Powered By Blogger

15 September 2008

8. Melengkapi Debian building tools

“imamoberst:/home/imam# apt-get install devscripts”

Reading package lists… Done
Building dependency tree… Done
The following extra packages will be installed:
binutils dpkg-dev make
Suggested packages:
binutils-doc devscripts-el build-essential cvs-buildpackage cvs subversion tla bazaar debian-keyring dupload dput gnuplot libtimedate-perl libwww-perl
lintian linda patchutils wdiff make-doc-non-dfsg
Recommended packages:
fakeroot gcc c-compiler bzip2
The following NEW packages will be installed:
binutils devscripts dpkg-dev make
0 upgraded, 4 newly installed, 0 to remove and 0 not upgraded.
Need to get 3540kB of archives.
After unpacking 10.8MB of additional disk space will be used.
Do you want to continue [Y/n]? y
Get:1 http://debian.indika.net.id etch/main binutils 2.17-3 [2605kB]
Get:2 http://debian.indika.net.id etch/main make 3.81-2 [382kB]
Get:3 http://debian.indika.net.id etch/main dpkg-dev 1.13.25 [166kB]
Get:4 http://debian.indika.net.id etch/main devscripts 2.9.26 [386kB]
Fetched 3540kB in 2s (1579kB/s)
Selecting previously deselected package binutils.
(Reading database … 18560 files and directories currently installed.)
Unpacking binutils (from …/binutils_2.17-3_i386.deb) …
Selecting previously deselected package make.
Unpacking make (from …/archives/make_3.81-2_i386.deb) …
Selecting previously deselected package dpkg-dev.
Unpacking dpkg-dev (from …/dpkg-dev_1.13.25_all.deb) …
Selecting previously deselected package devscripts.
Unpacking devscripts (from …/devscripts_2.9.26_i386.deb) …
Setting up binutils (2.17-3) …

Setting up make (3.81-2) …
Setting up dpkg-dev (1.13.25) …
Setting up devscripts (2.9.26) …

7. install OTRS (Open source Ticket Request System) in Debian Etch

OTRS Requirements

Apache Web server
Mysql or Postgresql Database
Perl 5.8,Perl Modules

Install OTRS in debian

imamoberst:#apt-get install otrs2

akan muncul pertanyaan sebagai berikut :

- Configure database using dbconfig-common? —-> YES

- Database you want to use?——->mysql

- Masukkan password admin mysql anda

- Buatlah password user otrs

FINNISH

Bukalah web browser anda dengan alamat : “http://your server ip/otrs/index.pl”

Username :- root@localhost

Password :- root

see documentation untuk detailnya :)

6. Buat DNS server sendiri dengan Debian Etch

Beberapa apt source list lokal :

#kambing
deb http://kambing.ui.edu/debian etch main
contrib non-free
deb http://kambing.ui.edu/debian-security etch/updates
main contrib non-free

#komo.vlsm.org
deb http://komo.vlsm.org/debian etch
main non-free contrib
deb http://komo.vlsm.org/debian etch-proposed-updates
main non-free contrib

#debian.indika.net.id
deb http://debian.indika.net.id/debian etch
main non-free contrib
deb http://debian.indika.net.id/debian etch-proposed-updates
main non-free contrib

isi di /etc/apt/sources.list.
jangan lupa untuk mengupdate nya :
imamoberst:~# apt-get update
Download dan install bind9 :
imamoberst:~# apt-get install bind9
Buat File domain yang akan di manage :
imamoberst:~# touch /var/cache/bind/db.imamoberst.com
imamoberst:~# touch /var/cache/bind/db.120.136.16
isi file tersebut dengan beberapa paramater seperti berikut :
imamoberst:~# nano /var/cache/bind/db.imamoberst.com
————————————————————————————————-
$TTL 86400
@ IN SOA imamoberst.com. hostmaster.imamoberst.com. (
2008080407
28800
600
604800
86400 )

IN NS ns1.imamoberst.com
IN A 120.136.16.2
www IN A 120.136.16.3
————————————————————————————————-
imamoberst:~# nano /var/cache/bind/db.120.136.16
————————————————————————————————-
$TTL 86400 ; 1 day
@ IN SOA ns1.imamoberst.com. hostmaster.imamoberst.com. (
2006091000
28800
600
604800
86400
)
IN NS ns1.imamoberst.com.
2 PTR www.imamoberst.com

————————————————————————————————-

edit file /etc/bind/named.conf.local :
————————————————————————————————-
zone “imamoberst.com” {
type master;
file “/var/cache/bind/db.imamoberst.com”;
};

zone “16.136.120.in-addr.arpa”{
type master;
file “/var/cache/bind/db.120.136.16″;
};


————————————————————————————————-
restart dns anda :
imamoberst:~# /etc/init.d/bind9 restart

5. Setting LoadBalance Mikrotik Versi 3 dengan pppoe-5-speedy

Pertama set modem anda sebagai bridge, biarakan mikrotik kita yg dial up sebagain pppoe client :

