Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ether5-WMS = ISP UTAMA
- ether1-INDIHOME = ISP BACK UP DAN KHUSUS GAME
- /ip firewall address-list
- add address=192.168.2.0/24 list=ip_private (AP)
- add address=192.168.3.0/24 list=ip_private (LAN)
- add address=192.168.10.0/24 list=ip_private (WMS)
- add address=192.168.100.0/24 list=ip_private (INDIHOME)
- add address=10.10.8.0/21 list=ip_private (HOTSPOT)
- /ip firewall mangle
- add action=mark-connection chain=prerouting comment=GAME connection-mark=\
- !BROWSING dst-address-list="IP GAME ONLINE" in-interface=!ether5-WMS \
- new-connection-mark=GAME passthrough=yes protocol=tcp
- add action=mark-connection chain=prerouting connection-mark=!BROWSING \
- dst-address-list="IP GAME ONLINE" in-interface=!ether5-WMS \
- new-connection-mark=GAME passthrough=yes protocol=udp
- add action=mark-packet chain=forward connection-mark=GAME in-interface=\
- ether1-INDIHOME new-packet-mark="GAME DOWNLOAD" passthrough=yes
- add action=mark-packet chain=forward connection-mark=GAME new-packet-mark=\
- "GAME UPLOAD" out-interface=ether1-INDIHOME passthrough=yes
- add action=mark-routing chain=prerouting comment="JALUR GAME" \
- connection-mark=GAME in-interface=!ether5-WMS new-routing-mark=\
- "GAME ONLINE" passthrough=yes src-address-list=ip_private
- add action=mark-connection chain=prerouting comment=BROWSING dst-port=\
- 21,22,23,81,88,5050,843,182,8777,1935,53,8000-8081,80,443 in-interface=\
- !ether5-WMS new-connection-mark=BROWSING passthrough=yes protocol=tcp
- add action=mark-connection chain=prerouting dst-port=\
- 21,22,23,81,88,5050,843,182,8777,1935,53,8000-8081,80,443 in-interface=\
- !ether5-WMS new-connection-mark=BROWSING passthrough=yes protocol=udp
- add action=mark-connection chain=prerouting dst-port=\
- 67,5228,35915,39397,110,5060,6666,3478,66,53,8291 in-interface=\
- !ether5-WMS new-connection-mark=BROWSING passthrough=yes protocol=tcp
- add action=mark-connection chain=prerouting dst-port=\
- 67,5228,35915,39397,110,5060,6666,3478,66,53,8291 in-interface=\
- !ether5-WMS new-connection-mark=BROWSING passthrough=yes protocol=udp
- add action=mark-packet chain=forward connection-bytes=0-1000000 \
- connection-mark=BROWSING in-interface=ether5-WMS new-packet-mark=\
- "BROWSING RINGAN DOWNLOAD" passthrough=yes
- add action=mark-packet chain=forward connection-bytes=0-1000000 \
- connection-mark=BROWSING new-packet-mark="BROWSING RINGAN UPLOAD" \
- out-interface=ether5-WMS passthrough=yes
- add action=add-dst-to-address-list address-list="BROWSING BERAT" \
- address-list-timeout=15s chain=prerouting comment="BROWSING BERAT" \
- connection-mark=!BROWSING connection-rate=200k-100M disabled=yes \
- in-interface=!ether5-WMS
- add action=mark-connection chain=prerouting disabled=yes dst-address-list=\
- "BROWSING BERAT" in-interface=!ether5-WMS new-connection-mark=\
- "BROWSING BERAT" passthrough=yes protocol=tcp
- add action=mark-connection chain=prerouting disabled=yes dst-address-list=\
- "BROWSING BERAT" in-interface=!ether5-WMS new-connection-mark=\
- "BROWSING BERAT" passthrough=yes protocol=udp
- add action=mark-packet chain=forward connection-bytes=1000000-100000000 \
- connection-mark=BROWSING in-interface=ether5-WMS new-packet-mark=\
- "BROWSING DOWNLOAD" passthrough=yes
- add action=mark-packet chain=forward connection-bytes=1000000-100000000 \
- connection-mark=BROWSING new-packet-mark="BROWSING UPLOAD" out-interface=\
- ether5-WMS passthrough=yes
- add action=add-dst-to-address-list address-list=YOUTUBE address-list-timeout=\
- 3m chain=prerouting comment=YOUTUBE content=.googlevideo.com \
- in-interface=!ether5-WMS
- add action=mark-connection chain=prerouting dst-address-list=YOUTUBE \
