You are on page 1of 8

# CLEAR SETTING

/queue simple remove [find];


/queue tree remove [find];
/queue type remove [find kind=pcq];
/ip firewall filter remove [find];
/ip firewall mangle remove [find];
/ip firewall raw remove [find];
/ip firewall address-list remove [find];
/ip firewall layer7 remove [find];
/

# ADDRESS LIST
/ip firewall address-list add address=192.168.0.0/16 list=LOKAL
/ip firewall address-list add address=172.16.0.0/12 list=LOKAL
/ip firewall address-list add address=10.0.0.0/8 list=LOKAL
/ip firewall address-list add address=64.15.126.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=64.15.123.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=64.15.119.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=64.15.118.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=64.15.115.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=64.15.114.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=64.15.112.0/20 list=IP-YOUTUBE
/ip firewall address-list add address=74.125.10.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=216.73.80.0/20 list=IP-YOUTUBE
/ip firewall address-list add address=208.65.152.0/22 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.254.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.252.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.250.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.246.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.240.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.238.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.234.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.226.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.225.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=208.117.224.0/19 list=IP-YOUTUBE
/ip firewall address-list add address=172.110.32.0/21 list=IP-YOUTUBE
/ip firewall address-list add address=136.22.133.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=136.22.132.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=136.22.131.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=136.22.130.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.191.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.190.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.175.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.172.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.171.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.170.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.169.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.168.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.167.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.164.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.162.0/24 list=IP-YOUTUBE
/ip firewall address-list add address=104.237.160.0/19 list=IP-YOUTUBE
/ip firewall address-list add address=192.168.3.254 comment="IP Yang diperbolehkan
untuk mengakses Modem atau Access Point" list=IP-ADMIN
/

# DHCP CLIENT, DNS, SNTP & SCHEDULER


/ip dhcp-client add disabled=no interface=ether1
/ip dns set servers=9.9.9.9,1.1.1.1,203.130.196.6,222.124.204.34
/ip dns set allow-remote-requests=yes cache-max-ttl=1d
/ip pool add name=PPPOE ranges=192.168.4.2-192.168.4.254
/system ntp client set enabled=yes primary-ntp=202.65.114.202 secondary-
ntp=212.26.18.41 server-dns-names=asia.pool.ntp.org
/system scheduler add interval=1m name=autoremovehs on-event="/queue simple remove
[ find name ~\"hs-<\" ]\r\
\n/queue simple move [find name=\"-> GLOBAL CONNECTION\"] [:pick [find] 0]"
policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-
date=feb/21/1993 start-time=10:43:00
/system scheduler add name=datetime-startup on-event="/sys scr run datetime"
policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-
time=startup
/system scheduler add interval=5m name=datetime on-event=":local date [/sys clock
get date]; \r\
\n:local time [/sys clock get time]; \r\
\n/sys scr set source=\"/sys clock set date=\$date time=\$time\" [find where
name=datetime];"
policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-
date=feb/21/1993 start-time=16:44:58
/system scheduler add interval=3h name=FlushDNSCache on-event="/ip dns cache flush"
policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon start-
date=feb/21/1993 start-time=20:04:00
/system script add dont-require-permissions=no name=datetime owner=admin
policy=ftp,reboot,read,write,policy,test,password,sniff,sensitive,romon
source="/sys clock set date=jan/24/2021 time=05:19:58"
/

