /&gt;For Group A, specify&lt;br /&gt;&lt;br /&gt;   * Chain prerouting and Src. Address 192.168.100.0/25&lt;br /&gt;   * Action mark routing and New Routing Mark GroupA.&lt;br /&gt;&lt;br /&gt;Image:dual_gw_22.jpg&lt;br /&gt;&lt;br /&gt;It is a good practice to add a comment as well. Your mangle rules might be interesting for someone else and for yourself as well after some time.&lt;br /&gt;&lt;br /&gt;For Group B, specify&lt;br /&gt;&lt;br /&gt;   * Chain prerouting and Src. Address 192.168.100.128/25&lt;br /&gt;   * Action mark routing and New Routing Mark GroupB&lt;br /&gt;&lt;br /&gt;Image:dual_gw_25.jpg&lt;br /&gt;&lt;br /&gt;All IP traffic coming from workstations is marked with the routing marks GroupA or GroupB. We can use these marks in the routing table.&lt;br /&gt;&lt;br /&gt;Next, we should specify two default routes (destination 0.0.0.0/0) with appropriate routing marks and gateways:&lt;br /&gt;&lt;br /&gt;Image:dual_gw_26.jpg&lt;br /&gt;&lt;br /&gt;ini tidak akan langsung bekerja , anda harus megeset masquerading for your LAN!  dan pengaturan NAT rule for Src. Address 192.168.100.0/24 and Action masquerade:&lt;br /&gt;&lt;br /&gt;Image:dual_gw_28.jpg&lt;br /&gt;&lt;br /&gt;Test t tracing the route ke IP address on the Internet or isp !&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;C:\&gt;tracert -d 8.8.8.8&lt;br /&gt;&lt;br /&gt;Tracing route to 8.8.8.8 over a maximum of 30 hops&lt;br /&gt;&lt;br /&gt; 1     2 ms     2 ms     2 ms  192.168.100.254&lt;br /&gt; 2    10 ms     4 ms     3 ms  10.1.0.1&lt;br /&gt; ...&lt;br /&gt;&lt;br /&gt;From a workstation of Group B, it should go like this:&lt;br /&gt;&lt;br /&gt;C:\&gt;tracert -d 8.8.8.8&lt;br /&gt;&lt;br /&gt;Tracing route to 8.8.8.8 over a maximum of 30 hops&lt;br /&gt;&lt;br /&gt; 1     2 ms     2 ms     2 ms  192.168.100.254&lt;br /&gt; 2    10 ms     4 ms     3 ms  10.5.8.1&lt;br /&gt; ...&lt;br /&gt;&lt;br /&gt;anda bisa langsung cobadeh lo semua kagak bakal rugi deh gw jamin boss&lt;br /&gt; &lt;br /&gt;&lt;marquee direction="LEFT" behavior="SCROLL" scrollamount="14" scrolldelay="250"&gt;&lt;br /&gt;&lt;======************ created by MikroTik Wiki*************========&gt;&lt;br /&gt;&lt;/marquee&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-3409477740328990695?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/3409477740328990695/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=3409477740328990695&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/3409477740328990695'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/3409477740328990695'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/load-balancing-over-multiple-gateways.html' title='Load Balancing over Multiple Gateways'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-8743487962149851689</id><published>2007-08-29T20:17:00.000+08:00</published><updated>2007-08-30T20:34:24.909+08:00</updated><title type='text'>Mikrotik DHCP Server</title><content type='html'>Untuk membuat DHCP Server diperlukan langkah-langkah sebagai berikut :&lt;br /&gt;1. Membuat address pool dan menentukan IP Range&lt;br /&gt;2. Mengaktifkan DHCP server.&lt;br /&gt;Sedangkan untuk membuat Internet Gateway Server, inti langkahnya adalah melakukan masquerading yang akan melewatkan paket-paket data ke user.&lt;br /&gt;&lt;br /&gt;monggo baca tulisan di bawah ini ya.........:&lt;br /&gt;&lt;br /&gt;1. Mikrotik di install pada CPU dengan 2 ethernet card, 1 interface utk koneksi ke internet, 1 interface utk konek ke lokal.&lt;br /&gt;&lt;br /&gt;2. IP address :&lt;br /&gt;- gateway (mis: ADSL modem) : 192.168.100.100&lt;br /&gt;- DNS : 192.168.100.110&lt;br /&gt;- interface utk internet : 192.168.100.1&lt;br /&gt;- interface utk lokal : 192.168.0.1&lt;br /&gt;&lt;br /&gt;Untuk memulainya, kita lihat interface yang ada pada Mikrotik Router&lt;br /&gt;&lt;br /&gt;[admin@Mikrotik] &gt; interface print&lt;br /&gt;Flags: X - disabled, D - dynamic, R - running&lt;br /&gt;# NAME TYPE RX-RATE TX-RATE MTU&lt;br /&gt;0 R ether1 ether 0 0 1500&lt;br /&gt;1 R ether2 ether 0 0 1500[admin@Mikrotik] &gt;&lt;br /&gt;&lt;br /&gt;kemudian set IP address pada interface Mikrotik. Misalkan ether1 akan kita gunakan untuk koneksi ke Internet dengan IP 192.168.100.1 