BAB I. Pendahuluan
A. Topologi Jaringan -->> B. SOAL/TUGAS --->>
1
1 1
2
! ! / 4 4 7 : 14 !( !/ !<
BAB 1 Pendahuluan
A. Topologi Jaringan
B. SOAL T!"AS 8 95angun Gat .a1 "nt rn t '8 95angun PC Rout r #an Pro01 S r2 r) Opsi Konfigurasi+ #onfigurasi Ser$er 1. "P "nt rn t !. "P LA> @. Gat .a1 = S suai # ngan > t.or6 1ang #i5 ri6an "SP = 1:!.14?.<(.1/!/ = S suai A ngan "P 1ang #i5 ri6an ol & "SP
#onfigurasi %lient 1. "P LA> = 1:!.14?.<(.000/!/ !. Gat .a1 = 1:!.14?.<(.1 Keterangan : xxx merupakan address antara 2 sampai 254 #onfigurasi Pro&' Ser$er 1. Sist 9 Op rasi !. Port Pro01 @. Ca,& 8anag r /. Bisi5l &ost <. Transpar nt Pro01 4. Situs 1ang #i5lo6 #onfigurasi P% (outer 1. >AT = OS Linu0 atau A 5ian G>U/Linu0 4.( = @1!? = nama_peserta@nama_sekolah.sch.id = www.nama_sekolah.sch.id = ....1outu5 .,o9C ....fa, 5oo6.,o9C =D s
A.
#onfigurasi P% (outer
Pa#a 5agian iniC p 95a&asan 9 n,a6up Konfigurasi "P A##r ssC #an Konfigurasi -ir .all untu6 >AT.C 5 ri6ut p n; lasann1a+
Lang)ah A*al+
Pasti6an PC S r2 r t la& t rinstall Sist 9 Op rasi A 5ian G>U/Linu0 Login us r &arus s 5agai us r root 'sup r us r)
Enter)
& 'ead ( lines ) *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s *. /rev /a0e *8 Ne3t /a0e *1 2ut Te3t *2 2ur /os
K 9u#ian s t la& ta9pil ; n# la s p rti 1ang #itun;u66an pa#a ga95ar #iatasC lalu ta95a&an #an s suai6an # ngan s,ript 5 ri6ut+
GNU nano 2.2.4 File: /etc/network/interfaces :odified # This file describes the network interfaces available on your syste # and now to activate the . For ore infor ation! see interfaces"#$. # The loo%back network interfaces auto lo iface lo inet loo%back
auto eth0 iface eth0 inet static address 192.168.1.254 netmask 255.255.255.0 gateway 192.168.1.1 auto eth1 iface eth0 inet static address 192.168.50.1 netmask 255.255.255.0
& 'ead ( lines ) *G *4 Get +el% 53it; *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s *. /rev /a0e *8 Ne3t /a0e *1 2ut Te3t *2 2ur /os
Gambar 2.2. Penulisan Script pada file /etc/network/interface dengan editor pico
Script
auto o iface o inte oop!ack
Deskripsi
9cri%t default untuk interfaces localhost 9cri%t untuk 1onfi0urasi 7/ <ddress 5thernet = ">an 2ard =$. 7/ <ddress! Net ask! ? Gateway eru%akan contoh ala at Network 79/
auto eth0 iface eth0 inet static address 192.168.1.254 netmask 255.255.255.0 gateway 192.168.1.1 auto eth1 iface eth1 inet static address 192.168.50.1 netmask 255.255.255.0 gateway 192.168.1.1
9cri%t untuk konfi0urasi 7/ <ddress 5thernet 2 ">an 2ard 2$. 7/ <ddress! Net ask! ? Gateway eru%akan <la at Network sesuai den0an Soa "aket 2 #$ian "raktik %ompetensi %e$uruan
S t la& An#a 9 na95a&6an #an 9 n1 suai6an s,ript #iatasC lalu si9pan fil t rs 5ut # ngan p rinta&+ T 6an to95ol 6o95inasi %T(L 345 lalu t 6an ,615 6 9u#ian %nt r. K 9u#ian ;alan6an p rinta& r start s r2i, s p rti 5 ri6ut+
root@YusitLove:~# /etc/init.d/networking restart (lalu Enter) Running /etc/init.d/networking restart is deprecated because it may not again some interfaces . . . warning! Reconfiguring network interfaces. . .done. root@YusitLove:~# enable
,net*or)ing1
S t la& An#a 9 r start la1anan n t.or6ingC lalu ta95a&6an ala9at ,nameser$er1 6 fil $/ t,/r sol2.,onf* # ngan p rinta& 5 ri6ut+
root@YusitLove:~# pico /etc/resolv.conf lalu "nter!
S t la& An#a 9 n;alan6an p rinta& #iatasC lalu a6an ta9pil ; n# la #itor fil ,pi7o1 1ang 9 95u6a fil , et7 resol$.7onf1 s p rti 5 ri6ut+
GNU nano 2.2.4 na eserver =@2.=(;.=.= File: /etc/resolv.conf
S t la& ta9pil ; n# la #itor fil ,pi7o1 s p rti #iatasC lalu ta95a&6an s,ript s p rti 5 ri6ut+
GNU nano 2.2.4 na na na na eserver eserver eserver eserver =@2.=(;.=.= 2A2.=B4.A.=## 2A2.=B4.=.=A =2#.=(A.2.=(2 File: /etc/resolv.conf :odified
S t la& An#a 9 na95a&6an s,ript #an 9 n1 suai6ann1a s p rti ta9pilan #iatasC lalu si9pan fil t rs 5ut # ngan ,ara+ t 6an to95ol 6o95inasi ,%T(L341 lalu t 6an ,61C 6 9u#ian ,-nter1.