- in-interface=!ether5-WMS new-connection-mark=YOUTUBE passthrough=yes
- add action=mark-packet chain=forward connection-mark=YOUTUBE in-interface=\
- ether5-WMS new-packet-mark="YOUTUBE DOWNLOAD" passthrough=yes
- add action=mark-packet chain=forward connection-mark=YOUTUBE new-packet-mark=\
- "YOUTUBE UPLOAD" out-interface=ether5-WMS passthrough=yes
- add action=mark-connection chain=prerouting comment=ICMP new-connection-mark=\
- ICMP passthrough=yes protocol=icmp
- add action=mark-packet chain=forward connection-mark=ICMP in-interface=\
- ether5-WMS new-packet-mark="ICMP DOWNLOAD" passthrough=yes
- add action=mark-packet chain=forward connection-mark=ICMP new-packet-mark=\
- "ICMP UPLOAD" out-interface=ether5-WMS passthrough=yes
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting comment="SOSIAL MEDIA" content=\
- .facebook.com in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.facebook.net \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.fbcdn.net in-interface=\
- !ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.twimg.com in-interface=\
- !ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=twitter.com \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.twitter.com \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.instagram.com \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.cdninstagram.com \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.whatsapp.com \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.whatsapp.net \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=tiktokcdn.com \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=telegram.org \
- in-interface=!ether5-WMS
- add action=add-dst-to-address-list address-list="SOSIAL MEDIA" \
- address-list-timeout=3m chain=prerouting content=.telegram.org \
- in-interface=!ether5-WMS
- add action=mark-connection chain=prerouting dst-address-list="SOSIAL MEDIA" \
- in-interface=!ether5-WMS new-connection-mark="SOSIAL MEDIA" passthrough=\
- yes
- add action=mark-packet chain=forward connection-mark="SOSIAL MEDIA" \
- in-interface=ether5-WMS new-packet-mark="SOSIAL MEDIA DOWNLOAD" \
- passthrough=yes
- add action=mark-packet chain=forward connection-mark="SOSIAL MEDIA" \
- new-packet-mark="SOSIAL MEDIA UPLOAD" out-interface=ether5-WMS \
- passthrough=yes
- add action=change-ttl chain=postrouting comment="BLOCK SHARING " dst-address=\
- !192.168.2.2-192.168.2.50 dst-address-list=ip_private new-ttl=set:1 \
- passthrough=no
- /ip firewall raw
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Mobile Legend" \
- dst-address-list=!ip_private dst-port=\
- 5000-5508,5551-5558,5601-5608,5651-5658,30097-30147 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Mobile Legends" \
- dst-address-list=!ip_private dst-port=30000-30150,5000-5555,9001 \
- protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Mobile Legends" \
- content=.youngjoygame.com dst-address-list=!ip_private
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Lineage 2" \
- dst-address-list=!ip_private dst-port=12000 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Clash Royal" \
- dst-address-list=!ip_private dst-port=9330-9340 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=AOV dst-address-list=\
- !ip_private dst-port=10001-10094 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=AOV dst-address-list=\
- !ip_private dst-port=10101-10201,10080-10110,17000-18000 protocol=udp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=AOV dst-address-list=\
- !ip_private dst-port=10080,17000 protocol=udp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Free fire garena" \
- dst-address-list=!ip_private dst-port=39698,39003,39779 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="Free fire garena" \
