Proxy set

/ip proxy
set cache-administrator=admin@proxy1.net.net cache-on-disk=yes enabled=yes max-cache-size=130702000KiB max-client-connections=999 max-server-connections=999 port=8080
/ip proxy access
add action=allow src-address=20.20.20.0/24
add action=allow src-address=20.20.21.0/24
add action=allow src-address=20.20.22.0/24
add action=allow src-address=20.20.24.0/24
add action=allow src-address=20.20.25.0/24
add action=allow src-address=20.20.26.0/24
add action=allow src-address=20.20.27.0/24
add action=allow src-address=20.20.28.0/24
add action=allow src-address=20.20.32.0/24
add action=allow src-address=20.20.33.0/24
add action=allow src-address=20.20.35.0/24

add action=allow src-address=10.10.10.16/28
add action=deny comment=DRO-ALL

/ip firewall address-list
add address=20.20.20.0/24 list=LOCAL-IP
add address=20.20.21.0/24 list=LOCAL-IP
add address=20.20.24.0/24 list=LOCAL-IP
add address=20.20.25.0/24 list=LOCAL-IP
add address=20.20.26.0/24 list=LOCAL-IP
add address=20.20.27.0/24 list=LOCAL-IP
add address=20.20.28.0/24 list=LOCAL-IP
add address=20.20.32.0/24 list=LOCAL-IP
add address=10.10.10.16/28 list=LOCAL-IP
add address=20.20.35.0/24 list=LOCAL-IP
add address=20.20.22.0/24 list=LOCAL-IP

/ip firewall nat
add action=redirect chain=dstnat   dst-port=80 in-interface=LAN protocol=tcp src-address-list=LOCAL-IP to-ports=8080
add action=masquerade chain=srcnat   out-interface=WAN

Tulis sebuah Komentar

Required fields are marked *
*
*