Enter)
S t la& An#a 9 n;alan6an p rinta& #iatasC lalu a6an ta9pil ; n# la #itor fil ,pi7o1 s p rti 5 ri6ut+
File: /etc/rc.local
#C/bin/sh De # # rc.local # # This scri%t is e3ecuted at the and of each ultiuser runlevel. # :ake sure that the scri%t will Ee3it AF on success or any other # value on error # # 7n order to enable or disable this scri%t Gust chan0e the e3ecution # bits. # Hy default this scri%t does nothin0 e3it A
Gambar 2.3. Aplikasi Editor fil !pico" #ang m mbuat fil !$ tc$rc.local"
S t la& ta9pil ; n# la ,pi7o1 # ngan 9 95uat fil 6 9u#ian #it ta95a&6an s,ript 5 ri6ut+
GNU nano 2.2.4 File: /etc/rc.local
, et7 r7.lo7al1C
:odified
#C/bin/sh De # # rc.local # # This scri%t is e3ecuted at the and of each ultiuser runlevel. # :ake sure that the scri%t will Ee3it AF on success or any other # value on error # # 7n order to enable or disable this scri%t Gust chan0e the e3ecution # bits. # Hy default this scri%t does nothin0
*G *4
*, *6
-rite,ut 6ustify
*1 2ut Te3t
*2 2ur /os
Gambar 2.%. &cript 'ungsi (out r dan 'ir )all t lah ditambahkan pada fil !$ tc$rc.local"
Script
0cho &1' ( )proc)sys)net)ip*4)ip+forward
Deskripsi
9cri%t untuk en0atifkan fun0si router terhada% dua konfi0urasi 7/ <ddress 9cri%t untuk 'outer. Firewall /2
<
S t la& An#a 9 la6u6an p na95a&an s,ript pa#a fil 41C lalu t 6an ,61C 6 9u#ian ,-nter1. A#apun fungsi #ari fil
, et7 r7.lo7al1C
6 9u#ian si9pan fil t rs 5ut # ngan ,ara+ t 6an to95ol 6o95inasi ,%T(L 3 , et7 r7.lo7al1 1aitu 9 95 ri6an fungsi startup 1ang #i#aftar6an pa#a fil , et7 r7.lo7al1. , et7 r7.lo7al1 1aitu s tiap
K 9u#ian a#apun 6 t ntuan p nggunaan fil atau #i9asu66an s 5 lu9 s,ript ,e&it /1.
p rinta& atau lo6asi fil 1ang a6an #i5 ri6an fungsi startupC &arus #i#aftar6an
root@YusitLove:~# apt-cdrom add (lalu Enter) Using CD-RO mount point /media/cdrom/ !dentif"ing.. #fc$e%&'edc'(%&)cd*$d&(ec)+e,d'e'-&.canning disc for inde/ file.. 0ound & package inde/es1 + source inde/es1 + translation inde/es and + signatures 23is disc is called4 5De)ian 67U/8inu/ %.+.9 :.;uee<e: - Official i9$% D=D >inar"-' &+''++$-'94+'5 Reading ?ackage !nde/es... Done @riting new source list .ource list entries for t3is disc are4 de) cdrom4#De)ian 67U/8inu/ %.+.9 :.;uee<e: - Official i9$% D=D >inar"-' &+'''++$'94+'-/ s;uee<e contri) main Repeat t3is process for t3e rest of t3e CDs in "our set. root@YusitLove:~#
S t la& 9 n;ala6an p rinta& $apt:7drom add1 6 9u#ian ;alan6an p rinta& instalasi S3ui#C s p rti 5 ri6ut+
root@YusitLove:~# apt-get -" install s;uid (lalu Enter)
Reading package lists... Done >uilding dependenc" tree Reading state information... Done 23e following e/tra packages will )e installed4 s;uid-common s;uid-langpack .uggested packages4 s;uidclient s;uid-cgi logc3eck-data)ase resolvconf sm)client win)ind 23e following 7E@ packages will )e installed4 s;uid s;uid-common s;uid-langpack + upgraded1 9 newl" installed1 + to remove and + not upgraded. 7eed to get + >/'19A( k> of arc3ives. Bfter t3is operation1 $19(% k> of additional disk space will )e used. Output perinta3 ?reconfiguring packages ... .electing previousl" deselected package s;uid-langpack. Eapt-get -" (Reading data)ase ... &A''$ files and directories currentl" installed.) install s;uidF Unpacking s;uid-langpack (from .../s;uid-langpack:&+'++%&$-':all.de)) ... .electing previousl" deselected package s;uid-common. Unpacking s;uid-common (from .../s;uid-common:&.*..2B>8E,-&.':all.de)) ... .electing previousl" deselected package s;uid. Unpacking s;uid (from .../s;uid:&.*..2B>8E,-&.':i9$%.de)) ... ?rocessing triggers for man-d) ... .etting up s;uid-langpack (&+'++%&$-') ... .etting up s;uid-common (&.*..2B>8E,-&.') ... .etting up s;uid (&.*..2B>8E,-&.') ... Creating s;uid spool director" structure &+'&/+&/+' '$4(%4(+C Creating .wap Directories Restarting .;uid D22? pro/"4 s;uid.