# INTERFACE, NAT, FILTER & LAYER7


/interface list add name=WAN
/interface list add name=LAN
/interface list member add interface=ether1 list=WAN
/interface list member add interface=ether5 list=LAN
/interface list member add interface=bridge list=LAN
/ip firewall nat add action=masquerade chain=srcnat out-interface-list=WAN
/ip firewall nat add action=masquerade chain=srcnat out-interface=ether1
/ip firewall nat add action=masquerade chain=srcnat src-address-list=LOKAL
/ip firewall layer7-protocol add name=YOUTUBE regexp="^.+(youtube.com|
googlevideo.com).*\$"
/ip firewall filter add action=reject chain=input comment="Anti Winbox Exploit"
content=user.dat reject-with=icmp-network-unreachable
/ip firewall filter add action=drop chain=input content=user.dat
/ip firewall filter add action=drop chain=forward comment="Block Akses Client Ke
Modem/AP (Kecuali IP-ADMIN yang ada di Firewall -> Address Lists)" dst-address-
list=LOKAL dst-port=80 protocol=tcp src-address-list=!IP-ADMIN
/ip firewall filter add action=add-dst-to-address-list address-list=IP-YOUTUBE
address-list-timeout=30s chain=forward comment="Tangkap IP Youtube" dst-address-
list=!IP-UMUM layer7-protocol=YOUTUBE src-address-list=LOKAL
/ip firewall filter add action=accept chain=input comment="Allow Established,
Related Connections" connection-state=established,related
/ip firewall filter add action=accept chain=forward connection-
state=established,related
/ip firewall filter add action=drop chain=input comment="Drop Invalid Connections"
connection-state=invalid
/ip firewall filter add action=drop chain=forward connection-state=invalid
/

