MikroTik: Optimasi PING dan DNS

Revision as of 18:55, 26 August 2024 by Kangtain (talk | contribs) (Created page with "Berikut langkah membuat penandaan koneksi (mark connection) untuk ping icmp dan port DNS di Mikrotik. Nantinya bisa dikombinasikan baik untuk pisah trafik maupun routing. === Buat New Mangle. === * ''General'' ** Chain: prerouting ** Protocol: 1 (icmp) * ''Action'' ** Action: mark connection ** New Connection Mark: DNS-ICMP ** Passthrough: Yes Apply > OK. === Buat New Mangle lagi. === * ''General'' ** Chain: prerouting ** Protocol: 6 (tcp) ** Dst. Port: 53,5353,853...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Berikut langkah membuat penandaan koneksi (mark connection) untuk ping icmp dan port DNS di Mikrotik. Nantinya bisa dikombinasikan baik untuk pisah trafik maupun routing.

Buat New Mangle.

  • General
    • Chain: prerouting
    • Protocol: 1 (icmp)
  • Action
    • Action: mark connection
    • New Connection Mark: DNS-ICMP
    • Passthrough: Yes

Apply > OK.

Buat New Mangle lagi.

  • General
    • Chain: prerouting
    • Protocol: 6 (tcp)
    • Dst. Port: 53,5353,853
  • Action
    • Action: mark connection
    • New Connection Mark: DNS-ICMP
    • Passthrough: Yes

Apply > OK.

Buat New Mangle lagi deh.

  • General
    • Chain: prerouting
    • Protocol: 17 (udp)
    • Dst. Port: 53,5353,853
  • Action
    • Action: mark connection
    • New Connection Mark: DNS-ICMP
    • Passthrough: Yes

Apply > OK.

Buatkan paket untuk pisah trafik PING/DNS, masih New Mangle.

  • General
    • Chain: forward
    • Connection Mark: DNS-ICMP
  • Action
    • Action: mark packet
    • New Packet Mark: Paket-Ping-DNS
    • Passthrough: NO

Apply, OK.

Sampai di sini proses pembuatan firewall DNS, ICMP atau PING Packet sudah selesai. Tinggal bisa ditambahkan Simple Queue khusus untuk memisahkan trafik ping dan DNS-nya.

Source