root@YusitLove:~#
Ji6a output #ari p rinta& ,apt:get :' install s9uid1 s p rti #iatasC 9a6a instalasi ,s9uid1 #in1ata6an s l sai. K 9u#ian a6an #ilan;ut6an # ngan 6onfigurasin1aC 5 ri6ut lang6a&-lang6a&n1a+
, et7 s9uid1C agar ;i6a t r;a#i 6 sala&an 6onfigurasi 1ang 9 nga6i5at6an la1anan s3ui# ti#a6 #apat 5 r;alanC An#a 9asi& 5isa 9 9p r5ai6in1aC tanpa &arus 9 nginstall ulang apli6asi s3ui#.C S t la& An#a 9 95a,a instru6s #iatasC 6 9u#ian lang6a& a.alC la6u6an 5a,6up t r&a#ap fil , et7 s9uid s9uid.7onf1C # ngan p rinta& 5 ri6ut+
root@YusitLove:~# cd /etc/s;uid (lalu Enter) root@YusitLove:/etc/s#uid# ls (lalu Enter) s;uid.conf !si direktori E/etc/s;uidF
S t la&
9 la6u6an
5a,6up
fil
,s9uid.7onf15.
6 9u#ianC
#it
fil
S t la& 9 n;alan6an p rinta& s p rti #iatasC lalu a6an ta9pil ; n# la #itor fil ,pi7o1 s p rti 5 ri6ut+
GNU nano 2.2.4 ta%i ada %enyecualian # # # # # # # # # # # # # # # -5>2,:5 T, 9JU7K 2.L.9T<H>5@ DDDDDDDDDDDDDDDDDDDDDDDDDDDD This is the default 9Iuid confi0uration file. .ou ay wish to look at the 9Iuid ho e %a0e "htt%://www.sIuidDcache.or0/$ for the F<J and other docu entation. The default 9Iuid confi0 file shows what the defaults for various o%tions ha%%en to be. 7f you donMt need to chan0e the default! you shouldnMt unco ent the line. Koin0 so ay cause runDti e %roble s. 7n so e cases NnoneN refers to no default settin0 at all! while in other cases it refers to a valid o%tion D the co ents for that keyword indicate if this is the case. File: sIuid.conf
& 'ead 4@4; lines ) *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s *. /rev /a0e *8 Ne3t /a0e *1 2ut Te3t *U Un2ut Te3t *2 2ur /os *T To 9%ell
S t la& ta9pil J n# la %#itor -il ,pi7o1 1ang 9 95u6a fil ,s9uid.7onf1C 6 9u#ian #it #an ta95a&6an 5 5 rapa s,ript 1ang #i5utu&6an # ngan 9 to# s p rti 5 ri6ut+
File: /etc/sIuid/sIuid.conf
-5>2,:5 T, 9JU7K 2.L.9T<H>5@ DDDDDDDDDDDDDDDDDDDDDDDDDDDD This is the default 9Iuid confi0uration file. .ou ay wish to look at the 9Iuid ho e %a0e "htt%://www.sIuidDcache.or0/$ for the F<J and other docu entation. The default 9Iuid confi0 file shows what the defaults for various o%tions ha%%en to be. 7f you donMt need to chan0e the default! you shouldnMt unco ent the line. Koin0 so ay cause runDti e %roble s. 7n so e cases NnoneN refers to no default settin0 at all! while in other cases it refers to a valid o%tion D the co ents for that keyword indicate if this is the case.
& 'ead 4@4; lines ) *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s *. /rev /a0e *8 Ne3t /a0e *1 2ut Te3t *U Un2ut Te3t *2 2ur /os *T To 9%ell
Pa#a J n# la ,pi7o1 s p rti #iatasC t 6an %T(L 3 ? 6 9u#ian a6an ta9pil 9 nu s ar,& 1ang 5 ra#a pa#a 5agian ,@ (ead <=<> Lines A1 s p rti 5 ri6ut+
GNU nano 2.2.4
# # # # # # # # # # # # # # #
File: /etc/sIuid/sIuid.conf
-5>2,:5 T, 9JU7K 2.L.9T<H>5@ DDDDDDDDDDDDDDDDDDDDDDDDDDDD This is the default 9Iuid confi0uration file. .ou ay wish to look at the 9Iuid ho e %a0e "htt%://www.sIuidDcache.or0/$ for the F<J and other docu entation. The default 9Iuid confi0 file shows what the defaults for various o%tions ha%%en to be. 7f you donMt need to chan0e the default! you shouldnMt unco ent the line. Koin0 so ay cause runDti e %roble s. 7n so e cases NnoneN refers to no default settin0 at all! while in other cases it refers to a valid o%tion D the co ents for that keyword indicate if this is the case.
9earch: *G *4
,,,,(( 6enu untuk mencari karakter atau kata pada fi e yang ter!uka di &pico'
*, *6
-rite,ut 6ustify
O6 1.C p nulis &arap An#a su#a& 9 ng rti sa9pai #isiniC 6 9u#ian i6uti pros #ur untu6 s,ript 1ang p rta9a #i #itC s 5agai 5 ri6ut+ Created By usit2!"" #Achmad Yusri Afandi $rom TKJ Club% :
S,ript 1ang p rta9a 6ali #i #it 1aitu 5 ri6ut+ 1. S,ript $httpBport C12>* !. S,ript 5 ri6utn1a a6an #ita95a&6an #i5a.a& s,ript $&ttpFport @1!?* 1ang t la& #i #it.C 5 ri6ut lang6a& p ng r;aann1a+
GNU nano 2.2.4
# # # # # # # # # # # # # # #
File: /etc/sIuid/sIuid.conf
-5>2,:5 T, 9JU7K 2.L.9T<H>5@ DDDDDDDDDDDDDDDDDDDDDDDDDDDD This is the default 9Iuid confi0uration file. .ou ay wish to look at the 9Iuid ho e %a0e "htt%://www.sIuidDcache.or0/$ for the F<J and other docu entation. The default 9Iuid confi0 file shows what the defaults for various o%tions ha%%en to be. 7f you donMt need to chan0e the default! you shouldnMt unco ent the line. Koin0 so ay cause runDti e %roble s. 7n so e cases NnoneN refers to no default settin0 at all! while in other cases it refers to a valid o%tion D the co ents for that keyword indicate if this is the case.