dan ether2 akan kita gunakan untuk network local kita dengan IP 192.168.0.1&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip address add address=192.168.100.1 netmask=255.255.255.0 interface=ether1&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip address add address=192.168.0.1 netmask=255.255.255.0 interface=ether2&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt;ip address print&lt;br /&gt;Flags: X - disabled, I - invalid, D - dynamic&lt;br /&gt;# ADDRESS NETWORK BROADCAST INTERFACE&lt;br /&gt;0 192.168.100.1/24 192.168.100.0 192.168.100.255 ether1&lt;br /&gt;1 192.168.0.1/24 192.168.0.0 192.168.0.255 ether2&lt;br /&gt;[admin@mikrotik] &gt;&lt;br /&gt;&lt;br /&gt;Setelah selesai Barulah kita bisa melakukan setup DHCP server pada Mikrotik.&lt;br /&gt;&lt;br /&gt;1. Membuat address pool&lt;br /&gt;&lt;br /&gt;/ip pool add name=dhcp-pool ranges=192.168.0.2-192.168.0.100&lt;br /&gt;/ip dhcp-server network add address=192.168.0.0/24 gateway=192.168.0.1&lt;br /&gt;2. Tentukan interface yang dipergunakan dan aktifkan DHCP Server.&lt;br /&gt;&lt;br /&gt;/ip dhcp-server add interface=ether2 address-pool=dhcp-pool enable 0&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip dhcp-server print&lt;br /&gt;Flags: X - disabled, I - invalid&lt;br /&gt;# NAME INTERFACE RELAY ADDRESS-POOL LEASE-TIME ADD-ARP&lt;br /&gt;0 dhcp1 ether2&lt;br /&gt;sampai tahap ini, DHCP server telah selesai untuk dipergunakan dan sudah bisa di test dari user.&lt;br /&gt;&lt;br /&gt;Langkah Selanjutnya adalah membuat internet gateway, Misalnya Modem indosat sebagai gateway untuk koneksi internet adalah 202.154.5.39 dan DNS Servernya 202.152.5.36,secondary dns 202.152.5.39 maka lakukan setting default gateway dengan perintah berikut :&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; /ip route add gateway=202.154.5.39&lt;br /&gt;&lt;br /&gt;3. Melihat Tabel routing pada Mikrotik Routers&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip route print&lt;br /&gt;untuk melihat sudah terpasang nya gateway pokoke itu lah&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Lanjutkan dengan Setup DNS&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip dns set primary-dns=202.152.5.36 secondary-ds=202.152.5.39 allow-remoterequests=yes&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip dns print&lt;br /&gt;primary-dns: 202.152.5.36 &lt;br /&gt;secondary-dns: 202.152.5.39&lt;br /&gt;allow-remote-requests: yes&lt;br /&gt;cache-size: 2048KiB&lt;br /&gt;cache-max-ttl: 1w&lt;br /&gt;cache-used: 16KiB&lt;br /&gt;[admin@mikrotik] &gt;&lt;br /&gt;&lt;br /&gt;4. Tes untuk akses domain, misalnya dengan ping nama domain&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ping yahoo.com&lt;br /&gt;&lt;br /&gt;216.109.112.135 64 byte ping: ttl=48 time=250 ms&lt;br /&gt;10 packets transmitted, 10 packets received, 0% packet loss&lt;br /&gt;round-trip min/avg/max = 571/571.0/571 ms&lt;br /&gt;&lt;br /&gt;Jika sudah berhasil reply berarti seting DNS sudah benar.&lt;br /&gt;&lt;br /&gt;5. Setup Masquerading, ini adalah langkah utama untuk menjadikan Mikrotik sebagai gateway server&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt; ip firewall nat add action=masquerade outinterface=ether1chain: srcnat&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] &gt;&lt;br /&gt;&lt;br /&gt;[admin@mikrotik] ip firewall nat print&lt;br /&gt;Flags: X - disabled, I - invalid, D - dynamic&lt;br /&gt;0 chain=srcnat out-interface=ether1 action=masquerade&lt;br /&gt;[admin@mikrotik] &gt;&lt;br /&gt;Selesai, tinggal test koneksi dari user. seharusnya dengan cara ini user sudah bisa terhubung ke internet.&lt;br /&gt;&lt;br /&gt;Cara ini memang cara yang paling mudah untuk membuat user dapat terhubung ke internet, namun tingkat keamanannya masih rendah dan diperlukan pengaturan firewall. Mudah-mudahan saya bisa membahasnya dilain waktu.tapi kalo dikasi firewall anda harus bisa memilah.karana mikrotik pa bila ping diatas seribu lebik maka router ini akan hank.and gak cucok untuk proxy.&lt;br /&gt;&lt;marquee direction="LEFT" behavior="SCROLL" scrollamount="14" scrolldelay="250"&gt;&lt;br /&gt;&lt;=========************created by ttp://yoyok.wordpress.com*************======&gt;&lt;br /&gt;&lt;/marquee&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-8743487962149851689?