timbang ilang di simpen kene wae ...... monggo di sruput sing pengguna internal web-proxy ben lancar game-e .....
=====================================================
/ip firewall mangle
add action=mark-packet chain=postrouting comment=HIT disabled=no dscp=4 \
dst-address=!192.168.4.0/24 new-packet-mark=HIT out-interface=!0-FO \
passthrough=no protocol=tcp
add action=mark-packet chain=forward comment="" disabled=no dst-address=\
191.168.0.0/16 dst-port=80 new-packet-mark=packet-gateway out-interface=\
1-hotspot passthrough=yes protocol=tcp src-address=191.168.254.254
add action=mark-connection chain=prerouting comment=GATEWAY disabled=no \
dst-address=191.168.254.254 dst-port=80 in-interface=1-hotspot \
new-connection-mark=gateway-conn passthrough=yes protocol=tcp \
src-address=191.168.0.0/16
add action=mark-packet chain=postrouting comment=MISS disabled=no dscp=!4 \
dst-address=!192.168.4.0/24 new-packet-mark=MISS out-interface=!0-FO \
passthrough=no protocol=tcp
add action=mark-connection chain=prerouting comment=warnet-connmark disabled=\
no in-interface=2-warnet new-connection-mark=warnet-conn passthrough=yes
add action=mark-packet chain=prerouting comment="" connection-mark=\
warnet-conn disabled=no new-packet-mark=packet-warnet passthrough=no
add action=mark-connection chain=forward comment="" disabled=no in-interface=\
2-warnet new-connection-mark=warnet-conn passthrough=yes
add action=mark-packet chain=forward comment="" connection-mark=warnet-conn \
disabled=no new-packet-mark=packet-warnet passthrough=no
add action=mark-connection chain=prerouting comment=GAME disabled=no \
dst-port="843,9339,1818,2001,3010,4300,5105,5121,5126,5171,53400-5352,6000\
-6001,7777" in-interface=!0-FO new-connection-mark=game-conn passthrough=\
yes protocol=tcp
add action=mark-connection chain=prerouting comment="" disabled=no dst-port=\
10001-10011,40000,10009,13008,16666,28012,9376-9377 in-interface=!0-FO \
new-connection-mark=game-conn passthrough=yes protocol=tcp
add action=mark-connection chain=prerouting comment="" disabled=no dst-port=\
11011-11041,10402,11031,12011,12110,13413,15000-15002,16402-16502 \
in-interface=!0-FO new-connection-mark=game-conn passthrough=yes \
protocol=tcp
add action=mark-connection chain=prerouting comment="" disabled=no dst-port="1\
8901-18909,19000,19101,22100,27780,29000,8085,5126,5171,53400-5352,6000-60\
01,9600" in-interface=!0-FO new-connection-mark=game-conn passthrough=yes \
protocol=tcp
add action=mark-connection chain=prerouting comment="" disabled=no dscp=!4 \
dst-port="39100,39110,39190,39220,49100,14009-14010,9300,9400,9700,9601-96\
02,7341-7350,7451" in-interface=!0-FO new-connection-mark=game-conn \
passthrough=no protocol=tcp
add action=mark-connection chain=prerouting comment="" disabled=no dscp=!4 \
dst-port="1293,1479,40040-40500,6100-6152,7777-7977,30000,9600-9602,12020-\
12080,13000-13080" in-interface=!0-FO new-connection-mark=game-conn \
passthrough=yes protocol=udp
add action=mark-connection chain=prerouting comment="" disabled=no dscp=!4 \
dst-port=40000-40010,42051-42052,11100-11125,11440-11460,14009-14010 \
in-interface=!0-FO new-connection-mark=game-conn passthrough=yes \
protocol=udp
add action=mark-connection chain=prerouting comment=FACEBOOK disabled=no \
dst-address-list=FB new-connection-mark=fb-conn passthrough=yes
add action=mark-packet chain=forward comment="" connection-mark=fb-conn \
disabled=no new-packet-mark=packet-fb passthrough=yes src-address-list=""
add action=mark-connection chain=prerouting comment=BROWSING disabled=no \
dst-port=80,81,8080,3128,443 in-interface=!0-FO new-connection-mark=\
browsing-conn passthrough=yes protocol=tcp src-address=!192.168.4.0/24
add action=mark-packet chain=forward comment="" connection-mark=browsing-conn \
disabled=no new-packet-mark=BROWSING passthrough=no
add action=mark-connection chain=prerouting comment=BYPASS disabled=no \
dst-port=22,8291 in-interface=!0-FO new-connection-mark=bypass-conn \
passthrough=no protocol=tcp
add action=mark-packet chain=input comment="" connection-mark=bypass-conn \
disabled=no new-packet-mark=BYPASS passthrough=no
add action=mark-connection chain=prerouting comment=DNS disabled=no dst-port=\
53 new-connection-mark=DNS-conn passthrough=yes protocol=tcp
add action=mark-connection chain=prerouting comment="" disabled=no dst-port=\
53 new-connection-mark=DNS-conn passthrough=yes protocol=udp
add action=mark-packet chain=prerouting comment="" connection-mark=DNS-conn \
disabled=no new-packet-mark=DNS passthrough=yes
add action=mark-connection chain=prerouting comment=ICMP disabled=no \
new-connection-mark=icmp-conn passthrough=yes protocol=icmp
add action=mark-packet chain=prerouting comment="" connection-mark=icmp-conn \
disabled=no new-packet-mark=packet-icmp passthrough=yes protocol=icmp
add action=mark-connection chain=prerouting comment=youtube disabled=no \
layer7-protocol=youtube new-connection-mark=youtube-conn passthrough=yes
add action=mark-packet chain=forward comment="" connection-mark=youtube-conn \
disabled=no layer7-protocol=youtube new-packet-mark=packet-youtube \
passthrough=yes
add action=mark-connection chain=prerouting comment="game pertolongan" \
disabled=no dst-port=!80,81,8080,3128,443 in-interface=!0-FO \
new-connection-mark=game-conn passthrough=yes protocol=tcp src-address=\
!192.168.4.0/24
add action=mark-connection chain=prerouting comment="" disabled=no dst-port=\
!80,81,8080,3128,443 in-interface=!0-FO new-connection-mark=game-conn \
passthrough=yes protocol=udp src-address=!192.168.4.0/24
add action=mark-packet chain=prerouting comment="" connection-mark=game-conn \
disabled=no new-packet-mark=GAME passthrough=yes
Tidak ada komentar:
Posting Komentar