Devilzc0de Forum Follow @devilzc0de
  • Home
  • Hacking
  • Networking
  • Programming
  • O.S
  • Server
  • Tweets
  • Search
  • Member List
  • Calendar
Current time: 05-21-2013, 07:55 AM Hello There, Guest! (Login — Register)
Devilzc0de Forum › Information Technology › Networking › Router And Switch › Mikrotik v
1 2 3 4 5 ... 7 Next »

Marking TCP_HIT dgn ZPH Squid di mikrotik

Home General Computer Multimedia Business Lounge

Post Reply 
Tweet
Threaded Mode | Linear Mode
Marking TCP_HIT dgn ZPH Squid di mikrotik
12-20-2011, 11:40 AM (This post was last modified: 07-25-2012 09:27 PM by Super Moderator.)
Post: #1
Super Moderator Offline
Wahyu Adi Prasetyo
****
Global Moderators
Posts: 6,940
Joined: Jan 2010
Reputation: 237
Marking TCP_HIT dgn ZPH Squid di mikrotik
Sebenernya metode ini hanya buat menandai paket yang udah k HIT di squid,jika kita pake proxy external di mikrotik,jadi paket TCP_HIT di cache squid udah bisa di bypass sama mikrotik a.k.a dimarking sebagai paket HIT cache dan semua request dari klient mendapat traffic full sebesar local-loop yang dipunyai.

Code:
#tcp_outgoing_tos 0x30 localnet
zph_mode tos
zph_local 0x30
zph_parent 0
zph_option 136
kode di atas ditambahkan pada baris terakhir di squid nte,
NB: untuk squid 2.7 stable x,ZPH udah masuk core engine squid,kalo pake versi di bawahnya,patch dulu piss

Di mikrotik di bagian firewall mangle ditambahkan
Code:
/ ip firewall mangle
add chain=prerouting action=mark-packet new-packet-mark=proxy-hit
passthrough=no tos=12 comment="squid" disabled=no

Di bagian Queue, pada baris paling atas.
Code:
/ queue simple
add name="Proxy" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=proxy-hit
direction=both priority=1 queue=default-small/default-small limit-at=0/0 max-limit=0/0
total-queue=default-small disabled=no
keliatan kan di script atas,gak ada limit buat marking paket TCP_HIT nya,alias bypass full ketawa

NB: ati2 aja yang pake RB versi low,kalo gak kuat bakalan nge-hang,jika cache TCP_HIT banyak yang di marking ma mikrotik ( bisa nympe puluhan GiB jika traffic tinggi),disarankan pake RB yang udah gigabit ethernet,ex:rb450 ketawa

sekian terima kasih
_______________ngacir
Visit this user's website Find all posts by this user
Quote this message in a reply
07-04-2012, 07:14 PM (This post was last modified: 07-04-2012 07:16 PM by luthfi_dc.)
Post: #2
luthfi_dc Offline
./Devilz 1st Cadet
Posts: 28
Joined: Jul 2010
Reputation: 3
RE: Marking TCP_HIT dgn ZPH Squid di mikrotik
agan linuxer ganteng ngakak, itu kok pake tos=48 ? bukannya dscp=12?
itu make persi berapa gan? wawa

klo saran ane jangan dilepas hitnya, apalagi pake rb750, rb450, ntar jeblok tu rb, mana pake processor dibawah p4seneng, apa g cepet ancur tuh rbnya gan bangga
Find all posts by this user
Quote this message in a reply
07-13-2012, 04:59 PM (This post was last modified: 07-25-2012 09:28 PM by Super Moderator.)
Post: #3
Super Moderator Offline
Wahyu Adi Prasetyo
****
Global Moderators
Posts: 6,940
Joined: Jan 2010
Reputation: 237
RE: Marking TCP_HIT dgn ZPH Squid di mikrotik
(07-04-2012 07:14 PM)luthfi_dc Wrote:  agan linuxer ganteng ngakak, itu kok pake tos=48 ? bukannya dscp=12?
itu make persi berapa gan? wawa