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/8743487962149851689/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=8743487962149851689&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/8743487962149851689'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/8743487962149851689'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/mikrotik-dhcp-server.html' title='Mikrotik DHCP Server'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-7288553282236420862</id><published>2007-08-01T23:00:00.000+08:00</published><updated>2007-09-08T23:52:08.257+08:00</updated><title type='text'>Tips  &amp; trik</title><content type='html'>ini saya ada sedikit ilmu yang saya dapat di hari ini semoga dapat berguna.&lt;br /&gt;&lt;br /&gt;1.cara nyepetin browsing  klai heheh.&lt;br /&gt;&lt;br /&gt;Cara pertama yaitu menyetting browser dapat dilakukan oleh pengguna Internet Explorer dan Mozilla Firefox. Bagi pengguna Internet Explorer klik menu [Tools] [Internet Option], klik tab [General]. Pada opsi "Temperory Internet files", klik [Settings] lalu Geser slider-nya. Hal itu untuk membuat cache (lokasi penyimpanan sementara) untuk web yang anda buka, sebaliknya disediakan sekitar 5% dari Hard disk.&lt;br /&gt;&lt;br /&gt;Bagi pengguna Mozilla Firefox anda dapat mengetikkan "about:config" pada address bar,. setelah itu ubah "network.http.pipelining" dan "network.http.proxy pipelining" menjadi "true", serta isi "network.http.pipelining.maxrequests" antara 30 –100 ( semakin besar semakin cepat ). Yang terakhir klik kanan dimana saja dan pilih New-&gt;Integer , tuliskan "nglayout.initialpaint.delay" lalu isi dengan 0.&lt;br /&gt;Untuk trik kedua, pertama anda harus mendaftar di www.openDNS.com . Setelah itu masuk ke Control Panel dari start menu, pilih network connections lalu pilih koneksi anda dan klik tombol properties. Pada bagian Internet protokol anda bisa pilih TCP/IP dan klik properties. Masukkan angka 208.67.222.222 dan 208.67.220.220 pada opsi DNS dan restart komputer anda.&lt;br /&gt;Setelah melakukan 2 tips di atas sekarang anda pasti akan mendapat kecepatan akses yang lebih kencang. Bagi yang masih belum puas dengan kecepatan aksesnya sekarang dapat menggunakan trik yang ke tiga yaitu Google Web Accelerator.&lt;br /&gt;Untuk memakai Google Web Accelerator anda harus memenuhi kriteria antara lain Operating System anda harus Windows XP atau Windows 2000 dan browser anda harus Internet Explorer 5.5+ atau Mozilla Firefox 1.0+. Kalau untuk browser lainnya sebenarnya juga bisa, tetapi anda harus meng-konfigurasi proxy settings dari browser anda dengan menambah 127.0.0.1:9100 pada HTTP.&lt;br /&gt;&lt;br /&gt;2 cara block IP client atau blok IP dari luar yang mau masuk mesin mikrotik&lt;br /&gt;ip firewall filter&lt;br /&gt;&gt;add chain=forward src-address=192.168.10.10 dst-port=80 protocol=tcp action=drop &lt;p&gt;kira-kira begitu commandnya mas.. semoga membantu. jangan lupa jalan-jalan ke sini juga mas.. buat pencerahan.&lt;/p&gt;&lt;br /&gt;&lt;p&gt;&lt;a href="http://id.wordpress.com/tag/router/" rel="nofollow"&gt;http://id.wordpress.com/tag/router/&lt;/a&gt;&lt;br /&gt;&lt;a href="http://id.wordpress.com/tag/mikrotik/" rel="nofollow"&gt;http://id.wordpress.com/tag/mikrotik/&lt;/a&gt;&lt;br /&gt;&lt;a href="http://wiki.mikrotik.com/" rel="nofollow"&gt;http://wiki.mikrotik.com/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-7288553282236420862?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/7288553282236420862/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=7288553282236420862&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/7288553282236420862'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/7288553282236420862'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/tips.html' title='Tips  &amp; trik'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-983133862354899225</id><published>2007-07-29T23:37:00.000+08:00</published><updated>2007-08-29T23:59:59.801+08:00</updated><title type='text'>Setting Mikrotik Wireless Bridge</title><content type='html'>&lt;marquee direction="RIGHT" behavior="SCROLL" scrollamount="10" scrolldelay="200"&gt;&lt;br /&gt;&lt;br /&gt;Setting Mikrotik Wireless Bridge&lt;===============  **** created by mikrotik.co.id ****=================&gt;&lt;br /&gt;&lt;/marquee&gt;ini adalah tutorial dari penyetingan  Wireless mikrotik  sebagai  Bridge keuntungan model bridge mode bridge ini akan membuat  traffic wireless meningkat, mengingat akan ada banyak traffic broadcast dari network  yang satu ke network lainnya. Untuk jaringan yang sudah cukup besar, saya menyarankan  penggunaan mode routing.