Hukum memakai parfum yang mengandung alkohol

Menurut jumhur (mayoritas) fuqaha, seperti Syafi’i, Abu Hanifah, Malik, dan Ahmad, khamar adalah najis.[1] Jumhur ulama mendalilkan najis khamar berdasarkan antara lain firman Allah berbunyi :
يَا أَيُّهَا الَّذِينَ آمَنُوا إِنَّمَا الْخَمْرُ وَالْمَيْسِرُ وَالْأَنْصَابُ وَالْأَزْلَامُ رِجْسٌ مِنْ عَمَلِ الشَّيْطَانِ فَاجْتَنِبُوهُ لَعَلَّكُمْ تُفْلِحُونَ
Artinya : Hai orang-orang yang beriman, sesungguhnya khamar, berjudi, (berkorban untuk) berhala, mengundi nasib dengan panah adalah najis daripada perbuatan syaitan. Maka jauhilah perbuatan-perbuatan itu agar kamu mendapat keberuntungan.(Q.S. al-Maidah : 90)
Yang dimaksud dengan khamar adalah setiap benda cair yang memabukkan. Ini sesuai dengan hadist berbunyi :
 كُلُّ مُسْكِرٍ خَمْرٌ وَكُلُّ خَمْرٍ حَرَامٌ
Artinya : Setiap yang memabukkan adalah khamar dan setiap khamar adalah haram (H.R. Muslim)[2]
            Apabila suatu benda cair disebut sebagai sesuatu yang memabukkan, apabila banyaknya memabukkan, maka sedikitnya juga haram, karena najisnya tidak hilang dengan sebab sedikit ukurannya. Nabi SAW bersabda :
مَا أَسْكَرَ كَثِيْرُهُ فَقَلِيْلُهُ حَرَامٌ                                                                      
Artinya : Sesuatu yang banyaknya memabukkan, maka sedikitnyapun haram. (H.R. Abu Daud, At-Turmidzi dan Ibnu Majah, Turmidzi mengatakan : hadist hasan)[3]

Berdasarkan keterangan di atas, dapat disimpulkan sebagai berikut :
1.        Minuman keras memabukkan adalah najis
2.        Banyak dan sedikit, hukumnya sama saja, yaitu haram dan najis.