/interface pppoe-client

add ac-name=”" add-default-route=no allow=pap,chap,mschap1,mschap2 comment=”" \

dial-on-demand=no disabled=no interface=Spidol1 max-mru=1480 max-mtu=1480 \

mrru=disabled name=”******@telkom.net” password=”***” profile=default \

service-name=”" use-peer-dns=no user=”***”

add ac-name=”" add-default-route=no allow=pap,chap,mschap1,mschap2 comment=”" \

dial-on-demand=no disabled=no interface=Spidol2 max-mru=1480 max-mtu=1480 \

mrru=disabled name=”******@telkom.net” password=”***” profile=default \

service-name=”" use-peer-dns=no user=”***”

add ac-name=”" add-default-route=no allow=pap,chap,mschap1,mschap2 comment=”" \

dial-on-demand=no disabled=no interface=Spidol3 max-mru=1480 max-mtu=1480 \

mrru=disabled name=”******@telkom.net” password=”***” profile=default \

service-name=”" use-peer-dns=no user=”***”

add ac-name=”" add-default-route=no allow=pap,chap,mschap1,mschap2 comment=”" \

dial-on-demand=no disabled=no interface=Spidol4 max-mru=1480 max-mtu=1480 \

mrru=disabled name=”******@telkom.net” password=”***” profile=default \

service-name=”" use-peer-dns=no user=”***”

add ac-name=”" add-default-route=no allow=pap,chap,mschap1,mschap2 comment=”" \

dial-on-demand=no disabled=no interface=Spidol5 max-mru=1480 max-mtu=1480 \

mrru=disabled name=”******@telkom.net” password=”***” profile=default \

service-name=”" use-peer-dns=no user=”***”

Untuk manglenya jika ada 5 line berarti anda harus membuat 5 connection mark dan 5 route-mark totalnya ada 10 mangle.

Dengan nth sebagai berikut :

mangle 1: nth : 5,1
mangle 2: nth : 4,1
mangle 3: nth : 3,1
mangle 4: nth : 2,1
mangle 5: tidak disetting nth nya

logikanya begini:

mangle 1 membaca semua traffic dan match 1/5 traffic nya

mangle 2 membaca 4/5 traffic dan match 1/4 traffic nya (1/5 traffic total)

mangle 3 membaca 3/4 dari 4/5 traffic diatas (atau 3/5 traffic total) dan match 1/3 trafficnya (1/5 traffic total)

mangle 4 membaca 2/3 dari 3/5 traffic total (atau 2/5 traffic total) dan match 1/2 traffic diatas (1/5 traffic total)

mangle 5 membaca sisanya (1/5 traffic total)

seting manglenya :

/ip firewall mangle

add chain=prerouting action=mark-connection new-connection-mark=spidol1 \

passthrough=yes connection-state=new in-interface=Lokal nth=5,1 \

comment=”" disabled=no

add chain=prerouting action=mark-routing new-routing-mark=spidol1 passthrough=no \

in-interface=Lokal connection-mark=spidol1 comment=”" disabled=no

add chain=prerouting action=mark-connection new-connection-mark=spidol2 \

passthrough=yes connection-state=new in-interface=Lokal nth=4,1 \

comment=”" disabled=no

add chain=prerouting action=mark-routing new-routing-mark=spidol2 passthrough=no \

in-interface=Lokal connection-mark=spidol2 comment=”" disabled=no

add chain=prerouting action=mark-connection new-connection-mark=spidol3 \

passthrough=yes connection-state=new in-interface=Lokal nth=3,1 \

comment=”" disabled=no

add chain=prerouting action=mark-routing new-routing-mark=spidol3 passthrough=no \

in-interface=Lokal connection-mark=spidol3 comment=”" disabled=no

add chain=prerouting action=mark-connection new-connection-mark=spidol4 \

passthrough=yes connection-state=new in-interface=Lokal nth=2,1 \

comment=”" disabled=no

add chain=prerouting action=mark-routing new-routing-mark=spidol4 passthrough=no \

in-interface=Lokal connection-mark=spidol4 comment=”" disabled=no

add chain=prerouting action=mark-connection new-connection-mark=spidol5 \

passthrough=yes connection-state=new in-interface=Lokal \

comment=”" disabled=no

add chain=prerouting action=mark-routing new-routing-mark=spidol5 passthrough=no \

in-interface=Lokal connection-mark=spidol5 comment=”" disabled=no

* yang mangle ke 5 nth di kosongkan saja

Nat ip local anda,ada 2 cara yaitu srcnat dan masquerade,jika anda bingung cukup dengan satu rule masquarade aja dijamin menyelesaikan segalanya :

/ip firewall nat add chain : srcnat action=masquerade

Dengan srcnat :

