Cara Konfigurasi Mikrotik Menggunakan Metode PCC (Simple) Percobaan 2

 

 

 # jul/11/2025 10:29:31 by RouterOS 6.49.7
# software id = BSH7-XUJ1
#
# model = 850Gx2
# serial number = 71DC06B24461
/interface bridge
add name=bridge1_INTERNAL
/interface ethernet
set [ find default-name=ether2 ] comment=INTERNAL
set [ find default-name=ether4 ] comment="ISP-1 192.168.30.xxx" name=\
    ether4_ISP-1
set [ find default-name=ether5 ] comment="ISP-2 172.16.101.xxx" name=\
    ether5_ISP-2
/interface list
add name=INTERNAL_LIST
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip pool
add name=dhcp_pool1 ranges=10.100.100.2-10.100.100.254
/ip dhcp-server
add address-pool=dhcp_pool1 disabled=no interface=bridge1_INTERNAL name=dhcp1
/interface bridge port
add bridge=bridge1_INTERNAL interface=ether2
add bridge=bridge1_INTERNAL interface=ether3
/ip neighbor discovery-settings
set discover-interface-list=!dynamic
/interface list member
add interface=ether3 list=INTERNAL_LIST
/ip address
add address=10.100.100.1/24 interface=bridge1_INTERNAL network=10.100.100.0
/ip dhcp-client
add add-default-route=no disabled=no interface=ether4_ISP-1
add add-default-route=no disabled=no interface=ether5_ISP-2
/ip dhcp-server network
add address=10.100.100.0/24 gateway=10.100.100.1
/ip firewall mangle
add action=accept chain=prerouting dst-address=172.16.101.0/24 in-interface=\
    ether5_ISP-2
add action=accept chain=prerouting dst-address=192.168.30.0/24 in-interface=\
    ether4_ISP-1
add action=accept chain=prerouting dst-address=10.100.100.0/24
add action=mark-connection chain=prerouting in-interface=ether4_ISP-1 \
    new-connection-mark=ISP-1 passthrough=yes
add action=mark-connection chain=prerouting in-interface=ether5_ISP-2 \
    new-connection-mark=ISP-2 passthrough=yes
add action=mark-connection chain=prerouting in-interface=bridge1_INTERNAL \
    new-connection-mark=ISP-1 passthrough=yes per-connection-classifier=\
    both-addresses:2/0
add action=mark-connection chain=prerouting in-interface=bridge1_INTERNAL \
    new-connection-mark=ISP-2 passthrough=yes per-connection-classifier=\
    both-addresses:2/1
add action=mark-routing chain=prerouting connection-mark=ISP-1 in-interface=\
    bridge1_INTERNAL new-routing-mark=MENUJU-ISP-1 passthrough=yes
add action=mark-routing chain=prerouting connection-mark=ISP-2 in-interface=\
    bridge1_INTERNAL new-routing-mark=MENUJU-ISP-2 passthrough=yes
add action=mark-routing chain=output connection-mark=ISP-1 new-routing-mark=\
    MENUJU-ISP-1 passthrough=yes
add action=mark-routing chain=output connection-mark=ISP-2 new-routing-mark=\
    MENUJU-ISP-2 passthrough=yes
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether4_ISP-1
add action=masquerade chain=srcnat out-interface=ether5_ISP-2
/ip route
add check-gateway=ping distance=1 gateway=192.168.30.1 routing-mark=\
    MENUJU-ISP-1
add check-gateway=ping distance=2 gateway=172.16.101.1 routing-mark=\
    MENUJU-ISP-1
add check-gateway=ping distance=1 gateway=172.16.101.1 routing-mark=\
    MENUJU-ISP-2
add check-gateway=ping distance=2 gateway=192.168.30.1 routing-mark=\
    MENUJU-ISP-2
/system clock
set time-zone-name=Asia/Jakarta

Post a Comment

0 Comments

MY POST

Cara Konfigurasi Mikrotik Menggunakan Metode PCC (Simple) Percobaan 2