9earch: http+port 8128 ,,,(( ketik script &http+port 8128' *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s *. /rev /a0e *8 Ne3t /a0e
#iatasC lalu t 6an %T(L 3 ?C 6 9u#ian 6 ti6 s,ript ,httpBport C12>1 lalu %nt rC s p rti 1ang #itun;u66an pa#a ta9pilan ; n# la ,pi7o1 #iatas.C 6 9u#ian a6an ta9pil lo6asi s,ript ,httpBport C12>1 s p rti 5 ri6ut+
GNU nano 2.2.4
# # # # # # # 9Iuid
File: /etc/sIuid/sIuid.conf
7f you run 9Iuid on a dualDho ed achine with an internal and an e3ternal interface we reco end you to s%ecify the internal address:%ort in htt%O%ort. This way 9Iuid will only be visible on the internal address. nor ally listens to %ort B=2;
http+port 8128
# T<G: htt%sO%ort # Note: This o%tion is only available if 9Iuid is rebuilt with the # DDenableDssl o%tion #
*G *4
*, *6
-rite,ut 6ustify
/rev /a0e
*8 Ne3t /a0e
K 9u#ian ta95a&6an s,ript ,transparent1 #i a6&ir 5aris s,ript ,httpBport C12>1 s p rti 5 ri6ut+
1(
File: /etc/sIuid/sIuid.conf
:odified
7f you run 9Iuid on a dualDho ed achine with an internal and an e3ternal interface we reco end you to s%ecify the internal address:%ort in htt%O%ort. This way 9Iuid will only be visible on the internal address. nor ally listens to %ort B=2;
# T<G: htt%sO%ort # Note: This o%tion is only available if 9Iuid is rebuilt with the # DDenableDssl o%tion # # Usa0e: &i%:)%ort certPcertificate.%e &keyPkey.%e ) &o%tions...) #
*G *4
*, *6
-rite,ut 6ustify
/rev /a0e
*8 Ne3t /a0e
K 9u#ian ta95a&6an 5 5 rapa s,ript 5 ri6ut #i5a.a& s,ript ,httpBport C12> transparentC s p rti 5 ri6ut+
GNU nano 2.2.4 File: /etc/sIuid/sIuid.conf :odified
cache+mgr yusri9smknurkaryatidung.sch.id *isi! e+hostname www.smknurkaryatidung.sch.id cache+mem 64 6: cache+swap+ ow 90 cache+swap+high 95 ipcache+si;e 1024 ipcache+ ow 90 ipcache+high 95 cache+ og )*ar) og)s<uid)cache. og cache+store+ og )*ar) og)s<uid)store. og cache+dir ufs )*ar)spoo )s<uid 100 16 256 dns+nameser*ers 202.184.1.10 125.160.2.162 ac www dstdomain &)etc)s<uid)situs' no+cache deny www http+access deny www ac ac kata+di! ock ur +rege= ,i &)etc)s<uid)word' ip+di! ock src 192.168.50.0)24
# T<G: htt%sO%ort # Note: This o%tion is only available if 9Iuid is rebuilt with the # DDenableDssl o%tion # # Usa0e: &i%:)%ort certPcertificate.%e &keyPkey.%e ) &o%tions...) # # The socket address where 9Iuid will listen for +TT/9 client # reIuest.
*G *4
*, *6
-rite,ut 6ustify
/rev /a0e
*8 Ne3t /a0e
11
Script
http+port 8128 transparent
Deskripsi
9cri%t &transparent' e berikan fun0si terhada% %ro3y server a0ar dia bersifat /ro3y Trans%arent 9cri%t yan0 endefinisikan ala at eD ail <d in %ada ta %ilan hala an blokin0 dan hala an error ketika en0akses internet elalui /ro3y 9erver. Kan untuk &yusri9smknurkaryatidung.sch.id& hanyalah sebuah contoh.! nanti <nda sesuaikan den0an Ena aOandaF dan Ena aOsekolahOanda 9cri%t yan0 endefinisikan ala at hostna e yan0 akan dita %ilkan %ada hala an blockin0 dan hala an error ketika en0akses 7nternet elalui %ro3y server. Kan untuk Ewww.smknurkaryatidung.sch.id' itu hanyalah contoh ala at website sekolah. Nantinya silahkan disesuaikan den0an na a sekolah <nda. 9cri%t yan0 endefinisikan tentan0 alokasi e ori '<: untuk /ro3y 9erver 9cri%t yan0 endefinisikan bahwa a%abila cache %ada %ro3y enca%ai @AQ aka dinyatakan bahwa cache %ro3y ha %ir %enuh! dan a%abila ruan0 cache %ro3y enca%ai @#Q aka ruan0 cache akan dikoson0kan. 9cri%t &ipcache+si;e 1024' endefinisikan Gu alh 7/ <ddress yan0 da%at disi %an oleh 2ache /ro3y 9erver.! dan batas aksi u cache 7/ <ddress di %ro3y yaitu antara @AQ s/d @#Q! ketika cache 7/ <ddress sudah enca%ai @#Q aka cache 7/ <ddress akan dikoson0kan. 9cri%t yan0 endefinisikan tentna0 lokasi %esanD%esan atau infor asi tentan0 %en00unaan cache di%ro3y server 9cri%t yan0 endefinisikan tentan0 lokasi %esanD%esan atau infor asi tentan0 ala at url atau 7% <ddress yan0 disi %an oleh 2ache /ro3y server 9cri%t yan0 endefinisikan tentan0 alokasi Gu lah direktori dan ka%asitas cache %ro3y server. <n0ka &100' eru%akan Gu lah alokasi ka%asitas cache %ro3y dala satua &6:'! ke udian <n0ka &16' adalah Gu lah direktori tin0kat %erta a %ada cache %ro3y server! dan <n0ka &256' eru%akan Gu lah subdirektori yan0 terda%at %ada asin0D asin0 direktori tin0kat %erta a.
