Jumat, 22 Februari 2013

Tutorial Mikrotik Step By Step

Tutorial Mikrotik Step By Step

Sekilas Mikrotik
Mikrotik sekarang ini banyak digunakan oleh ISP, provider hotspot, ataupun oleh pemilik warnet. Mikrotik OS menjadikan computer menjadi router network yang handal yang dilengkapi dengan berbagai fitur dan tool, baik untuk jaringan kabel maupun wireless. Dalam tutorial kali ini penulis menyajikan pembahasan dan petunjuk sederhana dan simple dalam mengkonfigurasi mikrotik untuk keperluan-keperluan tertentu dan umum yang biasa dibutuhkan untuk server/router warnet maupun jaringan lainya, konfirugasi tersebut misalnya, untuk NAT server, Bridging, BW manajemen, dan MRTG. Versi mikrotik yang penulis gunakan untuk tutorial ini adalah MikroTik routeros 2.9.27

Akses mirotik:
  1. via console
    Mikrotik router board ataupun PC dapat diakses langsung via console/ shell maupun remote akses menggunakan putty (www.putty.nl)
  2. via winbox
    Mikrotik bisa juga diakses/remote menggunakan software tool winbox
  3. via web
    Mikrotik juga dapat diakses via web/port 80 dengan menggunakan browser

Download Tulisan Lengkap:

MediaFire
Download Tutorial Mikrotik Step By Step.pdf (459 KB)

Password: SAZLINA COMP

PERHATIAN!
Untuk cara downloadnya Anda akan diarahkan ke adf.ly kemudian tunggu 5 detik dan cari tombol SKIP AD yang berada di sebelah kanan atas monitor anda.


Artikel Yang Berhubungan


Artikel step-by-step Windows Server 2008

Microsoft Innovation Center ITB
Windows Server 2008
Baru saja Microsoft Innovation Center ITB menyelesaikan beberapa guide step-by-step di Windows Server 2008, kebetulan saya kali ini menjadi Technical Director untuk project ini :P . berikut listnya (untuk webcast segera menyusul) :
  • Membangun Active Directory Rights Management Services pada Extranet
  • Membangun ADRMS Windows Server 2008 dengan Office SharePoint Server 2007
  • Panduan Installasi Windows Server Core 2008
  • Panduan penggunaan Server Manager di Windows Server 2008
  • Panduan Installasi Active Directory Certificate Services di Windows Server 2008
  • Panduan Installasi dan penggunaan Windows Deployment Services di Windows Server 2008
  • Panduan Installasi Identity Federation dengan ADRMS di Windows Server 2008
  • Panduan Installasi Terminal Service RemoteApp di Windows Server 2008
  • Panduan Installasi TS Session Broker Load Balancing di Windows Server 2008
  • Panduan mengkonfigurasi Two-Node File Server Cluster pada Windows Server 2008
  • Panduan Mengkonfigurasi Two-Node Print Server Failover Cluster pada Windows Server 2008
  • Panduan penerapan Policy untuk Windows Firewall with Advance Security di Windows Server 2008
  • Petunjuk Installasi ADRMS di Windows Server 2008
  • Petunjuk Installasi Pondasi Jaringan di Windows Server 2008
  • Petunjuk Installasi SSTP Remote Access di Windows Server 2008
  • Petunjuk Installasi TS Gateway di Windows Server 2008
  • Petunjuk Pembuatan Template ADRMS di Windows Server 2008
  • Petunjuk Setup Lisensi Terminal Services di Windows Server 2008
Anda dapat mendownloadnya secara GRATIS!! di sini (harus mendaftar dan login terlebih dahulu) atau di http://wss-id.org/files/folders/stepbystep/default.aspx

