<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>blog.becouz.net &#187; Mikrotik</title>
	<atom:link href="http://blog.becouz.net/category/operating-system/mikrotik-operating-system/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.becouz.net</link>
	<description>Computer News, Software News, Hardware News</description>
	<lastBuildDate>Wed, 01 Feb 2012 13:49:10 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Cara Membatasi Download menggunakan Mikrotik</title>
		<link>http://blog.becouz.net/cara-membatasi-download-menggunakan-mikrotik.html</link>
		<comments>http://blog.becouz.net/cara-membatasi-download-menggunakan-mikrotik.html#comments</comments>
		<pubDate>Wed, 01 Feb 2012 13:49:10 +0000</pubDate>
		<dc:creator>becouz</dc:creator>
				<category><![CDATA[Computer]]></category>
		<category><![CDATA[Computer Networking]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Internet Tips]]></category>
		<category><![CDATA[Mikrotik]]></category>
		<category><![CDATA[download]]></category>
		<category><![CDATA[download limiter]]></category>
		<category><![CDATA[Hardware]]></category>
		<category><![CDATA[mikrotik]]></category>
		<category><![CDATA[Software]]></category>

		<guid isPermaLink="false">http://blog.becouz.net/?p=2797</guid>
		<description><![CDATA[Postingan berikut merupakan copas dari blog.bodi.web.id, hal ini gw copas karena gw merasa butuh n akan gw perlukan sebagai panduan. Berikut detail ulasannya : Pusing dengan user yang download file dengan kapasitas besar sehingga mengganggu kenyamanan browsing, berikut cara untuk membatasi download dengan Layer 7 : 1. Masukkan ekstensi file di Layer 7 agar tertangkap [...]


Related posts:<ol><li><a href='http://blog.becouz.net/tips-block-akses-browsing-di-mikrotik-dengan-schedule.html' rel='bookmark' title='Permanent Link: Tips Block Akses Browsing di Mikrotik dengan Schedule'>Tips Block Akses Browsing di Mikrotik dengan Schedule</a></li>
<li><a href='http://blog.becouz.net/cara-mudah-bin-simple-setting-mikrotik.html' rel='bookmark' title='Permanent Link: Cara Mudah bin Simple Setting Mikrotik'>Cara Mudah bin Simple Setting Mikrotik</a></li>
<li><a href='http://blog.becouz.net/mikrotik-simple-queue.html' rel='bookmark' title='Permanent Link: Mikrotik Simple Queue'>Mikrotik Simple Queue</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Postingan berikut merupakan copas dari blog.bodi.web.id, hal ini gw copas karena gw merasa butuh n akan gw perlukan sebagai panduan. Berikut detail ulasannya :<br />
Pusing dengan user yang  download file dengan kapasitas besar sehingga mengganggu kenyamanan  browsing, berikut cara untuk membatasi download dengan Layer 7 :  1. Masukkan ekstensi file di Layer 7 agar tertangkap oleh router ketika  melewatinya :<br />
1. Masukkan ekstensi file di Layer 7 agar tertangkap oleh router ketika melewatinya:</p>
<p>/ip firewall layer7-protocol<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .exe \&#8221;" regexp=&#8221;\\.(exe)&#8221;<span id="more-2797"></span><br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .rar \&#8221;" regexp=&#8221;\\.(rar)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .zip \&#8221;" regexp=&#8221;\\.(zip)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .7z \&#8221;" regexp=&#8221;\\.(7z)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .cab \&#8221;" regexp=&#8221;\\.(cab)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .asf \&#8221;" regexp=&#8221;\\.(asf)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mov \&#8221;" regexp=&#8221;\\.(mov)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .wmv \&#8221;" regexp=&#8221;\\.(wmv)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mpg \&#8221;" regexp=&#8221;\\.(mpg)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mpeg \&#8221;" regexp=&#8221;\\.(mpeg)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mkv \&#8221;" regexp=&#8221;\\.(mkv)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .avi \&#8221;" regexp=&#8221;\\.(avi)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .flv \&#8221;" regexp=&#8221;\\.(flv)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .pdf \&#8221;" regexp=&#8221;\\.(pdf)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .wav \&#8221;" regexp=&#8221;\\.(wav)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .rm \&#8221;" regexp=&#8221;\\.(rm)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mp3 \&#8221;" regexp=&#8221;\\.(mp3)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mp4 \&#8221;" regexp=&#8221;\\.(mp4)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .ram \&#8221;" regexp=&#8221;\\.(ram)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .rmvb \&#8221;" regexp=&#8221;\\.(rmvb)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .dat \&#8221;" regexp=&#8221;\\.(dat)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .daa \&#8221;" regexp=&#8221;\\.(daa)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .iso \&#8221;" regexp=&#8221;\\.(iso)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .nrg \&#8221;" regexp=&#8221;\\.(nrg)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .bin \&#8221;" regexp=&#8221;\\.(bin)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .vcd \&#8221;" regexp=&#8221;\\.(vcd)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mp2 \&#8221;" regexp=&#8221;\\.(mp2)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .3gp \&#8221;" regexp=&#8221;\\.(3gp)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .mpe \&#8221;" regexp=&#8221;\\.(mpe)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .qt \&#8221;" regexp=&#8221;\\.(qt)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .raw \&#8221;" regexp=&#8221;\\.(raw)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .wma \&#8221;" regexp=&#8221;\\.(wma)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .ogg \&#8221;" regexp=&#8221;\\.(ogg)&#8221;<br />
add comment=&#8221;" name=&#8221;Extension \&#8221; .doc \&#8221;" regexp=&#8221;\\.(doc)&#8221;</p>
<p>2. Set IP jaringan di Address List pada Firewall ?<br />
/ip firewall address-list<br />
add address=1.1.1.1 comment=&#8221;" disabled=no list=bypass add address=2.2.2.2 comment=&#8221;" disabled=no list=bypass add address=2.2.2.2 comment=&#8221;" disabled=no list=skip_content_download<br />
add address=3.3.0.0/24 comment=&#8221;" disabled=no list=skip_content_download</p>
<p>1.1.1.1 = ip public<br />
2.2.2.2 = ip mikrotik / ip webproxy (jika menggunakan webproxy external berarti harus ditambahkan ipnya di list ” bypass ”<br />
3.3.0.0/24 = range ip jaringan lokal<br />
Jangan lupa untuk memasukkan IP Public, IP Mikrotik atau IP Webproxy ke dalam list ” bypass ”</p>
<p>3. Pasang Filter di Firewall untuk menjaring ekstensi yang sedang didownload yang melalui Router Mikrotik ?<br />
/ip firewall filter<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mp3 \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .avi \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .flv \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .iso \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .pdf \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mpeg \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .exe \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .rar \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .zip \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mp4 \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mp2 \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .3gp \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mov \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mpe \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mpg \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .qt \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .ram \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .rm \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .raw \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .wav \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .wmv \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .wma \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .ogg \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .doc \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .7z \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .asf \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .bin \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .cab \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .daa \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .dat \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .mkv \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .nrg \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .rmvb \&#8221;" protocol=tcp<br />
add action=add-dst-to-address-list address-list=content_download address-list-timeout=5s chain=forward comment=&#8221;" disabled=no dst-address-list=\ !skip_content_download layer7-protocol=&#8221;Extension \&#8221; .vcd \&#8221;" protocol=tcp </p>
<p>4. Set Mangle di Mikrotik ? </p>
<p>/ip firewall mangle add<br />
action=mark-connection chain=prerouting comment=Content_download disabled=no dst-address-list=content_download new-connection-mark=\ Bw_Download passthrough=yes protocol=tcp<br />
add action=mark-connection chain=prerouting comment=&#8221;" connection-bytes=262146-4294967295 disabled=no dst-address-list=!bypass new-connection-mark=\ Bw_Download passthrough=yes protocol=!icmp<br />
add action=mark-packet chain=prerouting comment=&#8221;" connection-mark=Bw_Download disabled=no dst-address-list=!bypass new-packet-mark=Paket_Download \ passthrough=no<br />
add action=mark-connection chain=prerouting comment=Content_browsing disabled=no dst-address-list=!bypass new-connection-mark=Bw_Browsing passthrough=yes \ protocol=!icmp<br />
add action=mark-packet chain=prerouting comment=&#8221;" connection-mark=Bw_Browsing disabled=no dst-address-list=!bypass new-packet-mark=Paket_Browsing \ passthrough=no </p>
<p>5. Set PCQ dan Queue<br />
/queue type<br />
add kind=pcq name=pcq-down pcq-classifier=dst-address pcq-limit=50 pcq-rate=256000 pcq-total-limit=2000<br />
add kind=pcq name=Pcq_Browsing_Down pcq-classifier=dst-address pcq-li ? 1 2 3 4 5 6 </p>
<p>/queue tree<br />
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 name=DOWN parent=LOCAL priority=8<br />
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=0 name=Browsing_Down packet-mark=Paket_Browsing parent=DOWN priority=5 \ queue=Pcq_Browsing_Down<br />
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no max-limit=256k name=Regular_Down packet-mark=Paket_Download parent=DOWN \ priority=8 queue=pcq-down </p>