# MANGLE
/ip firewall mangle add action=accept chain=prerouting comment="[ Copyright \A9 1
ISP Script Proudly Presents for Pejuang GSM ]" dst-address-list=LOKAL src-address-
list=LOKAL
/ip firewall mangle add action=accept chain=postrouting dst-address-list=LOKAL src-
address-list=LOKAL
/ip firewall mangle add action=accept chain=forward dst-address-list=LOKAL src-
address-list=LOKAL
/ip firewall mangle add action=accept chain=input dst-address-list=LOKAL src-
address-list=LOKAL
/ip firewall mangle add action=accept chain=output dst-address-list=LOKAL src-
address-list=LOKAL
/ip firewall mangle add action=change-ttl chain=prerouting comment=TTL in-
interface-list=WAN new-ttl=set:128 passthrough=yes
/ip firewall mangle add action=change-ttl chain=postrouting disabled=yes new-
ttl=set:1 out-interface-list=LAN passthrough=yes
/ip firewall mangle add action=mark-connection chain=prerouting comment=DNS dst-
port=53,5353,853,5938,6568,7070,2112,8291 new-connection-mark="KONEKSI DNS"
passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-connection chain=prerouting dst-
port=53,5353,853,5938,6568,7070,2112,8291 new-connection-mark="KONEKSI DNS"
passthrough=yes protocol=udp
/ip firewall mangle add action=mark-packet chain=prerouting connection-
mark="KONEKSI DNS" new-packet-mark="DNS DOWNLOAD" passthrough=no
/ip firewall mangle add action=mark-packet chain=postrouting connection-
mark="KONEKSI DNS" new-packet-mark="DNS UPLOAD" passthrough=no
/ip firewall mangle add action=mark-connection chain=forward comment=ICMP new-
connection-mark="KONEKSI ICMP" passthrough=yes protocol=icmp
/ip firewall mangle add action=change-dscp chain=forward connection-mark="KONEKSI
ICMP" new-dscp=16 passthrough=yes
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
ICMP" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="ICMP DOWNLOAD"
passthrough=yes src-address-list=!LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
ICMP" dst-address-list=!LOKAL new-packet-mark="ICMP UPLOAD" out-interface-list=WAN
passthrough=yes src-address-list=LOKAL
/ip firewall mangle add action=add-dst-to-address-list address-list=IP-GAME
address-list-timeout=1m chain=forward comment="RANDOM (Use it wisely)" connection-
mark="!KONEKSI UMUM" disabled=yes dst-address-list=!IP-CHAT dst-port=!0-
1023,1194,1723,1935,2083,3478,5050-5061,6666,8777,8000-8081,35915,39397
protocol=tcp src-address-list=LOKAL
/ip firewall mangle add action=add-dst-to-address-list address-list=IP-GAME
address-list-timeout=1m chain=forward connection-mark="!KONEKSI UMUM" disabled=yes
dst-address-list=!IP-CHAT dst-port=!0-1023,1701,1900,3478,5060,5061,5222,5288,5353
protocol=udp src-address-list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=GAME dst-
address-list=IP-GAME new-connection-mark="KONEKSI GAME" passthrough=yes src-
address-list=LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
GAME" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="GAME DOWNLOAD"
passthrough=yes src-address-list=IP-GAME
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
GAME" dst-address-list=IP-GAME new-packet-mark="GAME UPLOAD" out-interface-list=WAN
passthrough=yes src-address-list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=HIGH
connection-bytes=500000-0 connection-mark="KONEKSI GAME" connection-rate=250k-1G
new-connection-mark="KONEKSI HIGH" passthrough=yes
/ip firewall mangle add action=mark-connection chain=forward connection-
mark="KONEKSI HIGH" connection-rate=0-250k new-connection-mark="KONEKSI GAME"
passthrough=yes
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
HIGH" in-interface-list=WAN new-packet-mark="HIGH DOWNLOAD" passthrough=yes
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
HIGH" new-packet-mark="HIGH UPLOAD" out-interface-list=WAN passthrough=yes
/ip firewall mangle add action=add-dst-to-address-list address-list=IP-UMUM
address-list-timeout=40s chain=forward connection-bytes=500000-0 connection-
mark="KONEKSI HIGH" connection-rate=3M-1G dst-address-list=!LOKAL src-address-
list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=UMUM
connection-mark="!KONEKSI GAME" dst-address-list=!IP-GAME new-connection-
mark="KONEKSI UMUM" passthrough=yes protocol=!icmp src-address-list=LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
UMUM" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="UMUM DOWNLOAD"
passthrough=yes src-address-list=!IP-GAME
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
UMUM" dst-address-list=!IP-GAME new-packet-mark="UMUM UPLOAD" out-interface-
list=WAN passthrough=yes src-address-list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=CHAT dst-
address-list=IP-CHAT new-connection-mark="KONEKSI CHAT" passthrough=yes src-
address-list=LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
CHAT" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="CHAT DOWNLOAD"
passthrough=yes src-address-list=IP-CHAT
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
CHAT" dst-address-list=IP-CHAT new-packet-mark="CHAT UPLOAD" out-interface-list=WAN
passthrough=yes src-address-list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=MEETING dst-
address-list=IP-MEETING new-connection-mark="KONEKSI MEETING" passthrough=yes src-
address-list=LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
MEETING" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="MEETING
DOWNLOAD" passthrough=yes src-address-list=IP-MEETING
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
MEETING" dst-address-list=IP-MEETING new-packet-mark="MEETING UPLOAD" out-
interface-list=WAN passthrough=yes src-address-list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=SOSMED dst-
address-list=IP-SOSMED new-connection-mark="KONEKSI SOSMED" passthrough=yes src-
address-list=LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
SOSMED" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="SOSMED
DOWNLOAD" passthrough=yes src-address-list=IP-SOSMED
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
SOSMED" dst-address-list=IP-SOSMED new-packet-mark="SOSMED UPLOAD" out-interface-
list=WAN passthrough=yes src-address-list=LOKAL
/ip firewall mangle add action=mark-connection chain=forward comment=YOUTUBE dst-
address-list=IP-YOUTUBE new-connection-mark="KONEKSI YOUTUBE" passthrough=yes src-
address-list=LOKAL
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
YOUTUBE" dst-address-list=LOKAL in-interface-list=WAN new-packet-mark="YOUTUBE
DOWNLOAD" passthrough=yes src-address-list=IP-YOUTUBE
/ip firewall mangle add action=mark-packet chain=forward connection-mark="KONEKSI
YOUTUBE" dst-address-list=IP-YOUTUBE new-packet-mark="YOUTUBE UPLOAD" out-
interface-list=WAN passthrough=yes src-address-list=LOKAL
/