Terminal Server Installation

22 out of 30 rated this helpful - Rate this topic
Updated: February 1, 2008
Applies To: Windows Server 2008
The Terminal Server role service, known as the Terminal Server component in Windows Server® 2003, enables a Windows Server® 2008-based server to host Windows®-based programs or the full Windows desktop. From their own computing devices, users can connect to a terminal server to run programs and to use network resources on that server.
In Windows Server 2008, you must do the following to install the Terminal Server role service, and to configure the terminal server to host programs:
  1. Use Server Manager to install the Terminal Server role service.
  2. Install programs on the server.
  3. Configure remote connection settings. This includes adding users and groups that need to connect to the terminal server.
For information about Terminal Server installation prerequisites, see "Checklist: Terminal Server Installation Prerequisites" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=101636).
You can use the following procedure to use Server Manager to install the Terminal Server role service on the computer if Terminal Services is not already installed on the server. If Terminal Services is already installed on the server, see Install the Terminal Server role service (when Terminal Services is already installed).
ImportantImportant
The installation of the Terminal Server role service requires the computer to be restarted.
Membership in the local Administrators group, or equivalent, on the terminal server that you plan to configure, is the minimum required to complete this procedure.
  1. Open Server Manager. To open Server Manager, click Start, point to Administrative Tools, and then click Server Manager.
  2. In the left pane, right-click Roles, and then click Add Roles.
  3. In the Add Roles Wizard, on the Before You Begin page, click Next.
  4. On the Select Server Roles page, under Roles, select the Terminal Services check box.
    noteNote
    If Terminal Services is already installed on the server, the Terminal Services check box will be selected and dimmed.
  5. Click Next.
  6. On the Terminal Services page, click Next.
  7. On the Select Role Services page, select the Terminal Server check box, and then click Next.
    noteNote
    If you are installing the Terminal Server role service on a domain controller, you will receive a warning message because installing the Terminal Server role service on a domain controller is not recommended. For more information, see "Installing Terminal Server on a Domain Controller" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=109277).
  8. On the Uninstall and Reinstall Applications for Compatibility page, click Next.
  9. On the Specify Authentication Method for Terminal Server page, select the appropriate authentication method for the terminal server, and then click Next. For more information about authentication methods, see "Configure the Network Level Authentication Setting for a Terminal Server" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=109280).
  10. On the Specify Licensing Mode page, select the appropriate licensing mode for the terminal server, and then click Next. For more information about licensing modes, see "Specify the Terminal Services Licensing Mode" in the Terminal Services Configuration Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=101638).
  11. On the Select User Groups Allowed Access To This Terminal Server page, add the users or user groups that you want to be able to remotely connect to this terminal server, and then click Next. For more information, see "Configure the Remote Desktop User Group" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=109278).
  12. On the Confirm Installation Selections page, verify that the Terminal Server role service will be installed, and then click Install.
  13. On the Installation Progress page, installation progress will be noted.
  14. On the Installation Results page, you are prompted to restart the server to finish the installation process. Click Close, and then click Yes to restart the server.
  15. If you are prompted that other programs are still running, do either of the following:
    • To close the programs manually and restart the server later, click Cancel.
    • To automatically close the programs and restart the server, click Restart now.
  16. After the server restarts and you log on to the computer, the remaining steps of the installation will finish. When the Installation Results page appears, confirm that the installation of Terminal Server succeeded.
    You can also confirm that Terminal Server is installed by following these steps:
    1. Start Server Manager.
    2. Under Roles Summary, click Terminal Services.
    3. Under System Services, confirm that Terminal Services has a status of Running.
    4. Under Role Services, confirm that Terminal Server has a status of Installed.
You can use the following procedure to install the Terminal Server role service when Terminal Services is already installed on the computer.
ImportantImportant
The installation of the Terminal Server role service requires the computer to be restarted.
Membership in the local Administrators group, or equivalent, on the terminal server that you plan to configure, is the minimum required to complete this procedure.
  1. Open Server Manager. To open Server Manager, click Start, point to Administrative Tools, and then click Server Manager.
  2. In the left pane, expand Roles.
  3. Right-click Terminal Services, and then click Add Role Services.
  4. On the Select Role Services page, select the Terminal Server check box, and then click Next.
    noteNote
    If you are installing the Terminal Server role service on a domain controller, you will receive a warning message because installing the Terminal Server role service on a domain controller is not recommended. For more information, see "Installing Terminal Server on a Domain Controller" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=109277).
  5. On the Uninstall and Reinstall Applications for Compatibility page, click Next.
