You are on page 1of 2

/interface bridge

add name=bridge-isp1
add name=bridge-isp2
add name=bridge-lan
/interface wireless
set [ find default-name=wlan1 ] ssid=MikroTik
set [ find default-name=wlan2 ] ssid=MikroTik
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip hotspot profile
set [ find default=yes ] html-directory=flash/hotspot
/ip pool
add name=dhcp_pool0 ranges=192.168.100.2-192.168.100.254
/ip dhcp-server
add address-pool=dhcp_pool0 disabled=no interface=bridge-lan name=dhcp1
/interface bridge port
add bridge=bridge-isp1 interface=ether1
add bridge=bridge-isp2 interface=ether2
add bridge=bridge-lan interface=ether4
/ip address
add address=192.168.6.2/24 interface=bridge-isp1 network=192.168.6.0
add address=192.168.7.2/24 interface=bridge-isp2 network=192.168.7.0
add address=192.168.100.1/24 interface=bridge-lan network=192.168.100.0
/ip dhcp-server network
add address=192.168.100.0/24 gateway=192.168.100.1
/ip dns
set servers=1.1.1.1,1.0.0.1
/ip firewall address-list
add address=192.168.0.0/16 list=lokal
/ip firewall mangle
add action=mark-routing chain=prerouting dst-address-list=!lokal dst-port=\
!80,443,8000-8081,21,22,23,81,88,5050,843,182,8777,1935,53 \
new-routing-mark=game passthrough=no protocol=tcp src-address-list=lokal
add action=mark-routing chain=prerouting dst-address-list=!lokal dst-port=\
!80,443,8000-8081,21,22,23,81,88,5050,843,182,8777,1935,53 \
new-routing-mark=game passthrough=no protocol=udp src-address-list=lokal
add action=mark-routing chain=prerouting dst-address-list=wa \
new-routing-mark=wa-fb passthrough=no src-address-list=lokal
add action=mark-routing chain=prerouting dst-address-list=Facebook \
new-routing-mark=wa-fb passthrough=no src-address-list=lokal
/ip firewall nat
add action=masquerade chain=srcnat out-interface=bridge-isp1
add action=masquerade chain=srcnat out-interface=bridge-isp2
add action=dst-nat chain=dstnat dst-port=53 protocol=tcp to-addresses=1.1.1.1 \
to-ports=53
add action=dst-nat chain=dstnat dst-port=53 protocol=udp to-addresses=1.1.1.1 \
to-ports=53
/ip firewall raw
add action=add-dst-to-address-list address-list=wa address-list-timeout=1h \
chain=prerouting comment=whatsapp content=.whatsapp.com dst-address-list=\
!lokal src-address-list=lokal
add action=add-dst-to-address-list address-list=wa address-list-timeout=1h \
chain=prerouting content=.whatsapp.net dst-address-list=!lokal \
src-address-list=lokal
add action=add-dst-to-address-list address-list=wa address-list-timeout=1h \
chain=prerouting content=cdn.whatsapp.net dst-address-list=!lokal \
src-address-list=lokal
add action=add-dst-to-address-list address-list=wa address-list-timeout=1h \
chain=prerouting content=static.whatsapp.net dst-address-list=!lokal \
src-address-list=lokal
add action=add-dst-to-address-list address-list=Facebook \
address-list-timeout=1h chain=prerouting comment=Facebook content=\
.facebook.com dst-address-list=!lokal src-address-list=lokal
add action=add-dst-to-address-list address-list=Facebook \
address-list-timeout=1h chain=prerouting content=.fbcdn.net \
dst-address-list=!lokal src-address-list=lokal
add action=add-dst-to-address-list address-list=Facebook \
address-list-timeout=1h chain=prerouting content=fb.com dst-address-list=\
!lokal src-address-list=lokal
add action=add-dst-to-address-list address-list=Facebook \
address-list-timeout=1h chain=prerouting content=.facebook.net \
dst-address-list=!lokal src-address-list=lokal
add action=add-dst-to-address-list address-list=Facebook \
address-list-timeout=1h chain=prerouting content=.fbsbx.com \
dst-address-list=!lokal src-address-list=lokal
add action=add-dst-to-address-list address-list=Facebook \
address-list-timeout=1h chain=prerouting content=akamaihd.net \
dst-address-list=!lokal src-address-list=lokal
/ip route
add distance=1 gateway=192.168.7.1 routing-mark=game
add distance=1 gateway=192.168.7.1 routing-mark=wa-fb
add distance=1 gateway=192.168.6.1
add distance=2 gateway=192.168.7.1
/ip service
set telnet disabled=yes
set ftp disabled=yes
set ssh disabled=yes
set api disabled=yes
set api-ssl disabled=yes
/system clock
set time-zone-name=Asia/Jakarta
/system note
set note="INGAT JANGAN LUPA SUBSCRIBE YA."

You might also like