&lt;br /&gt;Berikut ini adalah diagram network yang akan kita set.&lt;br /&gt;&lt;p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-01-new.jpg" alt="" title="" height="88" width="435" /&gt;&lt;br /&gt;&lt;/p&gt; &lt;p&gt;&lt;img src="http://mikrotik.co.id/images/line.gif" alt="" title="" height="18" width="438" /&gt;&lt;br /&gt;&lt;/p&gt; &lt;p&gt;&lt;strong&gt;Konfigurasi Pada Access Point&lt;/strong&gt;&lt;/p&gt; &lt;p&gt;1. Buatlah sebuah interface bridge yang baru, berilah nama bridge1&lt;/p&gt; &lt;p&gt;&lt;img title="" alt="" src="http://mikrotik.co.id/images/artikel/wireless-bridge-02.jpg" height="248" width="435" /&gt;&lt;br /&gt;&lt;/p&gt; &lt;p&gt;2. Masukkan ethernet ke dalam interface bridge&lt;/p&gt; &lt;p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-03.jpg" alt="" title="" height="245" width="435" /&gt;&lt;br /&gt;&lt;/p&gt; &lt;p&gt;3.  Masukkan IP Address pada interface bridge1&lt;/p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-04.jpg" alt="" title="" height="209" width="435" /&gt; &lt;p&gt;4. Selanjutnya adalah setting wireless interface. Kliklah pada menu Wireless  (1), pilihlah tab interface (2) lalu double click pada nama interface wireless  yang akan digunakan (3). Pilihlah mode AP-bridge (4), tentukanlah ssid (5), band  2.4GHz-B/G (6), dan frekuensi yang akan digunakan (7). Jangan lupa mengaktifkan  default authenticated (8) dan default forward (9). Lalu aktifkankanlah interface  wireless (10) dan klik OK (11).&lt;br /&gt;&lt;/p&gt;&lt;img title="" alt="" src="http://mikrotik.co.id/images/artikel/wireless-bridge-05.jpg" height="528" width="435" /&gt;&lt;br /&gt;&lt;p&gt;5. Berikutnya adalah konfigurasi WDS pada wireless interface yang digunakan.  Bukalah kembali konfigurasi wireless seperti langkah di atas, pilihlah tab WDS  (1). Tentukanlah WDS Mode dynamic (2) dan pilihlah bridge interface untuk WDS  ini (3). Lalu tekan tombol OK.&lt;br /&gt;&lt;/p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-06.jpg" alt="" title="" height="414" width="415" /&gt; &lt;p&gt;6. Langkah selanjutnya adalah menambahkan virtual interface WDS. Tambahkan interface  WDS baru seperti pada gambar, lalu pilihlah interface wireless yang kita gunakan  untuk WDS ini. Lalu tekan OK.&lt;/p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-07.jpg" alt="" title="" height="312" width="435" /&gt; &lt;p&gt;7. Jika WDS telah ditambahkan, maka akan tampak interface WDS baru seperti pada  gambar di bawah.&lt;/p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-08.jpg" alt="" title="" height="156" width="435" /&gt;&lt;br /&gt;&lt;p&gt;&lt;img src="http://mikrotik.co.id/images/line.gif" alt="" title="" height="18" width="438" /&gt;&lt;/p&gt; &lt;p&gt;&lt;strong&gt;Konfigurasi pada Wireless Station&lt;/strong&gt;&lt;/p&gt;Konfigurasi pada wireless station hampir sama dengan langkah-langkah di atas,  kecuali pada langkah memasukkan IP Address dan konfigurasi wirelessnya. Pada konfigurasi  station, mode yang digunakan adalah &lt;em&gt;station-wds&lt;/em&gt;, frekuensi tidak perlu ditentukan, namun harus menentukan scan-list di mana  frekuensi pada access point masuk dalam scan list ini. Misalnya pada access point  kita menentukan frekuensi 2412, maka tuliskanlah scan-list 2400-2500.&lt;br /&gt;&lt;p&gt;&lt;img src="http://mikrotik.co.id/images/artikel/wireless-bridge-09.jpg" alt="" title="" height="525" width="435" /&gt;&lt;br /&gt;&lt;/p&gt;&lt;img title="" alt="" src="http://mikrotik.co.id/images/line.gif" height="18" width="438" /&gt;&lt;br /&gt;&lt;strong&gt;Pengecekan link&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;Jika link wireless yang kita buat sudah bekerja dengan baik, maka pada menu wireless,  akan muncul status R (lihat gambar di bawah).