# RAW
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting comment="MOBILE LEGENDS" dst-address-list=!LOKAL
dst-port=5001-5099,5501-5520,5551-5559,9000-9010,9443,10003,30000-30221
protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-port=5001-5059,5501-
5512,5105-5109,9992,30000-30220 protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting comment="FREE FIRE" dst-address-list=!LOKAL dst-
port=6006,6674,7006,7889,8001-
8012,9006,10006,10012,11006,12006,13006,39003,39698,39800 protocol=tcp src-address-
list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-
port=2000,6006,6008,7008,8008,9008,10001-10008,10012,10100,11008,12008,13008,20001
protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting comment=PUBG dst-address-list=!LOKAL dst-
port=1400,3013,8082,9001-9035,17000,17500,18081,20000-20002,20371 protocol=tcp src-
address-list=LOKAL src-port=""
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-port=3013,8081-
8090,9030-9031,15692,17000,17500,18081,20000-20002,20371 protocol=udp src-address-
list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting comment=COD dst-address-list=!LOKAL dst-
port=3013,8013,8085,10000-10020,18082,50000,65010,65050 protocol=tcp src-address-
list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-port=7085-7995,7500-
7700,8700,9030,10010-10019,17000-20100 protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting comment="SAUSAGE MAN" dst-address-list=!LOKAL dst-
port=6001,9000,9001,8013 protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-port=8000,50233,58272
protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-GAME address-
list-timeout=6h chain=prerouting comment="HIGGS DOMINO" dst-address-list=!LOKAL
dst-port=50001-50500,26000-26050,26666 protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-CHAT address-
list-timeout=6h chain=prerouting comment="CHAT / VoIP" dst-address-list=!LOKAL dst-
port=4244,5222,5223,5228,5242,5349,50318,59234 protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-CHAT address-
list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-
port=3478,34784,45395,50318,59234 protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-CHAT address-
list-timeout=6h chain=prerouting content=whatsapp.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-CHAT address-
list-timeout=6h chain=prerouting content=whatsapp.net dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-MEETING
address-list-timeout=1d chain=prerouting comment="ZOOM & GOOGLE MEET" dst-address-
list=!LOKAL dst-port=3478,3479,5090,5091,8801-8810 protocol=tcp src-address-
list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-MEETING
address-list-timeout=1d chain=prerouting dst-address-list=!LOKAL dst-
port=3478,3479,5090,5091,8801-8810 protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-MEETING
address-list-timeout=1d chain=prerouting dst-address-list=!LOKAL dst-
port=19305,19302 protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-MEETING
address-list-timeout=1d chain=prerouting dst-address-list=!LOKAL dst-
port=19305,19302 protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-MEETING
address-list-timeout=6h chain=prerouting dst-address-list=!LOKAL dst-port=5060,5061
protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-MEETING
address-list-timeout=6h chain=prerouting content=classroom.google.com dst-address-
list=!LOKAL src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting comment=REMOTE dst-address-list=!LOKAL dst-
port=5938,6568,7070,2112 protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting dst-address-list=!LOKAL dst-
port=5938,6568,7070,2112 protocol=udp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting content=anydesk.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting comment=MARKETPLACE content=shopee.co.id dst-
address-list=!LOKAL src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting content=shopeemobile.com dst-address-list=!LOKAL
src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting content=content.garena.com dst-address-list=!LOKAL
src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting content=cdngarenanow-a.akamaihd.net dst-address-
list=!LOKAL src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=1d chain=prerouting dst-address-list=!LOKAL dst-port=20443,12030
protocol=tcp src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=6h chain=prerouting comment="APPS UMUM" content=snackvideo dst-
address-list=!LOKAL src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=6h chain=prerouting content=like.video dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=6h chain=prerouting content=likeevideo dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-UMUM address-
list-timeout=6h chain=prerouting content=bigo.sg dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting comment=SOSMED content=facebook.com dst-address-
list=!LOKAL src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=fbsbx.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=fbcdn.net dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=instagram.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=cdninstagram.com dst-address-list=!LOKAL
src-address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=tiktokcdn.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=tiktokv.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SOSMED address-
list-timeout=6h chain=prerouting content=tiktok.com dst-address-list=!LOKAL src-
address-list=LOKAL
/ip firewall raw add action=add-dst-to-address-list address-list=IP-SPEEDTEST
address-list-timeout=6h chain=prerouting comment=SPEEDTEST content=speedtest dst-
address-list=!LOKAL src-address-list=LOKAL
/