  6. On the Specify Authentication Method for Terminal Server page, select the appropriate authentication method for the terminal server, and then click Next. For more information about authentication methods, see "Configure the Network Level Authentication Setting for a Terminal Server" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=109280).
  7. On the Specify Licensing Mode page, select the appropriate licensing mode for the terminal server, and then click Next. For more information about licensing modes, see "Specify the Terminal Services Licensing Mode" in the Terminal Services Configuration Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=101638).
  8. On the Select User Groups Allowed Access To This Terminal Server page, add the users or user groups that you want to be able to remotely connect to this terminal server, and then click Next. For more information, see "Configure the Remote Desktop User Group" in the Terminal Server Help in the Windows Server 2008 Technical Library (http://go.microsoft.com/fwlink/?linkid=109278).
  9. On the Confirm Installation Selections page, verify that the Terminal Server role service will be installed, and then click Install.
  10. On the Installation Progress page, installation progress will be noted.
  11. On the Installation Results page, you are prompted to restart the server to finish the installation process. Click Close, and then click Yes to restart the server.
  12. If you are prompted that other programs are still running, do either of the following:
    • To close the programs manually and restart the server later, click Cancel.
    • To automatically close the programs and restart the server, click Restart now.
  13. After the server restarts and you log on to the computer, the remaining steps of the installation will finish. When the Installation Results page appears, confirm that the installation of Terminal Server succeeded.
    You can also confirm that Terminal Server is installed by following these steps:
    1. Start Server Manager.
    2. Under Roles Summary, click Terminal Services.
    3. Under SystemServices, confirm that Terminal Services has a status of Running.
    4. Under Role Services, confirm that Terminal Server has a status of Installed.
Install programs on the terminal server after you have installed the Terminal Server role service. If you install the Terminal Server role service on a computer that already has programs installed, some of the existing programs may not work correctly in a multiple user environment.
Some programs may require minor setup modifications to run correctly on a terminal server.
Before you install a program on the terminal server, type change user /install at the command prompt to place the system in install mode. After the program is installed, type change user /execute at the command prompt to return the system to execute mode.
noteNote
If you install a program from an .msi package, you do not have to run these commands to switch the system in and out of install mode. Instead, you can run the .msi package or associated Setup file directly.
If you have programs that are related to each other or have dependencies on each other, we recommend that you install the programs on the same terminal server. For example, we recommend that you install Microsoft Office as a suite instead of installing individual Office programs on separate terminal servers.
You should consider putting individual programs on separate terminal servers in the following circumstances:
  • The program has compatibility issues that may affect other programs.
  • A single program and the number of associated users may fill server capacity.
By default, remote connections are enabled after you install the Terminal Server role service. You can use the following procedure to add users and groups that need to connect to the terminal server, and to verify or to change remote connection settings.
Membership in the local Administrators group, or equivalent, on the terminal server that you plan to configure, is the minimum required to complete this procedure.
  1. Start the System tool. To start the System tool, use either of the following methods:
    • Click Start, and then click Control Panel. In Control Panel, double-click System.
    • Click Start, click Run, type control system and then click OK.
  2. Under Tasks, click Remote Settings.
  3. In the System Properties dialog box, on the Remote tab, click either of the following, depending on your environment:
    • Allow connections from computers running any version of Remote Desktop   By default, this option is enabled. Use this option if users will access the terminal server from any client computers that are running a version of the RDC client that does not support Network Level Authentication.
    • Allow connections only from computers running Remote Desktop with Network Level Authentication   Use this option if all client computers that will access the terminal server are running a version of the RDC client that supports Network Level Authentication. If a client that does not support Network Level Authentication tries to connect, they will receive an authentication error message.
    For more information about the two options, click the Help me choose link on the Remote tab.
  4. Click Select Users to add the users and groups that need to connect to the terminal server by using Remote Desktop. The users and groups that you add are added to the Remote Desktop Users group.
    Members of the local Administrators group can connect even if they are not listed.
    If you select Don't allow connections to this computer on the Remote tab, no users will be able to connect remotely to this computer, even if they are members of the Remote Desktop Users group.
To determine whether a computer is running a version of the RDC client that supports Network Level Authentication, start the RDC client, click the icon in the upper-left corner of the Remote Desktop Connection dialog box, and then click About. Look for the phrase "Network Level Authentication supported" in the About Remote Desktop Connection dialog box.

