/interface ethernet
set 0 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes l2mtu=1526 \
mac-address=xx:xx:xx:xx:xx:xx mtu=1500 name=ether1-speedy1 speed=100Mbps
set 1 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=yes \
full-duplex=yes mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
ether2-speedy2 speed=100Mbps
set 2 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=yes \
full-duplex=yes l2mtu=1524 mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
wifi speed=100Mbps
set 3 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=no \
full-duplex=yes l2mtu=1524 mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
ether4-proxy speed=100Mbps
set 4 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=no \
full-duplex=yes l2mtu=1524 mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
ether5-local speed=100Mbps
/interface pppoe-client
add ac-name="" add-default-route=no allow=pap,chap,mschap1,mschap2 comment="" \
dial-on-demand=no disabled=no interface=ether1-speedy1 max-mru=1480 max-mtu=1480 mrru=\
disabled name=speedy1 password=xxxxxxxxx profile=default service-name="" use-peer-dns=\
no user=162xxxxxxxxx@telkom.net
/interface bridge settings
set use-ip-firewall=no use-ip-firewall-for-pppoe=no use-ip-firewall-for-vlan=no
/interface ethernet mirror
set mirror-port=none source-port=none
/interface l2tp-server server
set authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption enabled=no \
max-mru=1460 max-mtu=1460 mrru=disabled
/interface ovpn-server server
set auth=sha1,md5 certificate=none cipher=blowfish128,aes128 default-profile=default \
enabled=no keepalive-timeout=60 mac-address=FE:11:F9:9F:DC:1E max-mtu=1500 mode=ip \
netmask=24 port=1194 require-client-certificate=no
/interface pptp-server server
set authentication=mschap1,mschap2 default-profile=default-encryption enabled=no \
keepalive-timeout=30 max-mru=1460 max-mtu=1460 mrru=disabled
set 0 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes l2mtu=1526 \
mac-address=xx:xx:xx:xx:xx:xx mtu=1500 name=ether1-speedy1 speed=100Mbps
set 1 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=yes \
full-duplex=yes mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
ether2-speedy2 speed=100Mbps
set 2 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=yes \
full-duplex=yes l2mtu=1524 mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
wifi speed=100Mbps
set 3 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=no \
full-duplex=yes l2mtu=1524 mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
ether4-proxy speed=100Mbps
set 4 arp=enabled auto-negotiation=yes bandwidth=unlimited/unlimited comment="" disabled=no \
full-duplex=yes l2mtu=1524 mac-address=xx:xx:xx:xx:xx:xx master-port=none mtu=1500 name=\
ether5-local speed=100Mbps
/interface pppoe-client
add ac-name="" add-default-route=no allow=pap,chap,mschap1,mschap2 comment="" \
dial-on-demand=no disabled=no interface=ether1-speedy1 max-mru=1480 max-mtu=1480 mrru=\
disabled name=speedy1 password=xxxxxxxxx profile=default service-name="" use-peer-dns=\
no user=162xxxxxxxxx@telkom.net
/interface bridge settings
set use-ip-firewall=no use-ip-firewall-for-pppoe=no use-ip-firewall-for-vlan=no
/interface ethernet mirror
set mirror-port=none source-port=none
/interface l2tp-server server
set authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption enabled=no \
max-mru=1460 max-mtu=1460 mrru=disabled
/interface ovpn-server server
set auth=sha1,md5 certificate=none cipher=blowfish128,aes128 default-profile=default \
enabled=no keepalive-timeout=60 mac-address=FE:11:F9:9F:DC:1E max-mtu=1500 mode=ip \
netmask=24 port=1194 require-client-certificate=no
/interface pptp-server server
set authentication=mschap1,mschap2 default-profile=default-encryption enabled=no \
keepalive-timeout=30 max-mru=1460 max-mtu=1460 mrru=disabled
ip address
add address=192.168.0.30/27 broadcast=192.168.0.31 comment="" disabled=no interface=\
ether5-local network=192.168.0.0
add address=10.20.30.1/24 broadcast=10.20.30.255 comment="" disabled=yes interface=wifi \
network=10.20.30.0
add address=10.10.10.1/30 broadcast=10.10.10.3 comment="" disabled=no interface=ether4-proxy \
network=10.10.10.0
add address=192.168.0.30/27 broadcast=192.168.0.31 comment="" disabled=no interface=\
ether5-local network=192.168.0.0
add address=10.20.30.1/24 broadcast=10.20.30.255 comment="" disabled=yes interface=wifi \
network=10.20.30.0
add address=10.10.10.1/30 broadcast=10.10.10.3 comment="" disabled=no interface=ether4-proxy \
network=10.10.10.0
ip route
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=speedy1 \
routing-mark=route_speedy1
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=speedy1 \
routing-mark=route_speedy1
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=speedy1