Lalu bagaimana dengan parfum yang mengandung alkohol ? apakah ia termasuk dalam katagori yang memabukkan, sehingga ia dianggap benda najis atau tidak ? lalu apa itu alkohol ?, maka mari kita ikuti tulisan yang dimuat di Republika Online/Rabu, 10 Desember 2008, 21:32 WIB dengan judul “Memosisikan Secara Tepat Alkohol dalam Parfum” yang isi tulisannya sebagai berikut :
Parfum telah karib dalam kehidupan kita. Ia menjadi salah satu penunjang kepercayaan diri ketika kita tampil di tengah khalayak. Sebab parfum memancarkan wewangian hingga orang betah berada di dekat kita dibandingkan jika mereka menghirup bau tak sedap dari tubuh kita. Tapi, tak jarang bagi sebagian kalangan umat Islam, parfum masih menyisakan masalah. Status kehalalannya diliputi tanda tanya karena banyak parfum di pasaran mengandung alkohol. Tak heran jika kemudian banyak produsen atau pedagang yang menawarkan parfum non alkohol. 
Bahan konsumsi 
Hingga kini masalah parfum beralkohol masih tetap menjadi pembicaraan. Masih ada keraguan apakah memang diperbolehkan menggunakan parfum yang mengandung alkohol atau tidak. Keraguan ini memang memerlukan penjelasan yang tuntas. Menurut Anton Apriyantono, dosen Teknologi Pangan dan Gizi IPB menyatakan bahwa dalam kaidah fikih pada dasarnya semua makanan dan minuman itu halal. Kecuali yang secara jelas diharamkan berdasarkan Alquran dan hadis yang sahih. Dengan demikian, katanya, apa yang tak diharamkan tentunya hukumnya adalah halal. Dalam kasus khamar yang diharamkan adalah segala sesuatu yang bersifat memabukkan. Ini, dalam konteks bahan-bahan yang dikonsumsi seperti minuman keras. Sedangkan bahan-bahan lain yang tidak normal dikonsumsi seharusnya tak dikenai hukum. Misalnya bahan-bahan kimia atau solven organik yang terdapat di dalam parfum. ''Karena alkohol yang menjadi solven organik dalam parfum tidak dikonsumsi,'' katanya. Ia menyatakan jika bahan-bahan kimia itu dikonsumsi maka akan menimbulkan kematian. Hal yang sama juga berlaku bagi bahan kimia lain yang digunakan dalam parfum. Jika bahan-bahan ini dikonsumsi juga akan menyebabkan kematian. Menurut Anton, masih terdapat kegamangan tentang hukum alkohol yang ada di dalam parfum akibat masyarakat sering menyamakan antara khamar dan alkohol. Padahal keduanya berbeda. Ia menyatakan bahwa alkohol atau etanol adalah bahan kimia yang tidak dikonsumsi. Sedangkan khamar biasanya dikonsumsi. Ia mengakui alkohol memang ada di dalam minuman keras. Ia adalah salah satu saja bentuk dari khamar. Akan tetapi alkohol tak terdapat di dalam narkoba semacam morfin. Padahal morfin adalah khamar juga. Tak semata alkohol
Anton yang juga auditor LP POM MUI ini menyatakan, yang menyebabkan suatu minuman keras bersifat memabukkan bukan hanya akibat keberadaan alkohol atau etanol. Namun, semua bahan yang ada di dalam minuman keras tersebut. Jika alkohol haram lalu mengapa bahan lainnya tak dinyatakan haram? Padahal bahan-bahan kimia lain semacam asetanilda, propanol, butanil, dan metanol yang normal ada di dalam minuman keras bersifat lebih toksik dibandingkan etanol. Meski ia mengakui bahwa kadar alkohol menjadi ukuran apakah suatu minuman termasuk minuman keras atau bukan. Hal tersebut dilakukan hanya untuk memudahkan dalam penetapan apakah suatu minuman tergolong minuman keras. Namun, tambah Anton, bukan samata-mata keberadaan alkohol yang menyebabkan sesuatu itu diharamkan. Jika demikian maka segala sesuatu yang mengandung alkohol adalah haram. Sebab, buah-buahan, roti, cuka maupun kecap juga mengandung alkohol padahal masyarakat tahu bahwa semua itu hukumnya halal. ''Kita tak bisa mengatakan bahwa alkohol dalam buah-buahan itu halal namun alkohol dalam parfum haram. Padahal zat dan sifatnya sama,'' tandasnya. Oleh karenanya, soal keberadaan alkohol di dalam parfum Anton menyarankan untuk mengembalikannya kepada hukum yang berasal dari Alquran dan hadis. Di sisi lain, mestinya masyarakat melihat segalanya secara menyeluruh terutama terkait dengan konteks. Misalnya, mereka harus tahu bahwa konteks khamar adalah sesuatu yang dikonsumsi. (fer/dokrep/September 2004)
Dari tulisan di atas dapat dicatat sebagai berikut :
1.    Yang menjelaskan pengertian alkohol dan proses pembuatannya serta proses pembuatan minuman keras pada tulisan yang dimuat di Republika Online di atas adalah Anton Apriyantono. Beliau ini adalah dosen Teknologi Pangan dan Gizi IPB dan juga sebagai auditor LP POM MUI. Melihat profesi beliau tersebut menurut hemat kami, layak beliau dijadikan rujukan dalam memahami pengertian alkohol dan proses pembuatannya serta proses pembuatan minuman keras.
2.    Berdasarkan penjelasan Anton Apriyantono di atas, dapat disimpulkan sebagai berikut :
-          Minuman keras memabukkan tidak identik dengan alkohol
-          Alkohol bukan untuk dikosumsikan, karena dapat menyebabkan kematian, sedang minuman keras memabukkan untuk dikosumsikan.
-          Alkohol hanya salah satu unsur dalam minuman yang memabukkan. Unsur yang lain adalah asetanilda, propanol, butanil, dan metanol yang normal. Jadi sesuatu benda dapat menjadi yang memabukkan memerlukan beberapa unsur lain selain unsur alkohol.
-          Kadar/jumlah alkohol menjadi ukuran apakah suatu minuman termasuk minuman keras atau bukan.
-          Ada makanan yang mengandung alkohol, tetapi dikenal sebagai makanan yang halal seperti buah-buahan, kecap, roti dan cuka. (tambahan dari penulis : berdasarkan beberapa tulisan lain yang kami ikuti, buah-buahan seperti durian dan tape mengandung alkohol yang presentasenya tinggi)
-          Alkohol yang menjadi solven organik dalam parfum tidak dikonsumsi, jika bahan-bahan kimia itu dikonsumsi tidak memabukkan, tetapi akan menimbulkan kematian.