&lt;br /&gt;&lt;br /&gt;&lt;img title="" alt="" src="http://mikrotik.co.id/images/artikel/wireless-bridge-10.jpg" height="179" width="435" /&gt;&lt;br /&gt;&lt;p&gt;Selain itu, mac-address dari wireless yang terkoneksi juga bisa dilihat pada  jendela registration (lihat gambar di bawah).&lt;/p&gt; &lt;p&gt;&lt;img title="" alt="" src="http://mikrotik.co.id/images/artikel/wireless-bridge-11.jpg" height="179" width="435" /&gt;&lt;br /&gt;&lt;/p&gt; &lt;p&gt;&lt;strong&gt;&lt;img title="" alt="" src="http://mikrotik.co.id/images/line.gif" height="18" width="438" /&gt;&lt;br /&gt;&lt;/strong&gt;&lt;/p&gt; &lt;p&gt;&lt;strong&gt;Konfigurasi keamanan jaringan wireless&lt;/strong&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;marquee direction="RIGHT" behavior="SCROLL" scrollamount="10" scrolldelay="200"&gt;&lt;br /&gt;&lt;===============  **** created by mikrotik.co.id ****=================&gt;&lt;br /&gt;&lt;/marquee&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-983133862354899225?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/983133862354899225/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=983133862354899225&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/983133862354899225'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/983133862354899225'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/08/setting-mikrotik-wireless-bridge.html' title='Setting Mikrotik Wireless Bridge'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-1825916510149983015</id><published>2007-05-02T00:32:00.000+08:00</published><updated>2007-09-21T22:28:58.782+08:00</updated><title type='text'>galery foto</title><content type='html'>&lt;div style="text-align: center; color: rgb(153, 153, 255);"&gt;&lt;span style="font-weight: bold; color: rgb(51, 255, 51);"&gt;&lt;span style="font-style: italic;"&gt;&lt;span style="font-size:180%;"&gt;&lt;span style="font-family:lucida grande;"&gt;i&lt;/span&gt;&lt;span style="color: rgb(51, 102, 255);font-family:lucida grande;" &gt;ni adalah foto kulo bersama-sama konco-konco ku&lt;/span&gt;&lt;/span&gt; &lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos.friendster.com/photos/31/54/30134513/393599070m.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 206px; height: 154px;" src="http://photos.friendster.com/photos/31/54/30134513/393599070m.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;span style="color: rgb(51, 204, 0); font-weight: bold;"&gt;f&lt;/span&gt;&lt;span style="color: rgb(51, 51, 255); font-weight: bold;font-family:times new roman;" &gt;oto ini di ambil dari salah satu tower indosat di bukit randu&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255); font-weight: bold;font-family:times new roman;" &gt;Bandar  lampung .&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255); font-weight: bold; font-style: italic;font-family:times new roman;" &gt;pur and budi&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos.friendster.com/photos/82/22/18082228/642690010m.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 210px; height: 157px;" src="http://photos.friendster.com/photos/82/22/18082228/642690010m.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);font-family:times new roman;" &gt;&lt;span style="color: rgb(0, 153, 0);"&gt;f&lt;/span&gt;oto rekan kerja kuw di city net .&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold; font-style: italic;font-family:times new roman;" &gt;dyah and anty&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos.friendster.com/photos/25/37/19847352/405365779m.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 186px; height: 128px;" src="http://photos.friendster.com/photos/25/37/19847352/405365779m.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;span style="color: rgb(51, 255, 51); font-weight: bold;font-family:times new roman;" &gt;f&lt;/span&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold;font-family:times new roman;" &gt;oto rekan kerja kuw di city net .&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic; color: rgb(51, 102, 255);font-family:times new roman;" &gt;srie and tari&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos.friendster.com/photos/31/54/30134513/224914578m.