cache+mgr yusri9smknurkaryatidung.sch.id
cache+mem 64 6:
cache+swap+ ow 90 cache+swap+high 95
1!
9cri%t yan0 endefinisikan tentan0 ala at KN9 server yan0 di0unakan %ada /ro3y 9erver 9cri%t yan0 endefinisikan ala atD ala at situs yan0 akan diblock dan yan0 terdaftar %ada file &www' yan0 terda%at %ada direktori &)etc)s<uid'. 9cri%t &no+cache deny www' endefinisikan bahwa ala atDala at situs yan0 dikoordinir oleh ac den0an na a www. Tidak akan disi %an %ada direktori cache %ro3y.! dan untuk scri%t Ehttp+access deny www F eru%akan scri%t yan0 endefinisikan bahwa se ua situs yan0 terdaftar atau dikoordinir oleh ac den0an na a acl www! tidak akan diberikan akses untuk dibuka. 9cri%t yan0 endefinisikan tentan0 kataDkata atau keyword yan0 diblock.! dan ketika kataDkata atau keyword tersebut diakses %ada esin %encari! aka akan lan0sun0 ta %il hala a Eaccess denied' dari /ro3y 9cri%t yan0 endefinisikan tentan0 ala at network yan0 akan diblock
ac
ac
ac
S t la&C An#a 9 ng #it atau 9 na95a&6an s,ript s p rti ilustrasi ga95ar #iatasC 6 9u#ian ,arila& tulis ,final' den' all1C # ngan ,ara+ t 6an to95ol 6o95inasi %T(L 3 ?C lalu a6an ta9pil 9 nu ,Sear7h1C pa#a 5agian 5a.a& l 95ar 6 r;aC lalu 6 ti6 ,final' den' all1C s p rti ilustrasi ga95ar 5 ri6ut+
GNU nano 2.2.4 File: /etc/sIuid/sIuid.conf :odified
ac www dstdomain &)etc)s<uid)situs' no+cache deny www http+access deny www ac ac kata+di! ock ur +rege= ,i &)etc)s<uid)word' ip+di! ock src 192.168.50.0)24
# T<G: htt%sO%ort # Note: This o%tion is only available if 9Iuid is rebuilt with the # DDenableDssl o%tion # # Usa0e: &i%:)%ort certPcertificate.%e &keyPkey.%e ) &o%tions...) # # The socket address where 9Iuid will listen for +TT/9 client # reIuest.
,,,((
a u 0nter . /rev /a0e *1 2ut Te3t *U Un2ut Te3t *2 2ur /os *T To 9%ell
-rite,ut 6ustify
*8 Ne3t /a0e
1@
S t la& An#a 9 ng ti6 tulisan ,final' den' all1C #an 6 9u#ian 9 n 6an to95ol -nterC 9a6a s ,ara oto9atisC An#a a6an #iara&6an 6 tulis 1ang An#a ,ari s p rti ilustrasi 5 ri6ut+
GNU nano 2.2.4 File: /etc/sIuid/sIuid.conf :odified
# # 7N95'T .,U' ,-N 'U>5"9$ +5'5 T, <>>,- <22599 F',: .,U' 2>75NT9 # 53a %le rule allowin0 access fro your local networks. # <da%t localnet in the <2> section to list your "internal$ 7/ Networks # fro where browsin0 should be allowed >http+acess a ow oca net htt%Oaccess allow localhost # <nd fina y deny a http+access deny a other access to this %ro3y
# T<G: htt%Oaccess2 # <llowin0 or Kenyin0 access based on defined access lists # # 7dentical to htt%Oaccess! but runs after redirectors. 7f no set # the only htt%Oaccess is used. # #Kefault: *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s . /rev /a0e *1 2ut Te3t *U Un2ut Te3t *2 2ur /os *T To 9%ell
*8 Ne3t /a0e
# # 7N95'T .,U' ,-N 'U>5"9$ +5'5 T, <>>,- <22599 F',: .,U' 2>75NT9 # 53a %le rule allowin0 access fro your local networks. # <da%t localnet in the <2> section to list your "internal$ 7/ Networks # fro where browsin0 should be allowed ac our+networks src 192.168.50.0)24 http+acess a ow our+networks htt%Oaccess allow localhost # <nd finaly deny all other access to this %ro3y >http+access deny a # T<G: htt%Oaccess2 # <llowin0 or Kenyin0 access based on defined access lists # # 7dentical to htt%Oaccess! but runs after redirectors. 7f no set # the only htt%Oaccess is used. # Kefault: *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s . /rev /a0e *1 2ut Te3t *U Un2ut Te3t *2 2ur /os *T To 9%ell
*8 Ne3t /a0e
1/
Deskripsi
9cri%t endefinisikan bahwa ala at network E=@2.=(;.#A.A/24F da%at en0akses situs lain! selain yan0 diblokir 9cri%t ini tidak dilakukan %erubahan a%a%un! na un cuku% dinonaktifkan den0an ena bahkan tanda %a0ar dide%an scri%t tersebut. 9cri%t ini berfun0si untuk e block se ua akses htt%! Gika di aktifkan! aka dari itu! dia harus di nonaktfikan den0an e berikan tanda %a0ar di de%an scri%tnya.