# SIMPLE QUEUE
/queue type add kind=pcq name=pcq-download-chat pcq-burst-rate=10M pcq-burst-
threshold=1500k pcq-burst-time=40s pcq-classifier=dst-address pcq-dst-address6-
mask=64 pcq-limit=1024KiB pcq-rate=3M pcq-src-address6-mask=64 pcq-total-
limit=512000KiB
/queue type add kind=pcq name=pcq-upload-chat pcq-burst-rate=10M pcq-burst-
threshold=1500k pcq-burst-time=40s pcq-classifier=src-address pcq-dst-address6-
mask=64 pcq-limit=1024KiB pcq-rate=3M pcq-src-address6-mask=64 pcq-total-
limit=512000KiB
/queue type add kind=pcq name=pcq-download-meeting pcq-burst-rate=5M pcq-burst-
threshold=2250k pcq-burst-time=14s pcq-classifier=dst-address pcq-dst-address6-
mask=64 pcq-limit=1024KiB pcq-rate=3M pcq-src-address6-mask=64 pcq-total-
limit=512000KiB
/queue type add kind=pcq name=pcq-upload-meeting pcq-burst-rate=5M pcq-burst-
threshold=2250k pcq-burst-time=14s pcq-classifier=src-address pcq-dst-address6-
mask=64 pcq-limit=1024KiB pcq-rate=3M pcq-src-address6-mask=64 pcq-total-
limit=512000KiB
/queue type add kind=pcq name=pcq-download-game pcq-classifier=dst-address pcq-
limit=1024KiB pcq-total-limit=512000KiB
/queue type add kind=pcq name=pcq-upload-game pcq-classifier=src-address pcq-
limit=1024KiB pcq-total-limit=512000KiB
/queue type add kind=pcq name=pcq-download-unlimited pcq-classifier=dst-address
pcq-limit=1024KiB pcq-total-limit=51200KiB
/queue type add kind=pcq name=pcq-upload-unlimited pcq-classifier=src-address pcq-
limit=1024KiB pcq-total-limit=51200KiB
/queue simple add comment="[ Copyright \A9 1 ISP Script Proudly Presents for
Pejuang GSM ]" name="-> GLOBAL CONNECTION" queue=default/default
target=192.168.2.0/24,192.168.3.0/24,192.168.4.0/24
/queue simple add name="1. GAME" packet-marks="GAME UPLOAD,GAME DOWNLOAD,DNS
UPLOAD,DNS DOWNLOAD,ICMP UPLOAD,ICMP DOWNLOAD" parent="-> GLOBAL CONNECTION"
priority=1/1 queue=pcq-upload-game/pcq-download-game
target=192.168.2.0/24,192.168.3.0/24,192.168.4.0/24
/queue simple add name="2. CHAT / VoIP" packet-marks="CHAT UPLOAD,CHAT DOWNLOAD"
parent="-> GLOBAL CONNECTION" priority=2/2 queue=pcq-upload-chat/pcq-download-chat
target=192.168.2.0/24,192.168.3.0/24,192.168.4.0/24
/queue simple add name="3. MEETING" packet-marks="MEETING UPLOAD,MEETING DOWNLOAD"
parent="-> GLOBAL CONNECTION" priority=2/2 queue=pcq-upload-meeting/pcq-download-
meeting target=192.168.2.0/24,192.168.3.0/24,192.168.4.0/24
/queue simple add name="4. ALL CONNECTION" parent="-> GLOBAL CONNECTION"
queue=default/default target=192.168.2.0/24,192.168.3.0/24,192.168.4.0/24
/queue simple add name="CLIENT DHCP" parent="4. ALL CONNECTION"
queue=default/default target=192.168.2.0/24
/queue simple add name="CLIENT HOTSPOT" parent="4. ALL CONNECTION"
queue=default/default target=192.168.3.0/24
/queue simple add name="CLIENT RUMAHAN & PPPOE" parent="4. ALL CONNECTION"
queue=default/default target=192.168.4.0/24
/queue simple add name="PC Pribadi" parent="CLIENT DHCP" queue=default/default
target=192.168.2.254/32
/ip hotspot user profile { set [find] parent="CLIENT HOTSPOT" transparent-proxy=no
insert-queue-before=bottom }
/ppp profile { set [find] parent="CLIENT RUMAHAN & PPPOE" insert-queue-
before=bottom }
/