- dst-address-list=!ip_private dst-port=10000-10007,7008 protocol=udp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=PUBG dst-address-list=\
- !ip_private dst-port=7086-7995,12070-12460,41182-41192 protocol=udp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=PUBG dst-address-list=\
- !ip_private dst-port=10012,17500 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=PUBG dst-address-list=\
- !ip_private dst-port="10491,10010,10013,10612,20002,20001,20000,12235,1374\
- 8,13972,13894,11455,10096,10039" protocol=udp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="PUBG Mobile" content=\
- .igamecj.com dst-address-list=!ip_private
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="PUBG Mobile" content=\
- tencentgames.helpshift.com dst-address-list=!ip_private
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=Vainglory \
- dst-address-list=!ip_private dst-port=7000-8020 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=Vainglory content=\
- .superevil.net dst-address-list=!ip_private
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment="COD MOBILE" \
- dst-address-list=!ip_private dst-port=7500-7700,17000-20100 protocol=udp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting dst-address-list=!ip_private \
- dst-port=65000-65090 protocol=tcp
- add action=add-dst-to-address-list address-list="IP GAME ONLINE" \
- address-list-timeout=1h chain=prerouting comment=Garena content=\
- .garenanow.com dst-address-list=!ip_private
- /queue tree
- add max-limit=35M name="Traffick Download" parent=global queue=\
- pcq-download-default
- add max-limit=5M name="Browsing Berat Download" packet-mark=\
- "BROWSING DOWNLOAD" parent="Traffick Download" queue=pcq-download-default
- add max-limit=15M name="Youtube Download" packet-mark="YOUTUBE DOWNLOAD" \
- parent="Traffick Download" queue=pcq-download-default
- add limit-at=512k max-limit=10M name="Game Download" packet-mark=\
- "GAME DOWNLOAD" parent="Traffick Download" priority=1 queue=\
- pcq-download-default
- add max-limit=10M name="Jalur Traffick Download" packet-mark=\
- "BROWSING RINGAN DOWNLOAD" parent="Traffick Download" queue=\
- pcq-download-default
- add max-limit=35M name="Traffick Upload" parent=global queue=\
- pcq-upload-default
- add max-limit=5M name="Browsing Berat Upload" packet-mark="BROWSING UPLOAD" \
- parent="Traffick Upload" queue=pcq-upload-default
- add limit-at=512k max-limit=10M name="Game Upload" packet-mark="GAME UPLOAD" \
- parent="Traffick Upload" priority=1 queue=pcq-upload-default
- add max-limit=15M name="Youtube Upload" packet-mark="YOUTUBE UPLOAD" parent=\
- "Traffick Upload" queue=pcq-upload-default
- add max-limit=10M name="Jalur Traffick Upload" packet-mark=\
- "BROWSING RINGAN UPLOAD" parent="Traffick Upload" queue=\
- pcq-upload-default
- add max-limit=2M name="Icmp Download" packet-mark="ICMP DOWNLOAD" parent=\
- "Traffick Download" queue=pcq-download-default
- add max-limit=2M name="Icmp Upload" packet-mark="ICMP UPLOAD" parent=\
- "Traffick Upload" queue=pcq-upload-default
- add max-limit=15M name="Sosial Media Download" packet-mark=\
- "SOSIAL MEDIA DOWNLOAD" parent="Traffick Download" queue=\
- pcq-download-default
- add max-limit=15M name="Sosial Media Upload" packet-mark=\
- "SOSIAL MEDIA UPLOAD" parent="Traffick Upload" queue=pcq-upload-default
- /ip route
- add comment="ISP BACKUP DAN GAME" distance=2 gateway=192.168.100.1 \
- routing-mark="GAME ONLINE"
- add check-gateway=ping comment="ISP UTAMA" distance=1 gateway=8.8.8.8 \
- target-scope=30
- add check-gateway=ping distance=2 gateway=192.168.100.1
- add check-gateway=ping distance=1 dst-address=8.8.8.8/32 gateway=192.168.10.1
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement