Anda di halaman 1dari 2

Mikrotik Limit Bandwidth Download by Extension

siapkan extention, buat rule firewall dan masukkan ke adress list network contoh: /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.exe action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.iso action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.mpg action=add-dstto-address-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.zip action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.rar action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.dat action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.flv action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.3gp action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.mpeg action=add-dstto-address-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.avi action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.ram action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.mov action=add-dstto-address-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.wma action=add-dstto-address-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.aiff action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.au action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.wav action=add-dstto-address-list address-list=cekek address-list-timeout=01:00:00 /ip firewall filter add chain=forward src-address=10.10.11.240/28 protocol=tcp content=.ra action=add-dst-toaddress-list address-list=cekek address-list-timeout=01:00:00

bisa tambahkan rule sesuai kebutuhan. kemudian kita lakukan mangle untuk marking paket yang berasal dari address list diatas seperti ini: /ip firewall mangle add chain=forward protocol=tcp src-address-list=cekek action=mark-packet new-packetmark=cekek-bw-by-extension Lalu untuk yg terakhir kita masukkan simple queue dari paket mark diatas /queue simple add name=download-files max-limit=50000/50000 packet-marks=cekek-bw-by-extension done!! cara diatas juga efektif untuk menanggulangi user yg menggunakan Download Accelerator klo ada cara lain silahkan dishare

Anda mungkin juga menyukai