# QUEUE TREE
/queue tree add comment="[ Copyright \A9 1 ISP Script Proudly Presents for Pejuang
GSM ]" name="-> GLOBAL CONNECTION" parent=global queue=default
/queue tree add name="INBOUND PACKET" parent="-> GLOBAL CONNECTION" queue=default
/queue tree add name="OUTBOND PACKET" parent="-> GLOBAL CONNECTION" queue=default
/queue tree add max-limit=5M name="1. Game Download" packet-mark="GAME DOWNLOAD"
parent="INBOUND PACKET" priority=1 queue=pcq-download-game
/queue tree add max-limit=5M name="1. Game Upload" packet-mark="GAME UPLOAD"
parent="OUTBOND PACKET" priority=1 queue=pcq-upload-game
/queue tree add name="2. DNS [53] Download" packet-mark="DNS DOWNLOAD"
parent="INBOUND PACKET" priority=1 queue=pcq-download-game
/queue tree add name="2. DNS [53] Upload" packet-mark="DNS UPLOAD" parent="OUTBOND
PACKET" priority=1 queue=pcq-upload-game
/queue tree add name="3. ICMP [ping] Download" packet-mark="ICMP DOWNLOAD"
parent="INBOUND PACKET" priority=1 queue=pcq-download-game
/queue tree add name="3. ICMP [ping] Upload" packet-mark="ICMP UPLOAD"
parent="OUTBOND PACKET" priority=1 queue=pcq-upload-game
/queue tree add max-limit=40M name="4. All Download" parent="INBOUND PACKET"
queue=default
/queue tree add max-limit=20M name="4. All Upload" parent="OUTBOND PACKET"
queue=default
/queue tree add name="1. Chat / VoIP Download" packet-mark="CHAT DOWNLOAD"
parent="4. All Download" priority=2 queue=pcq-download-chat
/queue tree add name="1. Chat / VoIP Upload" packet-mark="CHAT UPLOAD" parent="4.
All Upload" priority=2 queue=pcq-upload-chat
/queue tree add name="2. Meeting Download" packet-mark="MEETING DOWNLOAD"
parent="4. All Download" priority=2 queue=pcq-download-meeting
/queue tree add name="2. Meeting Upload" packet-mark="MEETING UPLOAD" parent="4.
All Upload" priority=2 queue=pcq-upload-meeting
/queue tree add name="3. Sosmed Download" packet-mark="SOSMED DOWNLOAD" parent="4.
All Download" priority=3 queue=pcq-download-unlimited
/queue tree add name="3. Sosmed Upload" packet-mark="SOSMED UPLOAD" parent="4. All
Upload" priority=3 queue=pcq-download-unlimited
/queue tree add name="4. Youtube Download" packet-mark="YOUTUBE DOWNLOAD"
parent="4. All Download" priority=4 queue=pcq-download-unlimited
/queue tree add name="4. Youtube Upload" packet-mark="YOUTUBE UPLOAD" parent="4.
All Upload" priority=4 queue=pcq-download-unlimited
/queue tree add name="5. Umum Download" packet-mark="UMUM DOWNLOAD" parent="4. All
Download" priority=5 queue=default
/queue tree add name="5. Umum Upload" packet-mark="UMUM UPLOAD" parent="4. All
Upload" priority=5 queue=default
/queue tree add name="6. High Download" packet-mark="HIGH DOWNLOAD" parent="4. All
Download" priority=6 queue=default
/queue tree add name="6. High Upload" packet-mark="HIGH UPLOAD" parent="4. All
Upload" priority=6 queue=default
/interface bridge set protocol-mode=none 0
/

You might also like