klo saran ane jangan dilepas hitnya, apalagi pake rb750, rb450, ntar jeblok tu rb, mana pake processor dibawah p4seneng, apa g cepet ancur tuh rbnya gan bangga

gak tuh :P
edited seneng
Visit this user's website Find all posts by this user
Quote this message in a reply
07-29-2012, 02:11 PM (This post was last modified: 07-29-2012 02:19 PM by luthfi_dc.)
Post: #4
luthfi_dc Offline
./Devilz 1st Cadet
Posts: 28
Joined: Jul 2010
Reputation: 3
RE: Marking TCP_HIT dgn ZPH Squid di mikrotik
(07-13-2012 04:59 PM)linuxer46 Wrote:  gak tuh :P
edited seneng

set dah, mewek di edit, klo bisa di kasih aja max limitnya 50M, biar g jebol ngakak
tambahin in-interface=proxy out-interface=local biar g pusing juga si proxynya wow
Find all posts by this user
Quote this message in a reply
08-29-2012, 09:39 AM (This post was last modified: 08-29-2012 09:41 AM by Debian.)
Post: #5
Debian Offline
./Devilz 1st Cadet
Posts: 3
Joined: Aug 2012
Reputation: 0
RE: Marking TCP_HIT dgn ZPH Squid di mikrotik
Quote:set dah, mewek di edit, klo bisa di kasih aja max limitnya 50M, biar g jebol ngakak
tambahin in-interface=proxy out-interface=local biar g pusing juga si proxynya wow

ohhh..jdi klu misal.y cman make rb750/....kira muat g hit.y brow???? :)
Find all posts by this user
Quote this message in a reply
« Next Oldest | Next Newest »
Post Reply 


Topic Tools
Topic Link :
BBCode :
HTML Code :
View a Printable Version Send Thread to a Friend Subscribe to this thread
Submit Google Submit Face book Submit to Digg Submit to Reddit Submit to Furl Submit to Del.icio.us Submit to Jeqq

Possibly Related Threads...
Thread: Author Replies: Views: Last Post
  Setting Mikrotik+ Internel Proxy High Performance chaer.newbie 26 11,412 05-02-2013 10:33 AM
Last Post: uzumady
  Basic Mikrotik - MTCNA 3ono 8 2,545 04-22-2013 11:23 PM
Last Post: xs4kur4
Wink [Tutor] Mikrotik 3.30 + License Level 6 Crack (Link Updated to Mediafire) Vandal 32 6,542 03-29-2013 11:19 PM
Last Post: najong
  Secure Mikrotik Winbox client side attack chaer.newbie 20 1,538 03-20-2013 02:49 PM
Last Post: kid_1412
  Review Mikrotik v5.2 chaer.newbie 12 3,822 12-30-2012 03:36 PM
Last Post: bohori
  [Ask] konfigurasi mikrotik port forwarding ylime19 4 164 11-26-2012 12:10 PM
Last Post: ylime19
  [Tutor] Remote Mikrotik Log with Freebsd syslogd chaer.newbie 10 1,000 11-03-2012 10:59 PM
Last Post: 0c3z
  Bruteforcing/Dict Attack Mikrotik Binaryx86 8 3,817 08-29-2012 09:32 AM
Last Post: Debian
  [Solved] setting mikrotik lewat tampilan php sendiri kampretz 20 2,497 08-12-2012 07:23 PM
Last Post: ./root
  [Ask] Load Balancing 2 line Speedy + Squid vbenk 2 291 08-09-2012 05:23 PM
Last Post: Super Moderator

Users Browsing
1 Guest(s)

  • Contact Us
  • devilzc0de
  • Return to Top
  • Mobile Version
  • RSS Syndication
  • Help
Current time: 05-21-2013, 07:55 AM Powered By MyBB, © 2002-2013 MyBB Group. Theme created by Justin S. | Mixed By Chaer.Newbie | Fixed By Aditya

USING THIS SITE INDICATES THAT YOU HAVE READ AND ACCEPT OUR TERMS. IF YOU DO NOT ACCEPT THESE TERMS, YOU ARE NOT AUTHORIZED TO USE THIS SITE