add comment="" disabled=no distance=2 dst-address=0.0.0.0/0 gateway=speedy1
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=speedy1 \
routing-mark=route_speedy1
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=speedy1 \
routing-mark=route_speedy1
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 gateway=speedy1
add comment="" disabled=no distance=2 dst-address=0.0.0.0/0 gateway=speedy1
ip fir add-list
add address=192.168.0.0/27 comment="" disabled=no list=connected-network------>local
add address=speedy 2 comment="" disabled=no list=connected-network
add address=ip speedy statis comment="" disabled=no list=connected-network
add address=10.10.10.0/30 comment="" disabled=no list=connected-network---->proxy
add address=10.20.30.0/24 comment="" disabled=no list=connected-network---->wifi
add address=192.168.0.0/27 comment="" disabled=no list=connected-network------>local
add address=speedy 2 comment="" disabled=no list=connected-network
add address=ip speedy statis comment="" disabled=no list=connected-network
add address=10.10.10.0/30 comment="" disabled=no list=connected-network---->proxy
add address=10.20.30.0/24 comment="" disabled=no list=connected-network---->wifi
ip firewall mangle
add action=mark-packet chain=prerouting comment=PACKET-HIT disabled=no dscp=12 in-interface=\
ether4-proxy new-packet-mark=packet-HIT passthrough=no
add action=accept chain=prerouting comment=Connected-Network disabled=no dst-address-list=\
connected-network in-interface=ether5-local
add action=accept chain=prerouting comment="" disabled=no dst-address-list=connected-network \
in-interface=ether4-proxy
add action=mark-connection chain=input comment="Mark inbound connection wan1" \
connection-state=new disabled=no in-interface=speedy1 new-connection-mark=conn_speedy1 \
passthrough=yes
add action=mark-connection chain=prerouting comment="Mark inbound connection wan1" \
connection-state=established disabled=no in-interface=speedy1 new-connection-mark=\
conn_speedy1 passthrough=yes
add action=mark-connection chain=prerouting comment=\
"Mark traffic that isn't local with PCC mark rand (3 possibilities) - option 1" \
connection-state=new disabled=yes dst-address-type=!local in-interface=ether4-proxy \
new-connection-mark=conn_speedy1 passthrough=yes per-connection-classifier=\
both-addresses:2/0
add action=mark-connection chain=prerouting comment=\
"Mark traffic that isn't local with PCC mark rand (3 possibilities) - option 1" \
connection-state=established disabled=yes dst-address-type=!local in-interface=\
ether4-proxy new-connection-mark=conn_speedy1 passthrough=yes per-connection-classifier=\
both-addresses:2/0
add action=mark-routing chain=prerouting comment="Mark routing for PCC mark - speedy 1" \
connection-mark=conn_speedy1 disabled=no in-interface=ether4-proxy new-routing-mark=\
route_speedy1 passthrough=yes
add action=mark-routing chain=output comment="Mark new inbound route wan1" connection-mark=\
conn_speedy1 disabled=yes new-routing-mark=route_speedy1 passthrough=no
add action=mark-connection chain=postrouting comment="" disabled=yes new-connection-mark=\
hotspot out-interface=wifi passthrough=yes
add action=mark-packet chain=postrouting comment="" connection-mark=hotspot disabled=yes \
dscp=12 dst-address=10.20.30.0/24 new-packet-mark=HIT passthrough=yes
add action=mark-packet chain=prerouting comment=PACKET-HIT disabled=no dscp=12 in-interface=\
ether4-proxy new-packet-mark=packet-HIT passthrough=no
add action=accept chain=prerouting comment=Connected-Network disabled=no dst-address-list=\
connected-network in-interface=ether5-local
add action=accept chain=prerouting comment="" disabled=no dst-address-list=connected-network \
in-interface=ether4-proxy
add action=mark-connection chain=input comment="Mark inbound connection wan1" \
connection-state=new disabled=no in-interface=speedy1 new-connection-mark=conn_speedy1 \
passthrough=yes
add action=mark-connection chain=prerouting comment="Mark inbound connection wan1" \
connection-state=established disabled=no in-interface=speedy1 new-connection-mark=\
conn_speedy1 passthrough=yes
add action=mark-connection chain=prerouting comment=\
"Mark traffic that isn't local with PCC mark rand (3 possibilities) - option 1" \
connection-state=new disabled=yes dst-address-type=!local in-interface=ether4-proxy \
new-connection-mark=conn_speedy1 passthrough=yes per-connection-classifier=\
both-addresses:2/0
add action=mark-connection chain=prerouting comment=\
"Mark traffic that isn't local with PCC mark rand (3 possibilities) - option 1" \
connection-state=established disabled=yes dst-address-type=!local in-interface=\
ether4-proxy new-connection-mark=conn_speedy1 passthrough=yes per-connection-classifier=\
both-addresses:2/0