Memperhatikan penjelasan di atas maka dalam kasus penggunaan parfum yang mengandung alkohol, dapat disimpulkan sebagai berikut :
a.       Salah satu yang menyebabkan sesuatu divonis sebagai najis adalah apabila benda itu memabukkan, bukan karena semata-mata mengandung alkohol
b.      Seandainya penjelasan dari Anton Apriyantono di atas benar, maka dapat disimpulkan bahwa boleh memakai parfum yang mengandung alkohol, karena alkohol yang ada dalam parfum bukan benda cair yang memabukkan, tetapi hanya salah satu unsur yang diperlukan dalam membuat benda cair yang memabukkan, karena itu parfum tersebut bukan najis. Ini selama parfum tersebut tidak mengandung unsur-unsur najis lain, seperti minyak babi atau benda najis lainnya


[1] Al-Nawawi, Majmu’ Syarh al-Muhazzab, Maktabah al-Irsyad, Jeddah, Juz. II, Hal. 581
[2] Imam Muslim, Shahih Muslim, Maktabah Syamilah, Juz. VI, Hal. 101, No. Hadits : 5339
[3] Ibnu Mulaqqan, Badrul Munir, Maktabah Syamilah, Juz. VIII, Hal. 701,

link :http://kitab-kuneng.blogspot.com/2012/10/hukum-memakai-parfum-yang-mengandung.html

PR0XY

# Update & upgrade repositor #
==============================
apt-get update  apt-get upgrade -y  apt-get dist-upgrade -y  apt-get install squid -y  apt-get install squid squidclient squid-cgi -y  apt-get install gcc -y  apt-get install build-essential -y  apt-get install sharutils -y  apt-get install ccze -y  apt-get install libzip-dev -y  apt-get install automake1.9 -y  apt-get install acpid  apt-get install multitail
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
wget http://squidmon.googlecode.com/svn/trunk/squidmon.py
sudo chmod +x squidmon.py
wget http://www.pixelbeat.org/scripts/ps_mem.py
sudo chmod +x ps_mem.py
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
wget http://proxy-ku.googlecode.com/files/LUSCA_FMI.tar.gz
tar xzvf LUSCA_FMI.tar.gz
cd LUSCA_FMI/
./bootstrap.sh
mkdir /usr/local/etc/local
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
make distclean


CHOST="i686-pc-linux-gnu"
CFLAGS="-march=pentium4 -O2 -pipe -fomit-frame-pointer"
CXXFLAGS="${CFLAGS}"

./configure --prefix=/usr --exec_prefix=/usr --bindir=/usr/sbin --sbindir=/usr/sbin --libexecdir=/usr/lib/squid --sysconfdir=/etc/squid --localstatedir=/var/spool/squid --datadir=/usr/share/squid --enable-http-gzip --enable-async-io=24 --with-aufs-threads=24 --with-pthreads --enable-storeio=aufs --enable-linux-netfilter --enable-arp-acl --enable-epoll --enable-removal-policies=heap --with-aio --with-dl --enable-snmp --enable-delay-pools --enable-htcp --enable-cache-digests --disable-unlinkd --enable-large-cache-files --with-large-files --enable-err-languages=English --enable-default-err-language=English --with-maxfd=65536
make
make install
cd /
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
mkdir cache

squid stop

squid start

chmod +x /etc/init.d/squid

/etc/init.d/squid stop

chmod +x /etc/init.d/squid

chown proxy:proxy /etc/squid/squid.conf

sudo chown proxy:proxy /etc/squid/storeurl.pl

sudo chown proxy:proxy /var/log/squid/access.log

sudo chown proxy:proxy /var/log/squid/cache.log

sudo chmod 777 /etc/squid/storeurl.pl

chown proxy:proxy /cache1

chown proxy:proxy /cache2

sudo chmod 777 /cache1

sudo chmod 777 /cache2

sudo squid -k parse

squid -f /etc/squid/squid.conf -z
sudo update-rc.d squid defaults

sudo squid restart

reboot
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
sudo nano /etc/rc.local
Ketikan skrip berikut sebelum baris exit 0
iptables –t nat –A PREROUTING –p tcp –s 192.168.88.0/24 – -dport 80 –j REDIRECT – -to-port 3128
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
http://www.whatismyip.com/
sudo squid -k reconfigure
squid -N -d 1 -D
tail -f /var/log/squid/access.log | ccze

/ip firewall nat add chain=dstnat src-address=!192.168.100.0/24 protocol=tcp dst-port=80 action=dst-nat to-address=192.168.100.100 to-ports=3128

/ip firewall nat add action=dst-nat chain=dstnat comment="REDIRECT KE PROXY" disabled=no dst-port=80,8080,3128 in-interface=ether2-master-local protocol=tcp dst-address=!192.168.100.1 to-addresses=192.168.100.1 to-ports=3128