Cara Setting Mikrotik ISP Telkom Speedy

Tutorial kali ini akan menjelaskan tentang Cara Setting Mikrotik dasar ISP Telkom Speedy. Skema Jaringan dan IP Address yang akan dibuat adalah :


Speedy ( Internet ) => Modem ADSL ( IP Modem = 192.168.1.1 ) => ( IP ether1 = 192.168.1.2 ) Mikrotik Routeros ( IP ether2 = 10.0.0.30 ) => LAN ( IP LAN = 10.0.0.1 s/d 10.0.0.29 )

IP Address LAN, kita gunakan Network 10.0.0.0 / 27 ( Transfer data = 27 bit untuk max 30 IP Address /komputer )

Untuk Mikrotik Router OS, kita perlu dua ethernet card. Satu ( ether1 - 192.168.1.2/24 ) untuk sambungan ke modem ADSL dan satu lagi ( ether2 - 10.0.0.30/27 ) untuk sambungan ke LAN / Switch
Untuk modem ADSL, IP kita set 192.168.1.1/24
Pastikan anda sebelum mengetikan apapun telah berada pada root menu dengan mengetikan " / "

1. Set IP untuk masing - masing ethernet card :
IP Address add address = 192.168.1.2/24 interface = ether1
IP Address add address = 10.0.0.30/27 interface = ether2

Untuk menampilkan hasil perintah diatas ketikkan perintah ip address print

Kemudian lakukan testing dengan mencoba nge ping ke gateway atau ke komputer yang ada pada LAN, jika hasilnya sukses, maka konfigurasi IP anda sudah benar
ping 192.168.1.1
ping 10.0.0.30

2. Menambahkan Routing
ip route add gateway = 192.168.1.1 ( IP Gateway adalah IP Modem )

3. Setting DNS
ip dns set primary - dns = 203.130.193.74 allow - remote - request = yes
ip dns set secondary - dns = 202.134.0.155 allow - remote - request = yes
Karena koneksi menggunakan speedy dari Telkom, maka DNS yang kita gunakan DNS Telkom. Silahkan sesuaikan dengan DNS Telkom masing tempat berada

Setelah itu coba anda lakukan ping ke yahoo.com misalnya : pingyahoo.com. Jika hasilnya sukses, maka settingan DNS sudah benar

4. Source NAT ( Network address Translation ) / Masquesrading
Agar semua komputer yang ada di LAN bisa terhubung ke internet juga, maka anda perlu menambahkan NAT ( Masquerade ) pada Mikrotik
ip firewall nat add chain = srcnat action = masquerade out - interface = ether1

Sekarang coba lakukan ping ke yahoo.com dari komputer yang ada di LAN pingyahoo.com. Jika hasilnya sukses maka setting masquerade sudah benar

5. DHCP ( Dynamic Host Configuration Protocol )
Supaya praktis, kita gunakan saja DHCP server, agar setiap kali client yang ingin connect, dia tidak perlu setting IP secara manual. Tinggal obtain aja dari DHCP server, beres deah..:)) untungnya mikrotik ini juga ada fitur DHCP servernya, jadi ya tidak ada masalah, ok langkah - langkahnya sebagai berikut :

Buat IP Address Pool
ip pool add name = dhcp - pool ranges = 10.0.0.1 - 10.0.0.29

Menambahkan DHCP Network
ip dhcp - server network add address = 10.0.0.0/27 gateway = 10.0.0.30 dns - server = 203.130.193.74 , 202.134.0.155

Menambahkan server DHCP
ip dhcp - server add name = DHCP_ LAN disable = no interface = ether2 address - pool = dhcp - pool

Sekarang coba lakukan testing dari komputer client, untuk merequest ip address dari server DHCP. Jika sukses, maka sekali lagi settingnya sudah ok

6. Bandwidth Control
Agar semua komputer client pada LAN tidak saling berebut bandwidth, maka perlu dilakukan bandwidth management atau bandwidth control
Model yang saya gunakan adalah queue trees. untuk lebih jelas apa itu queue trees sillahkan kunjungi www.mikrotik.co.id
Kondisinya seperti ini :
Koneksi speedy sekarang ini katanya speednya sampai 1 Mbps/128kbps ( Download / Upload ) untuk itu settingan bandwidth managementnya bisa kita set sebagai berikut :

Tandai semua paket yang asalnya dari LAN
ip firewall mangle add src-address/27 action = mark - connection
ip firewall mangle add connection-mark = Client - connection = mark - packet new - packet - mark = Clients chain = prerouting new - connection - mark = client - con chain = prerouting

Menambahkan roule yang akan membatasi kecepatan download dan upload
queue tree add name = clients - download parent = ether2 packet - mark = client limit - at = 0 max - limit = 0
queue tree add name = clients - upload parent = ether1 packet - mark = clients limit - at = 0 mas - limit = 0

