[agak OOT,maaf]Squid di ubuntu yng terpisah dr mikrotik, how to?

37 views
Skip to first unread message

Naoki Agus Riyanto

unread,
Apr 7, 2010, 4:03:15 AM4/7/10
to id-u...@googlegroups.com
gini rekan2...
topologiku, .mohon koreksi (mengakibakn loopback kah?>




adsl(bridge) ------------------- mikrotik(2ethernet)---------------------------switch------------client1 (jaunty)
                            125.168.xx.xx        192.168.100.1                 |
                                                                                             |-----------------CLIENT2 (jaunty)
                                                                                             |__________ubuntu karmic(squid proxy) 192.168.100.254




di mikrotik....DHCP, NAT, Routing, misahin bandwidth IIX dan int


sedangkan proxy nya terpisah yaitu sejajar client( ubuntu karmic dg 1 interface/ethernet)


gimana spy client2 tsb mengambil transparent proxy di ubuntu port 3128..



squid.conf(mohon koreksi klo salah)--------------
                                                         

http_port 3128 transparent
cache_effective_user billing
cache_effective_group billing
acl all src 0.0.0.0/0.0.0.0
icp_query_timeout 1000
high_memory_warning 500 MB
visible_hostname proxy
httpd_suppress_version_string on
cache_mem 64 MB
cache_replacement_policy heap GDSF
memory_replacement_policy heap GDSF
cache_swap_low 90
cache_swap_high 95
maximum_object_size 131072 KB
maximum_object_size_in_memory 64 KB
tcp_recv_bufsize 65535 bytes
ipcache_size 8192
fqdncache_size 8192
acl msnmess url_regex http://207.46.111.55/gateway/gateway.dll?
deny_info TCP_RESET msnmess
http_access deny msnmess
forwarded_for off
high_page_fault_warning 10
high_response_time_warning 2000
client_persistent_connections off
server_persistent_connections on
half_closed_clients off
cache_dir aufs /cache 10000 10 256
log_icp_queries off
cache_access_log /var/log/squid/access.log
emulate_httpd_log on
refresh_pattern ^ftp: 1440 20% 10080
refresh_pattern ^gopher: 1440 0% 1440
refresh_pattern . 0 20% 4320
quick_abort_min 0 KB
quick_abort_max 0 KB
negative_dns_ttl 2 minutes
acl mynetwork src 192.168.100.0/24
acl manager proto cache_object
acl localhost src 127.0.0.1/255.255.255.255
acl SSL_ports port 443 563 2082 2083 2086 2087 2093 2095 2096
acl Safe_ports port 80 21 443 563 70 210 8000 11999 2082 2083 2086 2087 2095 2096 8082 8090
acl CONNECT method CONNECT
http_access allow manager localhost
http_access deny manager
http_access deny !Safe_ports
http_access deny CONNECT !SSL_ports
http_access allow mynetwork
http_access allow localhost
deny_info TCP_RESET all
http_access deny all
snmp_port 3001
acl queryme snmp_community SquidSnmpRahasia
acl adminpc src 192.168.100.254
snmp_access allow queryme localhost
snmp_access allow queryme adminpc
snmp_access deny all
icp_access allow mynetwork
icp_access deny all
miss_access allow all
ie_refresh on
------------------------------------------------------------

NAT di mikrotik

[admin@ROUTER] ip firewall nat> print
Flags: X - disabled, I - invalid, D - dynamic
 0   chain=srcnat src-address=192.168.100.0/24 dst-address=0.0.0.0/0 action=masquerade


nah perintah iptables di ubuntu gmn? krn nat sdh tdp di mikrotik
  

mungkin ada topologi yg lebih baik? shinmgga proxy di karmic bs juga menjadi billing server


----terimkasih

Die~~ ٩๏̯͡๏۶ ̿ ̿ ̿ ̿ ̿̿’\̵͇̿̿\=(•̪●)‏ ɹɐzǝupɐɥʞ ɐzɹıɯ

unread,
Apr 7, 2010, 11:03:53 AM4/7/10
to id-u...@googlegroups.com
internet ----> mikrotik >>>> Ubuntu/Transparant + IP Forward ke
mikrotik untuk Simple queue nya ----->>>>> Switch >>>>. Client

kalau gitu gimana ?