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+     INSTALL UNBOUND    =+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

apt-get install unbound -y  cd /etc/unbound  wget  ftp://FTP.INTERNIC.NET/domain/named.cache  unbound-control-setup  chown unbound:root unbound_*  chmod 440 unbound_*
File "unbound.conf" ke /etc/unbound/

unbound-control status
unbound-control stats
/etc/init.d/unbound restart

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=    MENGHAPUS CACHE     +=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
/etc/init.d/squid stop
rm -rf /cache1/*
rm -rf /cache2/*
squid -z
service squid start
squid -N -d 1 -D


squid -f /etc/squid/squid.conf -z  /etc/init.d/squid restart
tail -f /var/log/squid/access.log | ccze

Matikan atau stop service squid : service squid stop
Hapus cache squid : rm -fdR /var/spool/squid/*
Aktifkan kembali direktori squid : squid -z
Jalankan squid : service squid start

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=    MENGHAPUS CACHE     +=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
squid -N -d 1 -D
commBind: Cannot bind socket FD 16 family 2 to 0.0.0.0 port 3128: (98) Address already in use

ps ax | grep squid atau ps ax | grep 3128 , kill no_pid
atau
killall -9 squid
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=    MENGHAPUS CACHE     +=+=+=+=+=+=+=+=+=+=+=
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

MT + LUSCA

/interface set 0 name=speedy1 \
;/interface set 1 name=speedy2 \
;/interface set 2 name=proxy \
;/interface set 3 name=local \
;/interface set 4 name=hotspot

/ip address
add address=192.168.1.1/24 network=192.168.1.0 broadcast=192.168.1.255 interface=speedy1
add address=192.168.2.1/24 network=192.168.2.0 broadcast=192.168.2.255 interface=speedy2
add address=192.168.3.1/24 network=192.168.3.0 broadcast=192.168.3.255 interface=proxy
add address=192.168.88.1/24 network=192.168.88.0 broadcast=192.168.88.255 interface=local
add address=192.168.5.1/24 network=192.168.5.0 broadcast=192.168.5.255 interface=hotspot

/system ntp client \
set enabled=yes mode=unicast \
primary-ntp=152.118.24.8 \
secondary-ntp=202.169.224.16


/system note \
set note=saidbasyar \
show-at-login=yes


/ip dns set allow-remote-requests=yes cache-max-ttl=1w cache-size=5000KiB max-udp-packet-size=512 servers=221.132.112.8,8.8.8.8

/ip firewall nat
add chain=srcnat out-interface=speedy1 action=masquerade

/ip route
add dst-address=0.0.0.0/0 gateway=192.168.1.1 distance=1 check-gateway=ping

/ip pool add name=dhcp-pool ranges=192.168.88.100-192.168.88.200
/ip dhcp-server network add address=192.168.88.0/24 gateway=192.168.88.1 address pool pool
/ip dhcp-server add interface=WAN-1 address-pool=dhcp-pool
/ip dhcp-client add interface=WAN-1 use-peer-dns=yes add-default-route=yes disabled=no

/ip firewall nat add chain=dstnat src-address=!192.168.100.0/24 protocol=tcp dst-port=80 action=dst-nat to-address=192.168.100.100 to-ports=3128 comment="TRANSPARENT PROXY"

/ip firewall mangle
add action=mark-packet chain=postrouting comment="SQUID PROXY HIT taruh di atas" dscp=12 new-packet-mark="saidbypasshit SPH" passthrough=no

/queue type
add kind=pcq name="PROXY DOWN" pcq-burst-rate=0 pcq-burst-threshold=0 pcq-burst-time=10s pcq-classifier=src-address,dst-address,src-port,dst-port pcq-dst-address-mask=32 pcq-dst-address6-mask=128 pcq-limit=50 pcq-rate=0 pcq-src-address-mask=32 pcq-src-address6-mask=128 pcq-total-limit=2000
add kind=pcq name=DOWN pcq-burst-rate=0 pcq-burst-threshold=0 pcq-burst-time=5s pcq-classifier=dst-address,dst-port pcq-dst-address-mask=32 pcq-dst-address6-mask=128 pcq-limit=50 pcq-rate=0 pcq-src-address-mask=32 pcq-src-address6-mask=128 pcq-total-limit=2000
add kind=pcq name=UP pcq-burst-rate=0 pcq-burst-threshold=0 pcq-burst-time=10s pcq-classifier=src-address,src-port pcq-dst-address-mask=32 pcq-dst-address6-mask=128 pcq-limit=50 pcq-rate=0 pcq-src-address-mask=32 pcq-src-address6-mask=128 pcq-total-limit=512
add kind=pfifo name=PING pfifo-limit=64
add kind=pcq name=DLL pcq-burst-rate=0 pcq-burst-threshold=0 pcq-burst-time=10s pcq-classifier=src-address,dst-address,src-port,dst-port pcq-dst-address-mask=32 pcq-dst-address6-mask=64 pcq-limit=50 pcq-rate=0 pcq-src-address-mask=32 pcq-src-address6-mask=64 pcq-total-limit=2000
add kind=pcq name=HTTPS pcq-burst-rate=0 pcq-burst-threshold=0 pcq-burst-time=10s pcq-classifier=src-address,dst-address,src-port,dst-port pcq-dst-address-mask=32 pcq-dst-address6-mask=64 pcq-limit=50 pcq-rate=0 pcq-src-address-mask=32 pcq-src-address6-mask=64 pcq-total-limit=2000