>http+access deny a
S t la& An#a 9 ng #it s,ript #iatasC lalu si9pan fil t rs 5ut # ngan ,ara+ t 6an to95ol 6o95inasi %T(L 3 4C lalu t 6an 6C 6 9u#ian -nter. S lan;utn1a i6uti lang6a&-lang6a& 5 ri6ut+
1<
B.2.1.1. ;embuat file ,situs1 dan file ,*ord1 pada dire)tori , et7 s9uid1
Pa#a S,riptlo6asi #an na9a fil #ari na9a a,l ,***1 1aitu 9a6a An#a &arus 9 95uat fil ,situs1 pa#a #ir 6tori , et7 s9uid1.
root@YusitLove:/etc/s#uid# pico situs (lalu Enter)
S t la& An#a 9 n;alan6an p rinta& #iatasC 9a6a a6an ta9pil ; n# la #itor ,pi7o1 s p rti 5 ri6ut+
GNU nano 2.2.4 File: situs
#itor fil
:odified
www.face!ook.com www.youtu!e.com
*G *4
*, *6
-rite,ut 6ustify
8 ngapa pa#a 5agian ini p nulis 9 ng ti6 ,***.fa7eboo).7om1 #an ,***.'outube.7om1 G Kar na pa#a ,Soal Pa)et 11 t r#apat 6 t ntuan 5a&.a situs 1ang #i5lo6ir 1aitu ,***.fa7eboo).7om1 #an ,***.'outube.7om1.C 9a6a 1ang #itulis pa#a fil ,situs1 1ang An#a 5uat
14
1aitu 6 #ua situs 1ang #itun;u66an pa#a ilustrasi ga95ar #iatas. K 9u#ianC s t la& ! '#ua) situs t rs 5ut s l sai #i 6 ti6C lalu si9pan fil -nter. S t la& fil ,situs1 1ang 5 rlo6asi #i #ir 6tori , et7 s9uid1 s l sai #i5uatC lalu s lan;utn1a 5uatla& fil ,*ord1 1ang 5 ra#a #ir 6tori , et7 s9uid1C # ngan lang6a&-lang6a& s p rti 5 ri6ut+
root@YusitLove:/etc/s#uid# pico word (lalu Enter)
t rs 5ut
# ngan ,ara+ t 6an to95ol 6o95inasi %T(L34C lalu t 6an ,61C 6 9u#ian
S t la& 9 n;alan6an p rinta& #iatasC lalu a6an ta9pil ; n# la apli6asi ,pi7o1C s p rti 5 ri6ut+
GNU nano 2.2.4 File: word
:odified
*G *4
*, *6
-rite,ut 6ustify
#ir 6tori , et7 s9uid1 G Ji6a 6ata t rs 5ut #iguna6an pa#a 9 sin p n,ariC 9a6a s ,ara oto9atisC a6an ta9pil 9 nu &ala9an 5lo,6ing atau &ala9an ,a77ess denied1. >a&..C s t la& s l sai 9 ng ti6 6ata-6ata s p rti #iatasC lalu Created By usit2!"" #Achmad Yusri Afandi $rom TKJ Club% 17
si9panla& fil t rs 5ut # ngan ,ara+ t 6an to95ol 6o95inasi %T(L34C lalu t 6an ,61C lalu -nter. S t la& ituC la6u6an p ng , 6anC apa6a& 6 #ua fil 1ang a#a 5uat ta#iC 9 9ang 5 nar-5 nar t la& t r5uat atau ti#a6C 1aitu # ngan ,ara 5 ri6ut+
root@YusitLove:/etc/s#uid# ls (lalu Enter) situs s;uid.conf word
root@YusitLove:/etc/s#uid#
K 9u#ianC s t la& 9 la6u6an p ngu;ian s p rti ,ara #iatasC lalu ;alan6an p rinta& r start s r2i, ,s9uid1 s p rti 5 ri6ut
root@YusitLove:/etc/s#uid# /etc/init.d/s;uid restart (lalu enter) Restarting .;uid D22? ?ro/"4 s;uid. G Hika tidak tampil error1 dan output dari perinta3 restart service seperti disamping1 maka Ionfigurasi )isa din"atakan 3ampir )er3asil.
root@YusitLove:/etc/s#uid# s;uid -< (lalu Enter) &+'&/+&/+& &&4&$4+*C .;uid is alread" runningJ ?rocess !D &,*, Hika tidak tampil error1 dan output dari perinta3 restart service seperti di samping1 maka Ionfigurasi )isa din"atakan 3ampir )er3asil.
K 9u#ianC ta95a&6an s,ript fir .all pa#a fil , et7 r7.lo7al1C s p rti 5 ri6ut+
1?