add action=mark-routing chain=prerouting comment="Mark routing for PCC mark - speedy 1" \
connection-mark=conn_speedy1 disabled=no in-interface=ether4-proxy new-routing-mark=\
route_speedy1 passthrough=yes
add action=mark-routing chain=output comment="Mark new inbound route wan1" connection-mark=\
conn_speedy1 disabled=yes new-routing-mark=route_speedy1 passthrough=no
add action=mark-connection chain=postrouting comment="" disabled=yes new-connection-mark=\
hotspot out-interface=wifi passthrough=yes
add action=mark-packet chain=postrouting comment="" connection-mark=hotspot disabled=yes \
dscp=12 dst-address=10.20.30.0/24 new-packet-mark=HIT passthrough=yes
ip firewall nat
add action=passthrough chain=unused-hs-chain comment="place hotspot rules here" disabled=yes
add action=masquerade chain=srcnat comment="" disabled=no out-interface=speedy1
add action=dst-nat chain=dstnat comment=Transparent-Proxy disabled=no dst-address=\
!192.168.0.0/16 dst-port=80,8080,3128 in-interface=ether5-local protocol=tcp \
to-addresses=10.10.10.2 to-ports=3128
add action=dst-nat chain=dstnat comment="Remote prxy" disabled=yes dst-port=2222 protocol=\
tcp to-addresses=10.10.10.2 to-ports=22
add action=dst-nat chain=dstnat comment=Transparent-Proxy disabled=yes dst-address=\
!10.20.30.0/24 dst-port=80,8080,3128 in-interface=wifi protocol=tcp to-addresses=\
10.10.10.2 to-ports=3128
add action=passthrough chain=unused-hs-chain comment="place hotspot rules here" disabled=yes
add action=masquerade chain=srcnat comment="" disabled=no out-interface=speedy1
add action=dst-nat chain=dstnat comment=Transparent-Proxy disabled=no dst-address=\
!192.168.0.0/16 dst-port=80,8080,3128 in-interface=ether5-local protocol=tcp \
to-addresses=10.10.10.2 to-ports=3128
add action=dst-nat chain=dstnat comment="Remote prxy" disabled=yes dst-port=2222 protocol=\
tcp to-addresses=10.10.10.2 to-ports=22
add action=dst-nat chain=dstnat comment=Transparent-Proxy disabled=yes dst-address=\
!10.20.30.0/24 dst-port=80,8080,3128 in-interface=wifi protocol=tcp to-addresses=\
10.10.10.2 to-ports=3128
queue simple
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment="" direction=both disabled=\
no dst-address=0.0.0.0/0 interface=all limit-at=0/0 max-limit=50M/50M name="Proxy HIT" \
packet-marks=packet-HIT parent=none priority=8 queue=default-small/default-small \
total-queue=default-small
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment="" direction=both disabled=\
no dst-address=0.0.0.0/0 interface=all limit-at=0/0 max-limit=0/2M name=overall parent=\
none priority=8 queue=default-small/default-small total-queue=default-small
add burst-limit=0/1M burst-threshold=0/192k burst-time=0s/20s comment="" direction=both \
disabled=no dst-address=0.0.0.0/0 interface=all limit-at=0/128k max-limit=0/384k name=\
server parent=overall priority=8 queue=default/default target-addresses=192.168.0.1/32 \
total-queue=default
add burst-limit=0/1M burst-threshold=0/192k burst-time=0s/20s comment="" direction=both \
disabled=no dst-address=0.0.0.0/0 interface=all limit-at=0/128k max-limit=0/384k name=\
client1 parent=overall priority=8 queue=default-small/default-small target-addresses=\
192.168.0.11/32 total-queue=default-small
untuk menambah queue simple tinggal dirubah target address nya
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment="" direction=both disabled=\
no dst-address=0.0.0.0/0 interface=all limit-at=0/0 max-limit=50M/50M name="Proxy HIT" \
packet-marks=packet-HIT parent=none priority=8 queue=default-small/default-small \
total-queue=default-small
add burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s comment="" direction=both disabled=\
no dst-address=0.0.0.0/0 interface=all limit-at=0/0 max-limit=0/2M name=overall parent=\
none priority=8 queue=default-small/default-small total-queue=default-small
add burst-limit=0/1M burst-threshold=0/192k burst-time=0s/20s comment="" direction=both \
disabled=no dst-address=0.0.0.0/0 interface=all limit-at=0/128k max-limit=0/384k name=\
server parent=overall priority=8 queue=default/default target-addresses=192.168.0.1/32 \
total-queue=default
add burst-limit=0/1M burst-threshold=0/192k burst-time=0s/20s comment="" direction=both \
disabled=no dst-address=0.0.0.0/0 interface=all limit-at=0/128k max-limit=0/384k name=\
client1 parent=overall priority=8 queue=default-small/default-small target-addresses=\
192.168.0.11/32 total-queue=default-small
untuk menambah queue simple tinggal dirubah target address nya
Ditulis Oleh : Unknown~Tutrorial Blogspot
Sobat sedang membaca artikel tentang PCC Routing Speedy Untuk Warnet dan Game Online. Oleh Admin, Sobat diperbolehkan mengcopy paste atau menyebar-luaskan artikel ini. Silakan di rubah dan sesuaikan dengan selera sobat