/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=80M max-limit=80M name="1.PROXY HIT" packet-mark="saidbypasshit SPH" parent=local priority=2 queue="PROXY DOWN"

###############
LIMIT EXTENTION
###############


ip firewall layer7-protocol add comment="" name=" http-video \" .exe \""
regexp="\\. http/(0\.9|1\.0|1\.1)[\x09-\x0d ][1-5][0-9][0-9][\x09-\x0d -~]*(content-type: video)"

ip firewall layer7-protocol add comment="" name="Extension \" .exe \"" regexp="\\.(exe)"
ip firewall layer7-protocol add comment="" name="Extension \" .rar \"" regexp="\\.(rar)"
ip firewall layer7-protocol add comment="" name="Extension \" .zip \"" regexp="\\.(zip)"
ip firewall layer7-protocol add comment="" name="Extension \" .7z \"" regexp="\\.(7z)"
ip firewall layer7-protocol add comment="" name="Extension \" .cab \"" regexp="\\.(cab)"
ip firewall layer7-protocol add comment="" name="Extension \" .asf \"" regexp="\\.(asf)"
ip firewall layer7-protocol add comment="" name="Extension \" .mov \"" regexp="\\.(mov)"
ip firewall layer7-protocol add comment="" name="Extension \" .wmv \"" regexp="\\.(wmv)"
ip firewall layer7-protocol add comment="" name="Extension \" .mpg \"" regexp="\\.(mpg)"
ip firewall layer7-protocol add comment="" name="Extension \" .mpeg \"" regexp="\\.(mpeg)"
ip firewall layer7-protocol add comment="" name="Extension \" .mkv \"" regexp="\\.(mkv)"
ip firewall layer7-protocol add comment="" name="Extension \" .avi \"" regexp="\\.(avi)"
ip firewall layer7-protocol add comment="" name="Extension \" .flv \"" regexp="\\.(flv)"
ip firewall layer7-protocol add comment="" name="Extension \" .wav \"" regexp="\\.(wav)"
ip firewall layer7-protocol add comment="" name="Extension \" .rm \"" regexp="\\.(rm)"
ip firewall layer7-protocol add comment="" name="Extension \" .mp3 \"" regexp="\\.(mp3)"
ip firewall layer7-protocol add comment="" name="Extension \" .mp4 \"" regexp="\\.(mp4)"
ip firewall layer7-protocol add comment="" name="Extension \" .ram \"" regexp="\\.(ram)"
ip firewall layer7-protocol add comment="" name="Extension \" .rmvb \"" regexp="\\.(rmvb)"
ip firewall layer7-protocol add comment="" name="Extension \" .dat \"" regexp="\\.(dat)"
ip firewall layer7-protocol add comment="" name="Extension \" .daa \"" regexp="\\.(daa)"
ip firewall layer7-protocol add comment="" name="Extension \" .iso \"" regexp="\\.(iso)"
ip firewall layer7-protocol add comment="" name="Extension \" .nrg \"" regexp="\\.(nrg)"
ip firewall layer7-protocol add comment="" name="Extension \" .bin \"" regexp="\\.(bin)"
ip firewall layer7-protocol add comment="" name="Extension \" .vcd \"" regexp="\\.(vcd)"

/ip firewall mangle add action=mark-packet chain=prerouting comment="http-video mark-packet" disabled=no layer7-protocol=http-video new-packet-mark=http-video passthrough=no