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 188px; height: 263px;" src="http://photos.friendster.com/photos/31/54/30134513/224914578m.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-style: italic; font-weight: bold;font-family:times new roman;" &gt;ini foto mantan rekan kuw di city net.ini lagi di bawah tower&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-style: italic; font-weight: bold;font-family:times new roman;" &gt;indosat bukit randu.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold; font-style: italic;"&gt;yos katrok&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos.friendster.com/photos/31/54/30134513/186751687m.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 225px; height: 168px;" src="http://photos.friendster.com/photos/31/54/30134513/186751687m.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold;font-family:times new roman;" &gt;&lt;span style="color: rgb(51, 204, 0);"&gt;f&lt;/span&gt;oto ini di ambil dari bukit randu juga,ditempat tertingginya&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold;font-family:times new roman;" &gt;mereka rekan kuw juga.Tapi ejek cilik tapi mereka pinter and&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold;font-family:times new roman;" &gt;rodo petakilan biyasa anak muda&lt;span style="color: rgb(51, 255, 51);"&gt;!!!!!!!!!!!!!!!!!!!&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 102, 255); font-weight: bold; font-style: italic;font-family:times new roman;" &gt;aziz,budi and andi&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-1825916510149983015?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://kang-haribudi.blogspot.com/feeds/1825916510149983015/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7102121149868120507&amp;postID=1825916510149983015&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/1825916510149983015'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/1825916510149983015'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/09/galery-foto.html' title='galery foto'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-6159132236989219803</id><published>2007-04-02T18:01:00.001+08:00</published><updated>2008-04-02T18:04:39.367+08:00</updated><title type='text'>Instalasi squid Proxy di slackware</title><content type='html'>&lt;h2 class="post-title"&gt;Instalasi squid Proxy di slackware&lt;/h2&gt;  &lt;div class="snap_preview"&gt;&lt;p&gt;Download source dari squid&lt;br /&gt;#wget http://www.squid-cache.org/Versions/v2/2.6/squid-2.6.STABLE16.tar.gz&lt;/p&gt; &lt;p&gt;Extract squid tersebut&lt;br /&gt;#tar -zxvf squid-2.6.STABLE16.tar.gz -C /usr/local/src (sembarang mau ditaruh di mana hasil ekstraknya squid).&lt;/p&gt; &lt;p&gt;Masuk ke direktori ekstrak squid tersebut&lt;br /&gt;#cd /usr/local/src/squid-2.6.STABLE16&lt;br /&gt;Buat group dan user yang akan di gunakan untuk menjalankan squid&lt;br /&gt;#groupadd _squid&lt;br /&gt;#useradd -c “SQUID PROXY CACHE” -d /dev/null -s /bin/false -g _squid _squid&lt;br /&gt;saya memberi tanda _ di depan squid biar keren seperti style BSD hehehe meski ada alasan tertentu sih demi security aja.&lt;/p&gt; &lt;p&gt;Configure dan install squid&lt;br /&gt;#./configure \&lt;br /&gt;–prefix=/squid/ –sysconfdir=/etc/ –enable-gnuregex –enable-async-io=16 \&lt;br /&gt;–with-aufs-threads=16 –with-pthreads –with-aio –with-dl \&lt;br /&gt;–enable-storeio=aufs –enable-removal-policies=heap –enable-delay-pools \&lt;br /&gt;–disable-wccp –enable-cache-digests –enable-default-err-languages=English \&lt;br /&gt;–enable-err-languages=English –enable-linux-netfilter –disable-ident-lookups \&lt;br /&gt;–disable-hostname-checks –enable-underscores –enable-snmp –enable-useragent-log \&lt;br /&gt;–disable-wccpv2 –enable-epoll –disable-internal-dns –enable-htcp&lt;br /&gt;Keterangan opsi :&lt;br /&gt;–enable-async-io=16 dan –with-aufs-threads=16 di sesuaikan dengan kemampuan mesin server&lt;br /&gt;Untuk pentium III dengan ram 128 kebawah dapat menggunakan 8&lt;br /&gt;Untuk pentium III ram 128 s/d PIV 1,8 Ghz ram 256 dapat menggunakan 16&lt;br /&gt;Untuk pentium IV ram 256 1,8 s/d PIV 2,4 ram 256 dapat menggunakan 24&lt;br /&gt;Untuk pentium di atasnya atau sekelasnya dapat menggunakan 32&lt;br /&gt;Pilihan diatas hanya sebuah perkiraan penulis karena penulis hanya menggunakan P4 ram 256 saja.