/ip firewall nat

add chain=srcnat action=src-nat to-addresses=[IP-Speedy-1] to-ports=0-65535 \

connection-mark=spidol1 comment=”" disabled=no

add chain=srcnat action=src-nat to-addresses=[IP-Speedy-2] to-ports=0-65535 \

connection-mark=spidol2 comment=”" disabled=no

add chain=srcnat action=src-nat to-addresses=[IP-Speedy-3] to-ports=0-65535 \

connection-mark=spidol3 comment=”" disabled=no

add chain=srcnat action=src-nat to-addresses=[IP-Speedy-4] to-ports=0-65535 \

connection-mark=spidol4 comment=”" disabled=no

add chain=srcnat action=src-nat to-addresses=[IP-Speedy-5] to-ports=0-65535 \

connection-mark=spidol5 comment=”" disabled=no

Yang terakhir add route anda,ada 5 route disni karena kita pakai 5 speedy :

/ip route

add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=PPPoE-1 \

routing-mark=ADSL-1

add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=PPPoE-2 \

routing-mark=ADSL-2

add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=PPPoE-3 \

routing-mark=ADSL-3

add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=PPPoE-4 \

routing-mark=ADSL-4

add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=PPPoE-5 \

routing-mark=ADSL-5

add disabled=no distance=1 dst-address=0.0.0.0/0 gateway=PPPoE-1

* gateway disini tidak disi ip gateway dr speedy tapi diisi dengan interface saja

menu ini ada di winbox mikrotik v3




Hasilnya :





thanks to :

Akangage

www.forummikrotik.com

www.google.com

4. Tunning FreeBSD

masukan paramater ini ke dalam sysctl.conf :

kern.ipc.msgmax=163840
kern.ipc.msgmni=120
kern.ipc.msgmnb=32768
kern.ipc.msgssz=64
kern.ipc.msgseg=5120
kern.ipc.msgtql=2048

reboot bsd anda lalu cek satu2 parameternya dengan perintah :

“sysctl -a paramete-yg-modilihat”

jika ada parameter yg tidak berubah masukan parameter tsb di loader.conf

reboot bsd anda dan cek lagi parameter2 nya

3. Tunneling Using ipip Mikrotik

membuat tunnel 2 mikrotik yang memiliki ip 120.136.16.13 dan 202.182.48.133 dengan metode ipip tunnel dengan ip 10.0.0.1 dan 10.0.0.2 :

konfigurasi roter dengan ip 120.136.16.13 :

1. add IPIP interface

[batman@superman.thcomm.net.id] interface ipip>add local-address=120.136.16.13 \
remote-address=202.182.48.133 disabled=no

2. add ip address di interface IPIP

[batman@superman.thcomm.net.id]ip address>add address=10.0.0.1/24 interface=ipip1

konfigurasi roter dengan ip 202.182.48.133 :

1. add IPIP interface

[batman@superman.thcomm.net.id] interface ipip>add local-address=202.182.48.133 \
remote-address=120.136.16.13 disabled=no

2. add ip address di interface IPIP

[batman@spiderman.thcomm.net.id]ip address>add address=10.0.0.2/24 interface=ipip1

cek apakah sudah konek ato blum :

[batman@superman.thcomm.net.id] > ping 10.0.0.2
10.0.0.2 64 byte ping: ttl=64 time=41 ms
10.0.0.2 64 byte ping: ttl=64 time=43 ms
10.0.0.2 64 byte ping: ttl=64 time=43 ms
10.0.0.2 64 byte ping: ttl=64 time=49 ms
10.0.0.2 64 byte ping: ttl=64 time=37 ms
10.0.0.2 64 byte ping: ttl=64 time=44 ms
10.0.0.2 64 byte ping: ttl=64 time=64 ms

14 September 2008

2. Daftar Repo Debian

Daftar Repo Debian

Repo.ugm.ac.id
deb http://repo.ugm.ac.id/debian/ stable main contrib non-free

Kambing.ui.edu
deb http://kambing.ui.edu/debian etch main contrib non-free
deb http://kambing.ui.edu/debian etch/volatile main contrib non-free
deb http://kambing.ui.edu/debian-security etch/updates main contrib non-free

mirror.its.ac.id
deb http://mirror.its.ac.id/debian etch main non-free contrib
deb http://mirror.its.ac.id/debian stable-proposed-updates main non-free contrib
deb http://mirror.its.ac.id/debian-security etch/updates main non-free contrib

komo.vlsm.org
deb http://komo.vlsm.org/debian etch main non-free contrib
deb http://komo.vlsm.org/debian etch-proposed-updates main non-free contrib

debian.indika.net.id
deb http://debian.indika.net.id/debian etch main non-free contrib
deb http://debian.indika.net.id/debian etch-proposed-updates main non-free contrib

ftp://ftp.itb.ac.id
deb ftp://ftp.itb.ac.id/pub/debian etch main non-free contrib
deb ftp://ftp.itb.ac.id/pub/debian etch-proposed-updates main non-free contrib