> --
> Info Milis: http://wiki.ubuntu-id.org/Milis
> Etika Milis: http://wiki.ubuntu-id.org/EtikaMilis
> Daftar Hitam Anggota Milis: http://wiki.ubuntu-id.org/Milis/HallOfShame

--
-=-=-=-=
hix nganggur maning... nganggur maning

artanto, bayu

unread,
Apr 7, 2010, 9:21:45 PM4/7/10
to id-u...@googlegroups.com

bukane tinggal di DNAT or redirect aja lewat mikrotik ?

--


---------------------------------------------
- http://bayuart.wordpress.com
- http://bayuart.blogspot.com
- http://bayu.blitar.org
- http://www.blitar.org
- http://www.blitarian.com
- http://www.plurk.com/bayuart/invite

Paidjo@Milis

unread,
Apr 10, 2010, 8:23:22 AM4/10/10
to Naoki Agus Riyanto
Hello Naoki,

Wednesday, April 7, 2010, 3:03:15 PM, you wrote:

> gini rekan2...
> topologiku, .mohon koreksi (mengakibakn loopback kah?>


> adsl(bridge) -------------------
> mikrotik(2ethernet)---------------------------switch------------client1
> (jaunty)
> 125.168.xx.xx 192.168.100.1
> |

> |-----------------CLIENT2 (jaunty)

> |__________ubuntu karmic(squid proxy) 192.168.100.254


> di mikrotik....DHCP, NAT, Routing, misahin bandwidth IIX dan int


> sedangkan proxy nya terpisah yaitu sejajar client( ubuntu karmic dg 1
> interface/ethernet)


> gimana spy client2 tsb mengambil transparent proxy di ubuntu port 3128..


kalo untuk redirect dari mikrotik ke squid box linux coba mampir
kesini
http://tinyurl.com/y45y9pa


--
Best regards,
Paidjo mailto:paidjo...@gmail.com

Die~~ ٩๏̯͡๏۶ ̿ ̿ ̿ ̿ ̿̿’\̵͇̿̿\=(•̪●)‏ ɹɐzǝupɐɥʞ ɐzɹıɯ

unread,
Apr 10, 2010, 8:27:12 AM4/10/10
to id-u...@googlegroups.com
> http://tinyurl.com/y45y9pa\

http://paidjo.files.wordpress.com/2008/03/pic-squidbox.jpg

ga bottle neck gan ?
ga bingung tuh arus sungai nya ??
mohon pencerahannya

>
>
>
>
> --
> Best regards,
>  Paidjo                            mailto:paidjo...@gmail.com
>

> To unsubscribe, reply using "remove me" as the subject.

Paidjo@Milis

unread,
Apr 10, 2010, 8:35:40 AM4/10/10
to id-u...@googlegroups.com
Hello ,

Saturday, April 10, 2010, 7:27:12 PM, you wrote:


>> http://tinyurl.com/y45y9pa\

> http://paidjo.files.wordpress.com/2008/03/pic-squidbox.jpg

> ga bottle neck gan ?
> ga bingung tuh arus sungai nya ??
> mohon pencerahannya


INTERNET ---- MIKROTIK----hub----CLIENT

squid box sejajar dengan client gan

Die~~ ٩๏̯͡๏۶ ̿ ̿ ̿ ̿ ̿̿’\̵͇̿̿\=(•̪●)‏ ɹɐzǝupɐɥʞ ɐzɹıɯ

unread,
Apr 10, 2010, 8:37:57 AM4/10/10
to id-u...@googlegroups.com
On Sat, Apr 10, 2010 at 7:35 PM, Paidjo@Milis <paidjo...@gmail.com> wrote:
> Hello ,
>
> Saturday, April 10, 2010, 7:27:12 PM, you wrote:
>
>
>>> http://tinyurl.com/y45y9pa\
>
>> http://paidjo.files.wordpress.com/2008/03/pic-squidbox.jpg
>
>> ga bottle neck gan ?
>> ga bingung tuh arus sungai nya ??
>> mohon pencerahannya
>
>
> INTERNET ---- MIKROTIK----hub----CLIENT
>
> squid box sejajar dengan client gan
>

iya... apa ga bingung tuh arus squid nya ?
moho pencerahannya
karena sayah memang lagi cari solusi alternatif selain :

inet >>>> mikrotik >>>> squid - dengan Forward IP - supaya simple
queue nya kebaca per client di mikrotik >>>>>> hub>>>> client


> --
> Best regards,
>  Paidjo                            mailto:paidjo...@gmail.com
>

Reply all
Reply to author
Forward
0 new messages