&lt;/p&gt; &lt;p&gt;Kompile source&lt;br /&gt;#make &amp;amp;&amp;amp; make install&lt;/p&gt; &lt;p&gt;Keterangan tambahan :&lt;br /&gt;–enable-auth=basic \&lt;br /&gt;–enable-basic-auth-helpers=NCSA&lt;br /&gt;Digunakan jika proxy squid akan digunakan dengan menggunakan authentikasi user.&lt;/p&gt; &lt;p&gt;Tanda # didepan perintah maksudnya adalah root di dalam bash bukan comment.&lt;br /&gt;Setelah instalasi selesai dan tidak terdapat kesalahan, langkah berikutnya adalah mengatur konfigurasi squid, bukalah file /etc/squid.conf dengan editor teks favorit anda (vi, pico, dll), file ini adalah file konfigurasi squid.&lt;/p&gt; &lt;p&gt;#pico -w /etc/squid.conf (Silahkan edit dengan editor kesukaan anda)&lt;br /&gt;Rubahlah konfigurasi default squid.conf di sesuaikan dengan kebutuhan.&lt;br /&gt;Jangan lupa untuk membuang yang kira kira tidak perlu dan membebani server.&lt;/p&gt; &lt;p&gt;agar squid dapat berjalan transparan maka untuk squid versi 2.6 keatas dapat memberikan opsi :&lt;br /&gt;–&gt; http_port 3128 transparent&lt;br /&gt;di dalam confignya.&lt;/p&gt; &lt;p&gt;Sebelum squid dapat berjalan, anda harus menciptakan direktori swap dan membuat file log maupun direktori yang di butuhkan. Lakukanlah dengan menjalankan perintah :&lt;/p&gt; &lt;p&gt;#mkdir /var/log/squid&lt;br /&gt;#touch /var/log/squid/access.log       &lt;= ini berfungsi membuat file bernama access.log&lt;br /&gt;#touch /var/run/squid.pid&lt;br /&gt;#chown -R _squid._squid /squid/cache/    &lt;= mengubah kepemilikan direktori ke user _squid dan grup _squid&lt;br /&gt;#chown -R _squid._squid /var/run/pid&lt;br /&gt;#chown -R _squid._squid /var/log/squid/access.log&lt;/p&gt; &lt;p&gt;Perintah ini hanya perlu dijalankan satu kali saja ketika squid pertama kali akan dijalankan pada komputer anda.&lt;br /&gt;#/squid/sbin/squid -z&lt;/p&gt; &lt;p&gt;Jika keluar message seperti :&lt;br /&gt;2007/09/20 14:10:22| Creating Swap Directories&lt;br /&gt;#&lt;br /&gt;Dan langsung masuk ke konsole lagi tanpa keterangan error berarti pembuatan swap anda berhasil, bisa dilihat di dalam direktori /squid/cache akan terbentuk beberapa direktori random yang terdiri dari angka angka ajaib&lt;br /&gt;Cek dulu konfigurasi squid sudah benar atau belum&lt;br /&gt;#/squid/sbin/squid -k parse&lt;/p&gt; &lt;p&gt;Kalo masih terdapat kesalahan atau error silahkan di edit kembali konfigurasinya.&lt;/p&gt; &lt;p&gt;Untuk menjalankan squid gunakan perintah :&lt;br /&gt;#/squid/sbin/squid -sYD&lt;/p&gt; &lt;p&gt;Jika perintah sudah dijalankan bisa diihat log di /var/log/messages :&lt;br /&gt;#tail -f /var/log/messages&lt;/p&gt; &lt;p&gt;Jika muncul message :&lt;/p&gt; &lt;p&gt;Sep 20 15:16:27 proxy squid[3152]:         0 Objects expired.&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:         0 Objects cancelled.&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:         0 Duplicate URLs purged.&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:         0 Swapfile clashes avoided.&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:   Took 1.6 seconds (   0.0 objects/sec).&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]: Beginning Validation Procedure&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:   Completed Validation Procedure&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:   Validated 0 Entries&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]:   store_swap_size = 0k&lt;br /&gt;Sep 20 15:16:27 proxy squid[3152]: storeLateRelease: released 0 objects&lt;/p&gt; &lt;p&gt;dan ketika di liat proses nya berjalan seperti :&lt;/p&gt; &lt;p&gt;#ps aux|grep squid&lt;/p&gt; &lt;p&gt;muncul :&lt;/p&gt; &lt;p&gt;squid     3152  0.9  0.8  10836  4500 ?        Sl   15:16   0:00 (squid) -sDY&lt;br /&gt;squid     3153  0.0  0.1   1904   596 ?        Ss   15:16   0:00 (dnsserver)&lt;br /&gt;squid     3154  0.0  0.1   1904   592 ?        Ss   15:16   0:00 (dnsserver)&lt;br /&gt;squid     3155  0.0  0.1   1904   596 ?        Ss   15:16   0:00 (dnsserver)&lt;br /&gt;squid     3156  0.0  0.1   1900   596 ?        Ss   15:16   0:00 (dnsserver)&lt;br /&gt;squid     3157  0.0  0.1   1904   596 ?        Ss   15:16   0:00 (dnsserver)&lt;br /&gt;squid     3158  0.0  0.0   1508   300 ?        