Вы находитесь на странице: 1из 2

buka cmd prompt di windows : start - run - cmd

terus ketik nslookup gemscool.com nanti keluar


Non-authoritative answer:
Name:
gemscool.com
Address: 203.89.146.41
ip 203.89.146.41 kita whois di http://whois.domaintools.com/
nanti dapet inetnum:
203.89.146.0 - 203.89.147.255
biar ngak ribet ngitung subnetnya buka http://www.ipaddresslocation.org/subnet-m
ask-calculator.php
ip1 masukin 203.89.146.0 ip2 masukin 203.89.146.255
ntar dapet CIDR 203.89.146.0/24
port 80 untuk http
CIDR 203.89.146.0/24 ini yg nanti kita masukan ke address list mikrotiknya
ip 192.168.1.10 hanya boleh game sama buka situs game
masukan ke address list game
ip firewall address-list add list=game address=192.168.1.10
terus firewall filternya dirubah jadi
ip firewall filter add chain=forward action=drop protocol=tc
p dst-address-list=!web-game dst-port=80 src-address-list=game
/ip firewall filter add chain=forward protocol=tcp in-interface=ether-lokal dstport=80 src-address-list=user-tertentu dst-address-list=!ip-web-yang-bolehin act
ion=drop
address-list user-tertentu = isi dengan ip usernya
address-list ip-web-yang-dibolehin = isi dengan ip address web nya.
masalahnya ip facebook bukan cuma satu, script diatas mgkn bisa digabung dengan
ini
173.194.120.152
159
143
151
1 ;;; Allow Situs
chain=forward action=accept protocol=tcp src-address=192.168.1.10
dst-port=80 content=pajak
2 chain=forward action=accept protocol=tcp src-address=192.168.1.10
dst-port=80 content=klikbca
3 ;;; Block situs selain situs di atas
chain=forward action=drop protocol=tcp src-address=192.168.1.10

/ip firewall filter add chain=forward protocol=tcp in-interface=ether-lokal dstport=80 src-address-list=user-tertentu dst-address-list=!ip-web-yang-bolehin act
ion=drop

Вам также может понравиться