File: /etc/rc.local
:odified
#C/bin/sh De # # rc.local # # This scri%t is e3ecuted at the and of each ultiuser runlevel. # :ake sure that the scri%t will Ee3it AF on success or any other # value on error # # 7n order to enable or disable this scri%t Gust chan0e the e3ecution # bits. # Hy default this scri%t does nothin0 echo &1' ipta! es ipta! es ipta! es ipta! es e3it A & 'ead ( lines ) *G *4 Get +el% 53it *, *6 -rite,ut 6ustify *' 'ead File *- -here 7s *. /rev /a0e *8 Ne3t /a0e *1 2ut Te3t *U Un2ut Te3t *2 2ur /os *T To 9%ell ( )proc)sys)net)ip*4)ip+forward , ,t nat ,,t nat ,. "/0/1#2345 ,o eth0 ,$ 6.S7#0/.D0 ,t nat ,. "/0/1#2345 ,i eth1 ,p tcp ,,dport 80 ,$ /0D3/0?2 ,,to,ports 8128
S t la& 9 na95a&6an s,ript untu6 fir .all pro01 s r2 rC lalu si9pan fil t rs 5ut # ngan ,ara + t 6an to95ol 6o95inasi %T(L 3 4C lalu t 6an ,61C lalu -nter. K 9u#ian lang6a& s lan;utn1a r start PC S r2 r # ngan p rinta& 5 ri6ut+
root@YusitLove:/etc/s#uid# re)oot (lalu Enter)
S t la& An#a 9 -r 5oot PC S r2 rC 9a6a s ,ara oto9atis s,ript 1ang #i6 ti6 pa#a fil , et7 r7.lo7al1 a6tifC #an PC S r2 r An#a siap untu6 #iguna6an s 5agai ,"ate*a'1.
1:
%. #onfigurasi P% %lient
Pa#a 5agian iniC pasti6an Sist 9 Op rasi PC Cli nt su#a& t rinstallC #an ,onto& pa#a Sist 9 Op rasi 1ang #iguna6an pa#a saat 5agian ini 1aitu ;i7rosoft ?indo*s D. 5 ri6ut lang6a&-lang6a&n1a+
K 9u#ian pa#a tas65arC 6li6 6anan pa#a i,on > t.or6 s p rti 1ang #itun;u66an pa#a ga95ar #iatasC lalu a6an ta9pil 9 nu pull #o.n s p rti 5 ri6ut+
S t la& ta9pil 9 nu pull #o.nC s p rti 1ang #itun;u66an pa#a "ambar 2.2C 6 9u#ian 6li6 #an pili& ,Open Eet*or) and Sharing %enter1C lalu a6an ta9pil ; n# la s p rti 5 ri6ut+
!(
K 9u#ian pa#a ; n# la ,Eet*or) F Sharing %enter1 6li6 ,%hange adapter Settings1C lalu a6an ta9pil ; n# la ,Eet*or) %onne7tions1 S p rti 5 ri6ut+
K ti6a ta9pil ; n# la ,Eet*or) %onne7tion1 lalu 6li6 6anan pa#a ,Lo7al Area %onne7tion1C #an saat 9un,ul 9 nu pull #o.nC lalu 6li6 ,Properties1 s p rti 1ang #itun;u66an pa#a ga95ar #iatasC s t la& itu a6an ta9pil ; n# la ,Lo7al Area %onne7tion Properties1 s p rti ga95ar 5 ri6ut+
!1
Pa#a ; n# la ,Lo7al Area %onne7tion Properties1C 6li6 ,Internet Proto7ol Gersion < .T%P IP$<01C 6 9u#ian 6li6 ,Properties1C lalu a6an ta9pil ; n# la ,Internet Proto)l Gersion < .T%P IP$<0 Properties1 s p rti 5 ri6ut+
Pa#a ; n# la ,InternetProto7ol Gersion < .T%P IP$<01C 6li6 ,!se the follo*ing IP Address1 #an $!se the follo*ing DES Ser$er addresses1 C s p rti 1ang #itun;u66an pa#a ga95ar !.4 #iatasC 6 9u#ian isi ala9at "P A##r ssC Su5n t 8as6C Gat .a1 #an Ala9at A>Sn1aC s p rti 5 ri6ut+ Created By usit2!"" #Achmad Yusri Afandi $rom TKJ Club% !!
K 9u#ian s t la& An#a 9 ngatur "P a##r ss #an A>S untu6 PC CLi ntC lalu 6li6 O#C 6 9u#ian pa#a ; n# la ,Lo7al Area %onne7tion Properties1 s p rti 5 ri6ut+
!@
Pa#a saat an#a 6 95ali 6 ; n# la Internet Proto)ol Gersion < .T%P IP$<0 C 6li6 OKC #an s t la& itu p ngaturan "P A##r ss #an A>S pa#a PC Cli nt s l sai. O6 1..C Pa#a 6 t ntuan Soal Pa6 t 1C t r#apat aturan 5a&.a pa#a 6onfigurasi "P A##r ss untu6 PC Cli nt 1aitu+ 1. IP LAE !. "ate*a' = 1=2.1H>.I/.&&& 2< = 1=2.1H>.I/.1
K t ntuan #iatasC 9 rupa6an 6 t ntuan 9 nurut soal.C a6an tapi untu6 Alo6asi ala9at "P untu6 %&t rn t 6 #ua #apat #it ntu6an s n#iri ol & p s rta. >a&.C pa#a 5agian iniC p nulis a6an 9 ngguna6an s suai 6 t ntuan soalC s p rti 1ang #itun;u66an pa#a gambar 2.D. K 9u#ian S t la& Ala9at "P untu6 P% %lient s l sai #i s ttingC lalu 6li6 OKC 9a6a pa#a i,on Eet*or) pa#a tas65ar a6an ta95il notifi6asi s p rti 5 ri6ut+
Ji6a >otifi6asi i,on n t.or6 s p rti 1ang #itun;u66an pa#a gambar 2.>5 lalu tunggu &ingga tan#a ,seru1 &ilangC s p rti 5 ri6ut+
>a&..C 6 ti6a notfitasi pa#a i,on Eet*or) s p rti 1ang #itun;u66an pa#a ga95ar !.: #iatasC 9a6a 5isa #in1ata6an 5a&.a PC Cli nt su#a& t r6on 6si # ngan PC S r2 r.