Nilai download dan upload kita set " 0 " ( nol ) dengan tujuan agar bandwidth yang kita dapatkan tidak terbatasi, karena pada saat - saat tertentu speed speedy bisa mencapai 1,5 Mbps, jadi kalau kita set max = 1 mbps maka speed yang kita dapatkan hanya mentok 1 mbps saja. rugikan :))

Sekarang coba lakukan test download dari beberapa client, mestinya sekarang setiap client akan berbagi bandwidthnya, jika jumlah client yang online tidak sampai 10, maka sisa bandwidth yang nganggur itu akan dibagikan kepada client yang online

7. Graphing
Mikrotik ini juga dilengkapi dengan fungsi monitoring traffic layaknya MRTG biasa. Jadi kita bisa melihat berapa banyak paket yang dilewatkan pada PC Mikrotik kita
tool graphing set store - every = 5 min

Beikutnya yang kita monitor adalah paket - paket yang lewat semua interface yang ada di PC Mikrotik kita, tool graphing interface - add - interface = all store - on - disk = yes

Sekarang coba arahkan browser anda ke IP Router Mikrotik ( IP ether2 yang ke LAN ), nanti akan ada pilihan interface apa aja yang di router anda. Coba klik salah satu, makan anda akan bisa melihat grafik dari paket - paket yang lewat pada interface tersebut. Sampai disini kita selesai melakukan setting mikrotik dasar untuk koneksi speedy

Senin, 29 Oktober 2012

Konfigurasi Kabel Jaringan



1.1       Pengkabelan

1.1.1       Straight-Through

Jenis kabel ini digunakan untuk menghubungkan antara workstation dengan hub/switch. Kabel ini juga memiliki 4 pairs (8 wire) dimana setiap pin antara ujung satu dengan ujung lainnya harus sama. Maksudnya, bila salah satu ujung memakai standard T568-A maka ujung satunya harus memakai T568-A juga. Begitu pula sebaliknya, jika salah satu ujung menggunakan standard T568-B, ujung satunya juga harus memakai standard yang sama.

Tabel 1.1 Standar Pengkabelan T568-A


Pin# Function Wire Color
1 Transmit White/Green
2 Receive Green/White
3 Transmit White/Orange
4 Not Used Blue/White
5 Not Used White/Blue
6 Receive Orange/White
7 Not Used White/Brown
8 Not Used
Brown/White
Gambar T568-A

Tabel 1.2 Standar Pengkabelan T568-B


Pin# Function Wire Color
1 Transmit White/Orange
2 Receive Orange/White
3 Transmit White/Green
4 Not Used Blue/White
5 Not Used White/Blue
6 Receive Green/White
7 Not Used White/Brown
8 Not Used
Brown/White
Gambar T568-B

1.1.2       Cross Over

Merupakan jenis kabel yang digunakan untuk menghubungkan antar workstation atau antar hub/switch. Kabel jenis ini menggunakan standard T568-A pada salah satu ujung, dan T568-B pada ujung lainnya.

1.1.3     Roll Over

Digunakan untuk koneksi antara sebuah workstation ke port console pada sebuah router atau switch. Standard yang digunakan adalah T568-A pada salah satu ujung dan ujung lainnya urutan T568-A tinggal di roll (dibalik). Demikian juga jika yang dipakai adalah standard T568-B.

1.2       Praktikum

1.     Pembuatan kabel
a)     Siapkan kabel UTP dan RJ 45 sebagai interfacenya
b)     Potong jaket ujung kabel kira-kira 1.5 cm dengan cutter atau gunting, dan buanglah jaket tersebut. Hati-hati dalam mengupas jaket, jangan sampai kabel yang ada di dalamnya ikut terpotong.
c)     Untwist atau buka lilitan masing-masing pasangan kabel
d)     Untuk membuat kabel straight-trough, crossover maupun rollover, lihat standard T568-A atau T568-B
e)     Sesuaikan masing-masing jenis kabel dengan standardnya, lalu luruskan hingga memungkinkan untuk bisa dimasukkan ke dalam RJ 45
f)      Bila sudah dimasukkan ke RJ 45, crimpinglah dengan menggunakan peralatan yang ada agar kabel menjadi permanen dan tidak mudah goyah


Sumber: Modul Jaringan Politeknik Telkom 2010