<p>Kalau aku sendiri cukup menggunakan Simple Queue dengan masing2 Connection Mark adalah ” Paket_Browsing ” dan ” Paket_Download ” dan terbukti ampuh juga. </p>
<p>Sampai disini langkah untuk membatasi Download sudah selesai …… silahkan cek paket2 yang melalui mangle apakah sudah berjalan. </p>
<p>Sebagai tambahan, seandainya cukup terganggu dengan pengguna IDM … bisa memasukkan perintah berikut pada Firewall<br />
/ip firewall filter<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .exe \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .3gp \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .7z \&#8221;" protocol=tcp add<br />
action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .asf \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .avi \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .bin \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .cab \&#8221;" protocol=tcp add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .daa \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .dat \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .doc \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .flv \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .iso \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mkv \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mov \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mp2 \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mp3 \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mp4 \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mpe \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mpeg \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .mpg \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .nrg \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .ogg \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .pdf \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .qt \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .ram \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .rar \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .raw \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .rm \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .rmvb \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .vcd \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .wav \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .wma \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .wmv \&#8221;" protocol=tcp<br />
add action=drop chain=forward comment=&#8221;" connection-limit=4,32 disabled=no in-interface=LOCAL layer7-protocol=&#8221;Extension \&#8221; .zip \&#8221;" protocol=tcp </p>
<p>Mungkin cukup segitu dulu tutorialnya, maaf kalo agak BASBANG …. semoga bermanfaat.</p>
<script type="text/javascript" class="owbutton" src="http://www.onlywire.com/btn/button_2543" title="Cara Membatasi Download menggunakan Mikrotik" url="http://blog.becouz.net/cara-membatasi-download-menggunakan-mikrotik.html"></script>

<p>Related posts:<ol><li><a href='http://blog.becouz.net/tips-block-akses-browsing-di-mikrotik-dengan-schedule.html' rel='bookmark' title='Permanent Link: Tips Block Akses Browsing di Mikrotik dengan Schedule'>Tips Block Akses Browsing di Mikrotik dengan Schedule</a></li>
<li><a href='http://blog.becouz.net/cara-mudah-bin-simple-setting-mikrotik.html' rel='bookmark' title='Permanent Link: Cara Mudah bin Simple Setting Mikrotik'>Cara Mudah bin Simple Setting Mikrotik</a></li>
<li><a href='http://blog.becouz.net/mikrotik-simple-queue.html' rel='bookmark' title='Permanent Link: Mikrotik Simple Queue'>Mikrotik Simple Queue</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://blog.becouz.net/cara-membatasi-download-menggunakan-mikrotik.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tips Block Akses Browsing di Mikrotik dengan Schedule</title>
		<link>http://blog.becouz.net/tips-block-akses-browsing-di-mikrotik-dengan-schedule.html</link>
		<comments>http://blog.becouz.net/tips-block-akses-browsing-di-mikrotik-dengan-schedule.html#comments</comments>
		<pubDate>Thu, 07 Jan 2010 06:20:10 +0000</pubDate>
		<dc:creator>becouz</dc:creator>
				<category><![CDATA[Computer Networking]]></category>
		<category><![CDATA[Mikrotik]]></category>
		<category><![CDATA[O-System]]></category>
		<category><![CDATA[block akses mikrotik]]></category>
		<category><![CDATA[computer news]]></category>
		<category><![CDATA[Computer Tips]]></category>
		<category><![CDATA[Hardware]]></category>
		<category><![CDATA[hardware news]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Internet News]]></category>
		<category><![CDATA[internet tips and trick]]></category>
		<category><![CDATA[mikrotik]]></category>
		<category><![CDATA[setting mikrotik]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[software news]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[tips mikrotik]]></category>

		<guid isPermaLink="false">http://blog.becouz.net/?p=2384</guid>
		<description><![CDATA[Ini merupakan salah satu catatan pribadi, dimana untuk ngeblok akses situs atau download file tertentu serta pada jam tertentu. Untuk melakukan blocking ini aku menggunakan web proxy yang ada di mikrotik. Cara yang aku lakukan : Buat nat rule untuk webproxy-nya /ip firewall nat add chain=dstnat protocol=tcp dst-port=80 action=redirect to-ports=8080 enable webproxy-nya ip web-proxy set [...]