/ip firewall mangle add action=mark-connection chain=prerouting comment="7z DOWNS" disabled=no layer7-protocol="Extension \" .7z \"" new-connection-mark="7z DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="7z DOWNS" disabled=no new-packet-mark=7z passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="asf DOWNS" disabled=no layer7-protocol="Extension \" .asf \"" new-connection-mark="asf DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="asf DOWNS" disabled=no new-packet-mark=asf passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="avi DOWNS" disabled=no layer7-protocol="Extension \" .avi \"" new-connection-mark="avi DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="avi DOWNS" disabled=no new-packet-mark=avi passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="bin DOWNS" disabled=no layer7-protocol="Extension \" .bin \"" new-connection-mark="bin DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="bin DOWNS" disabled=no new-packet-mark=bin passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="flv DOWNS" disabled=no layer7-protocol="Extension \" .flv \"" new-connection-mark="flv DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="flv DOWNS" disabled=no new-packet-mark=flv passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="iso DOWNS" disabled=no layer7-protocol="Extension \" .iso \"" new-connection-mark="iso DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark= "iso DOWNS" disabled=no new-packet-mark=iso passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="mkv DOWNS" disabled=no layer7-protocol="Extension \" .mkv \"" new-connection-mark="mkv DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="mkv DOWNS" disabled=no new-packet-mark=mkv passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="exe DOWNS" disabled=no layer7-protocol="Extension \" .exe \"" new-connection-mark="exe DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="exe DOWNS" disabled=no new-packet-mark=exe passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="mov DOWNS" disabled=no layer7-protocol="Extension \" .mov \"" new-connection-mark="mov DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="mov DOWNS" disabled=no new-packet-mark=mov passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="mp3 DOWNS" disabled=no layer7-protocol="Extension \" .mp3 \"" new-connection-mark="mp3 DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="mp3 DOWNS" disabled=no new-packet-mark=mp3 passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="mp4 DOWNS" disabled=no layer7-protocol="Extension \" .mp4 \"" new-connection-mark="mp4 DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="mp4 DOWNS" disabled=no new-packet-mark=mp4 passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="mpeg DOWNS" disabled=no layer7-protocol="Extension \" .mpeg \"" new-connection-mark="mpeg DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="mpeg DOWNS" disabled=no new-packet-mark=mpeg passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="mpg DOWNS" disabled=no layer7-protocol="Extension \" .mpg \"" new-connection-mark="mpg DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="mpg DOWNS" disabled=no new-packet-mark=mpg passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="nrg DOWNS" disabled=no layer7-protocol="Extension \" .nrg \"" new-connection-mark="nrg DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="nrg DOWNS" disabled=no new-packet-mark=nrg passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="ram DOWNS" disabled=no layer7-protocol="Extension \" .ram \"" new-connection-mark="ram DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="ram DOWNS" disabled=no new-packet-mark=ram passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="rar DOWNS" disabled=no layer7-protocol="Extension \" .rar \"" new-connection-mark="rar DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="rar DOWNS" disabled=no new-packet-mark=rar passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="rm DOWNS" disabled=no layer7-protocol="Extension \" .rm \"" new-connection-mark="rm DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="rm DOWNS" disabled=no new-packet-mark=rm passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="rmvb DOWNS" disabled=no layer7-protocol="Extension \" .rmvb \"" new-connection-mark="rmvb DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="rmvb DOWNS" disabled=no new-packet-mark=rmvb passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="wav DOWNS" disabled=no layer7-protocol="Extension \" .wav \"" new-connection-mark="wav DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="wav DOWNS" disabled=no new-packet-mark=wav passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="wma DOWNS" disabled=no layer7-protocol="Extension \" .wma \"" new-connection-mark="wma DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="wma DOWNS" disabled=no new-packet-mark=wma passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="wmv DOWNS" disabled=no layer7-protocol="Extension \" .wmv \"" new-connection-mark="wmv DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="wmv DOWNS" disabled=no new-packet-mark=wmv passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="zip DOWNS" disabled=no layer7-protocol="Extension \" .zip \"" new-connection-mark="zip DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="zip DOWNS" disabled=no new-packet-mark=zip passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="youtube DOWNS" disabled=no layer7-protocol="YouTube " new-connection-mark="youtube DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="youtube DOWNS" disabled=no new-packet-mark=youtube passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="daa DOWNS" disabled=no layer7-protocol="Extension \" .daa \"" new-connection-mark="daa DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="daa DOWNS" disabled=no new-packet-mark=daa passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="dat DOWNS" disabled=no layer7-protocol="Extension \" .dat \"" new-connection-mark="dat DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="dat DOWNS" disabled=no new-packet-mark=dat passthrough=no protocol=tcp


/ip firewall mangle add action=mark-connection chain=prerouting comment="vcd DOWNS" disabled=no layer7-protocol="Extension \" .vcd \"" new-connection-mark="vcd DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="vcd DOWNS" disabled=no new-packet-mark=vcd passthrough=no protocol=tcp