Ss   15:16   0:00 (unlinkd)&lt;br /&gt;root      3177  0.0  0.1   2000   636 pts/0    R+   15:17   0:00 grep squid&lt;/p&gt; &lt;p&gt;seperti tersebut maka saya ucapkan selamat anda telah berhasil menginstall sebuah proxy server. Jika ada keterangan error berarti belum nasib anda. Edit kembali konfigurasi sesuai kesalahan error didalam log.&lt;/p&gt; &lt;p&gt;setting transparan iptables nya :&lt;br /&gt;Buat file transparannya biar mudah memanggilnya :&lt;br /&gt;#pico /etc/rc.d/rc.nat&lt;br /&gt;isi dengan :&lt;br /&gt;# Redirect proxy&lt;br /&gt;for SQUID in 80 3128 444 3127 3129&lt;br /&gt;do&lt;br /&gt;iptables -t nat -A PREROUTING -p tcp –dport $SQUID -j REDIRECT –to-ports 3128&lt;br /&gt;done&lt;/p&gt; &lt;p&gt;–&gt; Hal diatas memiliki maksud semua port yang menuju ke 80,3128,444,3127,3129 di larikan ke port 3128 dimana port 3128 adalah port yang kita setting di dalam file squid.conf tsb. BIsa saja kita membuat port lain seperti 444, 1984, 2007 atau lain lain.&lt;/p&gt; &lt;p&gt;Buatlah file agar dapat di eksekusi&lt;br /&gt;#chmod +x /etc/rc.d/rc.nat&lt;/p&gt; &lt;p&gt;Jalankan transparan :&lt;br /&gt;#/etc/rc.d/rc.nat&lt;/p&gt; &lt;p&gt;Untuk membuat squid jalan sendiri setiap kali booting maka tambah kan perintah di atas di /etc/rc.d/rc.local&lt;br /&gt;#pico /etc/rc.d/rc.local&lt;br /&gt;tambahkan baris :&lt;br /&gt;# Squid Proxy Cache&lt;br /&gt;/squid/sbin/squid -sYD&lt;br /&gt;# Transparan Proxy&lt;br /&gt;/etc/rc.d/rc.nat&lt;/p&gt; &lt;p&gt;Sampai disini anda sudah melakukan instalasi, setting dan mengaktifkan squid. Mudah bukan?&lt;br /&gt;Semua diatas telah di di test dan berjalan dengan baik dengan asumsi :&lt;br /&gt;- Partisi Cache berada di /squid/cache dengan partisi ext3 dan kapasitas 10 GB&lt;br /&gt;- Dengan menggunakan komputer Intel(R) Pentium(R) 4 CPU 1.70GHz Ram 256 MB&lt;br /&gt;- Linux Slackware 12 ( Dikompile dengan kernel 2.6.22.6 ) - Tutorial Kompile / upgrade kernel sudah saya jelaskan sebelumnya.&lt;br /&gt;- Dengan menggunakan format partisi ext3&lt;/p&gt;created : http://arhamlawa.wordpress.com/&lt;br /&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt; &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-6159132236989219803?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/6159132236989219803'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/6159132236989219803'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2007/04/instalasi-squid-proxy-di-slackware.html' title='Instalasi squid Proxy di slackware'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry><entry><id>tag:blogger.com,1999:blog-7102121149868120507.post-450471808709115514</id><published>2007-03-01T14:36:00.000+08:00</published><updated>2008-03-12T14:45:15.021+08:00</updated><title type='text'>Penyakit liver</title><content type='html'>ini resep saya paparkan buat gadis ku&lt;br /&gt;&lt;br /&gt;Penyebab sakit liver :&lt;br /&gt;1. Virus, merupakan penyebab terbanyak : hepatitis A - E bahkan G&lt;br /&gt;2.bakteri misal : salmonella typhi&lt;br /&gt;3. parasit&lt;br /&gt;4.obat-obat kimiawi&lt;br /&gt;5.bahan-bahan kimia&lt;br /&gt;6.alkohol&lt;br /&gt;7.cacing atau gizi buruk&lt;br /&gt;&lt;br /&gt;Makanan yang dianjurkan :&lt;br /&gt;1. minum juice buah (pepaya/mangga/tomat/labu/anggur / bisa campuran buah tsb) 1/2 gelas + ditambah 1 sdm madu diencerkan menjadi 1 gelas.lakukan 3x dalam sehari.&lt;br /&gt;2.konsumsi temu lawak disinergia dengan daun mimba dan tapak liman.&lt;br /&gt;&lt;br /&gt;Pantangan :&lt;br /&gt;makanan berminyak, lemak, makanan terlalu pedas,makanan terlalu asam&lt;br /&gt;&lt;br /&gt;thaks for  mbk jilbab&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7102121149868120507-450471808709115514?l=kang-haribudi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/450471808709115514'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7102121149868120507/posts/default/450471808709115514'/><link rel='alternate' type='text/html' href='http://kang-haribudi.blogspot.com/2008/03/penyakit-liver.html' title='Penyakit liver'/><author><name>welcome to web mas_haribudi</name><uri>http://www.blogger.com/profile/02284611871648403509</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author></entry></feed>