Related posts:<ol><li><a href='http://blog.becouz.net/membuat-hotspot-dengan-mikrotik.html' rel='bookmark' title='Permanent Link: Tips Membuat Hotspot dengan Mikrotik'>Tips Membuat Hotspot dengan Mikrotik</a></li>
<li><a href='http://blog.becouz.net/tips-browsing-melewati-firewall.html' rel='bookmark' title='Permanent Link: Tips Browsing Melewati Firewall'>Tips Browsing Melewati Firewall</a></li>
<li><a href='http://blog.becouz.net/setting-hotspot-dengan-server-mikrotik.html' rel='bookmark' title='Permanent Link: Tips Setting Hotspot dengan Server Mikrotik'>Tips Setting Hotspot dengan Server Mikrotik</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Ini merupakan salah satu catatan pribadi, dimana untuk ngeblok akses situs atau download file tertentu serta pada jam tertentu. Untuk melakukan blocking ini aku menggunakan web proxy yang ada di <a href="http://blog.becouz.net/cara-mudah-bin-simple-setting-mikrotik.html" target="_blank">mikrotik</a>.</p>
<p>Cara yang aku lakukan :</p>
<blockquote><p><strong>Buat nat rule untuk webproxy-nya</strong><br />
/ip firewall nat add chain=dstnat protocol=tcp dst-port=80 action=redirect to-ports=8080</p></blockquote>
<p><strong>enable webproxy-nya</strong></p>
<blockquote><p>ip web-proxy set enabled=yes</p></blockquote>
<p><strong>masukkan content yang ingin di blok<span id="more-2384"></span></strong></p>
<blockquote><p>/ip web-proxy access add src-address=0.0.0.0/0 dst-address=0.0.0.0/0 url=*.facebook.com* action=deny comment=situs</p></blockquote>
<p><strong>Lalu create script (system &gt;&gt; script)</strong></p>
<blockquote><p>Name : bloksiang<br />
Policy : write, read, policy (yang dicentang)<br />
Source:<br />
/ip web-proxy access enable [/ip web-proxy access find comment=situs]<br />
Name : blokmalam<br />
Policy : write, read, policy (yang dicentang)<br />
Source:<br />
/ip web-proxy access disable [/ip web-proxy access find comment=situs]</p></blockquote>
<p><strong>Buat scheduler yang diinginkan (system &gt;&gt; scheduler).</strong></p>
<blockquote><p>name=bloksiang<br />
start-date=Jan/01/2010<br />
start-time=08:30:00<br />
interval=1d 00:00:00<br />
on-event= bloksiang</p>
<p>name=blokmalam<br />
start-date=Jan/01/2010<br />
start-time=18:30:00<br />
interval=1d 00:00:00<br />
on-event= blokmalam</p></blockquote>
<p>Nah setelah itu maka liat aja hasilnya maka situs yang masuk di dalam list di web proxy akan terblok. Kalo ada banyak situs atau address atau file yang ingin di blok maka tinggal di add di web proxy serta diberi comment yang sama (dalam hal ini saya menggunakan comment=situs), maka pada waktu yang bersamaan semua situs yang ada list akan terblok.</p>
<p>Misalnya :</p>
<blockquote><p>/ip web-proxy access add src-address=0.0.0.0/0 dst-address=0.0.0.0/0 url=*.youtube* action=deny comment=situs<br />
/ip web-proxy access add src-address=0.0.0.0/0 dst-address=0.0.0.0/0 url=*mpeg* action=deny comment=situs<br />
/ip web-proxy access add src-address=0.0.0.0/0 dst-address=0.0.0.0/0 url=*exe* action=deny comment=situs</p></blockquote>
<script type="text/javascript" class="owbutton" src="http://www.onlywire.com/btn/button_2543" title="Tips Block Akses Browsing di Mikrotik dengan Schedule" url="http://blog.becouz.net/tips-block-akses-browsing-di-mikrotik-dengan-schedule.html"></script>

<p>Related posts:<ol><li><a href='http://blog.becouz.net/membuat-hotspot-dengan-mikrotik.html' rel='bookmark' title='Permanent Link: Tips Membuat Hotspot dengan Mikrotik'>Tips Membuat Hotspot dengan Mikrotik</a></li>
<li><a href='http://blog.becouz.net/tips-browsing-melewati-firewall.html' rel='bookmark' title='Permanent Link: Tips Browsing Melewati Firewall'>Tips Browsing Melewati Firewall</a></li>
<li><a href='http://blog.becouz.net/setting-hotspot-dengan-server-mikrotik.html' rel='bookmark' title='Permanent Link: Tips Setting Hotspot dengan Server Mikrotik'>Tips Setting Hotspot dengan Server Mikrotik</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://blog.becouz.net/tips-block-akses-browsing-di-mikrotik-dengan-schedule.html/feed</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
	</channel>
</rss>