/ip firewall mangle add action=mark-connection chain=prerouting comment="cab DOWNS" disabled=no layer7-protocol="Extension \" .cab \"" new-connection-mark="cab DOWNS" passthrough=yes protocol=tcp
/ip firewall mangle add action=mark-packet chain=postrouting comment="" connection-mark="cab DOWNS" disabled=no new-packet-mark=cab passthrough=no protocol=tcp

queue simple add name="youtube" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=http-video direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=100k/100k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="exe" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=exe direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="rar" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=rar direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="zip" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=zip direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="7z" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=7z direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="cab" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=cab direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="asf" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=asf direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="mov" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=mov direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="wmv" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=wmv direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="mpg" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=mpg direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="mpeg" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=mpeg direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="mkv" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=mkv direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="avi" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=avi direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="flv" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=flv direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="wav" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=wav direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="rm" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=rm direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="mp3" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=mp3 direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="mp4" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=mp4 direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="ram" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=ram direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="rmvb" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=rmvb direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="dat" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=dat direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="daa" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=daa direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="iso" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=iso direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="nrg" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=nrg direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="bin" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=bin direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small
queue simple add name="vcd" dst-address=0.0.0.0/0 interface=all parent=none packet-marks=vcd direction=both priority=8 queue=default-small/default-small limit-at=0/0 max-limit=32k/32k burst-limit=0/0 burst-threshold=0/0 burst-time=0s/0s total-queue=default-small



###############
BANDWITH AUTO
###############
/ip firewall mangle
add action=mark-connection chain=prerouting comment=HTTP disabled=no dst-port=80 in-interface=proxy new-connection-mark="saidproxy.com HTTP" passthrough=yes protocol=tcp
add action=mark-packet chain=postrouting connection-mark="saidproxy.com HTTP" disabled=no dst-address=192.168.100.0/24 new-packet-mark="saidproxy.com HTTP D" passthrough=no
add action=mark-packet chain=postrouting connection-mark="saidproxy.com HTTP" disabled=no new-packet-mark="saidproxy.com HTTP U" passthrough=no src-address=192.168.100.0/24
###########################################
stabilkan ping jika koneksi padat dan DNS
##########################################
/ip firewall mangle
add action=mark-connection chain=prerouting comment=ICMP new-connection-mark="saidproxy.com I" passthrough=yes protocol=icmp
add action=change-dscp chain=prerouting connection-mark="saidproxy.com I" new-dscp=1 passthrough=yes
add action=mark-packet chain=prerouting connection-mark="saidproxy.com I" new-packet-mark="saidproxy.com I" passthrough=no
add action=mark-connection chain=prerouting comment=DNS dst-port=53 new-connection-mark="saidproxy.com D" passthrough=yes protocol=tcp
add action=mark-connection chain=prerouting dst-port=53 new-connection-mark="saidproxy.com D" passthrough=yes protocol=udp
add action=change-dscp chain=prerouting connection-mark="saidproxy.com D" new-dscp=1 passthrough=yes
add action=mark-packet chain=prerouting connection-mark="saidproxy.com D" new-packet-mark="saidproxy.com D" passthrough=no

####################
scripts Https
###################
/ip firewall mangle
add action=mark-connection chain=postrouting comment=HTTPS disabled=no dst-port=443 new-connection-mark="saidproxy H" passthrough=yes protocol=tcp
add action=mark-packet chain=postrouting connection-mark="saidproxy H" disabled=no new-packet-mark="saidproxy H" passthrough=no

/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=2M name=C.HTTPS packet-mark="saidproxy H" parent="global-in" priority=2 queue=HTTPS

/queue tree
add burst-limit=0 burst-threshold=0 burst-time=0s disabled=no limit-at=0 max-limit=2M name=C.HTTPS packet-mark="saidproxy H" priority=2 queue=HTTPS