!/
K 9u#ian pa#a 8 nu (!E 6 ti6 p rinta& s p rti 1ang #itun;u66an pa#a ga95ar 2.1/ #iatasC 6 9u#ian 6li6 O#C 9a6a a6an ta9pil J n# la %;DC # ngan pros s ping 6 ala9at "P A##r ss PC S r2 r s p rti 5 ri6ut+
Ga95ar !.11. Pros s Ping 6 PC S r2 r Ji6a ta9pilan pros s Ping s p rti #iatasC 9a6a 6on 6si "nt rn t 5isa #in1ata6an 5agusC #an 6onfigurasi PC Rout r &a9pir 5 r&asil.
Ji6a &ala9an fa, 5oo6 s t la& #ia6s s s p rti ga95ar #iatasC artin1a situs fa, 5oo6 5 r&asil #i5lo6ir ol & pro01 s r2 r. Beri)ut des)ripsi penting+ 1. 8 rupa6an 6olo9 a##r ss 5ar untu6 9 ng ti6 situs-situs 1ang a6an #ia6s s !. 8 n# finisi6an ala9at 1ang #i5lo6ir @. 8 n# finisi6an ala9at -9ail a#9inistrator 1ang #iru;u6 ol & s,ript ,7a7heBmgr 'usriLsm)nur)ar'atidung.s7h.id1. /. 8 n# finisi6an ala9at &ost #ari pro01 s r2 r s ,ara # fault pa#a 5agian itu 9 na9pil6an na9a &ost #ari 6o9put rC na9un # ngan a#an1a s,ript ,$isibleBhostname ***.sm)nur)ar'atidung.s7h.id1C 9a6a pa#a 5agian itu t rganti # ngan ala9at ,***.sm)nur)ar'atidung.s7h.id1. Created By usit2!"" #Achmad Yusri Afandi $rom TKJ Club% !4
S lan;utn1a 6ita a6an 9 ngu;i a6s s situs 'outube apa6a& t r5lo6ir atau ti#a6C s p rti 5 ri6ut+
6 ti6 ala9at ,***.'outube.7om1C lalu %nt rC 6 9u#ian li&at ap#a &ala9an 'outube apa6a& 5 nar &ala9an 'outube atau &ala9an 5lo6ir pro01G B ri6ut ;a.a5ann1a+
Gambar 2.1%. ;alaman :lokir ,ro<# & r4 r #ang m mblokir situs #outub
Ta9pilan #iatasC 9 95 ri6an ;a.a5an 5a&.a pro01 s r2 r 1ang #i5uatC 5 nar-5 nar 9 95lo6ir situs 'outube #an fa7eboo). S lan;utn1a 9 ngu;i apa6a& situs lain #apat t r5u6a atau ti#a6.C situs 1ang 6ita a6an ,o5a 1aitu situs ,***.opste7hno.7om1C s p rti 5 ri6ut+
!7
S t la& 9 ng ti6 ala9at ,***.opste7hno.7om1C pa#a a##r ss 5ar ?eb Bro*ser lalu t 6an -nterC 6 9u#ian li&at pa#a 5agian &ala9an situsn1aC apa6a& t r5lo6ir ;uga atau ti#a6C s p rti 5 ri6ut+
O6 1.C situs ,opste7hno1 5isa #ia6s sC lalu s lan;utn1a 6ita ,o5a situs ,***.t)J7lub.net t)J1 s p rti 5 ri6ut+
!?
s t la& 9 ng ti6 ala9at situs ,T#J %lub1C 1aitu ,***.t)J7lub.net t)J1C lalu t 6an -nter5 9a6a p r&ati6an &ala9an situs t rs 5utC apa6a& 5isa #ia6s s atau ti#a6C s p rti 5 ri6ut+
P ngu;ian 6onfigurasi PC Rout r #an Pro01 S r2 r pa#a PC S r2 r t la& s l sai #iu;iC #an sa9pai #isiniC 6onfigurasi 5isa #in1ata6an 5 r&asil. Aan saatn1a An#a i9pl 9 ntasi6an Tutorial/8o#ul ini untu6 p rsiapan U;ian Ko9p t nsi An#a.
!:
Tentang Penulis
A7hmad 6usri AfandiC la&ir #i U;ung Pan#angC Tanggal 1? April 1::@. saat ini p nulis 5 rstatus s 5agai sis.a #i S8K >ur6ar1a Ti#ung 8a6assarC s 6aligus s 5agai p nga;ar Bantu #i S8K >ur6ar1a Ti#ung #an p nga;ar #i TKJClu5 '&ttp+//....t6;,lu5.n t/t6;). Ho9 pag P nulis = &ttp+//....fa, 5oo6.,o9/Dusit.ilst Situs P nulis %9ail P nulis = &ttp+//....opst ,&no.,o9 = linu0 r(?Ig9ail.,o9