####################
ANTIVIRUS & SACANNER
###################

/ip firewall filter
add action=accept chain=input disabled=no dst-port=8291 protocol=tcp
add action=drop chain=forward connection-state=invalid disabled=no
add action=drop chain=virus disabled=no dst-port=135-139 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1433-1434 protocol=tcp
add action=drop chain=virus disabled=no dst-port=445 protocol=tcp
add action=drop chain=virus disabled=no dst-port=445 protocol=udp
add action=drop chain=virus disabled=no dst-port=593 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1024-1030 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1080 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1214 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1363 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1364 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1368 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1373 protocol=tcp
add action=drop chain=virus disabled=no dst-port=1377 protocol=tcp
add action=drop chain=virus disabled=no dst-port=2745 protocol=tcp
add action=drop chain=virus disabled=no dst-port=2283 protocol=tcp
add action=drop chain=virus disabled=no dst-port=2535 protocol=tcp
add action=drop chain=virus disabled=no dst-port=2745 protocol=tcp
add action=drop chain=virus disabled=no dst-port=3127 protocol=tcp
add action=drop chain=virus disabled=no dst-port=3410 protocol=tcp
add action=drop chain=virus disabled=no dst-port=4444 protocol=tcp
add action=drop chain=virus disabled=no dst-port=4444 protocol=udp
add action=drop chain=virus disabled=no dst-port=5554 protocol=tcp
add action=drop chain=virus disabled=no dst-port=8866 protocol=tcp
add action=drop chain=virus disabled=no dst-port=9898 protocol=tcp
add action=drop chain=virus disabled=no dst-port=10080 protocol=tcp
add action=drop chain=virus disabled=no dst-port=12345 protocol=tcp
add action=drop chain=virus disabled=no dst-port=17300 protocol=tcp
add action=drop chain=virus disabled=no dst-port=27374 protocol=tcp
add action=drop chain=virus disabled=no dst-port=65506 protocol=tcp
add action=jump chain=forward disabled=no jump-target=virus
add action=drop chain=input connection-state=invalid disabled=no
add action=accept chain=input disabled=no protocol=udp
add action=accept chain=input disabled=no limit=50/5s,2 protocol=icmp
add action=drop chain=input disabled=no protocol=icmp
add action=accept chain=input disabled=no dst-port=21 protocol=tcp
add action=accept chain=input disabled=no dst-port=22 protocol=tcp
add action=accept chain=input disabled=no dst-port=23 protocol=tcp
add action=accept chain=input disabled=no dst-port=80 protocol=tcp
add action=accept chain=input disabled=no dst-port=8291 protocol=tcp
add action=accept chain=input disabled=no dst-port=1723 protocol=tcp
add action=accept chain=input disabled=no dst-port=23 protocol=tcp
add action=accept chain=input disabled=no dst-port=80 protocol=tcp
add action=accept chain=input disabled=no dst-port=1723 protocol=tcp
add action=add-src-to-address-list address-list=DDOS address-list-timeout=15s chain=input disabled=no dst-port=1337 protocol=tcp
add action=add-src-to-address-list address-list=DDOS address-list-timeout=15m chain=input disabled=no dst-port=7331 protocol=tcp src-address-list=knock
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="Port scanners to list " disabled=no protocol=tcp psd=21,3s,3,1
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="SYN/FIN scan" disabled=no protocol=tcp tcp-flags=fin,syn
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="SYN/RST scan" disabled=no protocol=tcp tcp-flags=syn,rst
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="FIN/PSH/URG scan" disabled=no protocol=tcp tcp-flags=fin,psh,urg,!syn,!rst,!ack
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="ALL/ALL scan" disabled=no protocol=tcp tcp-flags=fin,syn,rst,psh,ack,urg
add action=add-src-to-address-list address-list="port scanners" address-list-timeout=2w chain=input comment="NMAP NULL scan" disabled=no protocol=tcp tcp-flags=!fin,!syn,!rst,!psh,!ack,!urg
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=61.213.183.1-61.213.183.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=67.195.134.1-67.195.134.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=68.142.233.1-68.142.233.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=68.180.217.1-68.180.217.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=203.84.204.1-203.84.204.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=69.63.176.1-69.63.176.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=69.63.181.1-69.63.181.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=63.245.209.1-63.245.209.254
add action=accept chain=input comment="ANTI NETCUT" disabled=no dst-port=0-65535 protocol=tcp src-address=63.245.213.1-63.245.213.254

Mengatasi Yahoo messenger blank message

Mengatasi Yahoo messenger blank message

Mungkin pernah diantara Anda mengalami apa yang dulu saya pernah alami, ketika mengirim pesan lewat yahoo messenger tulisan kita tidak muncul atau tidak terlihat padahal ketika kita mengetik pesan di kotak chat tulisan terlihat tapi ketika di-send tulisan tidak muncul/tidak terlihat di layar chat atas? atau ketika seseorang mengirim pesan chat ke ID kita yang muncul hanya kotak chat tanpa terlihat satu pun teks di sana? dan mungkin satu²nya tulisan yg bisa terlihat adalah ketika kita menekan tombol BUZZ?
Kita dapat mengatasinya dengan mengetikkan script berikut di run command, (Sign Out dulu dari yahoo messenger Anda sebelum mengetikkan script berikut).
regsvr32 wshom.ocx  
regsvr32 jscript.dll
regsvr32 urlmon.dll
regsvr32 c:\Windows\System32\vbscript.dll
Jika Anda bingung karena belum pernah menggunakan run command sebelumnya, berikut petunjuk langkah² yang lebih detailnya:
  1. Klik Start Menu
  2. Klik Run
  3. Ketikkan regsvr32 wshom.ocx
  4. Tekan Enter
  5. Ketikkan regsvr32 jscript.dll
  6. Tekan Enter
  7. Ketikkan regsvr32 urlmon.dll
  8. Tekan Enter
  9. Ketikkan regsvr32 c:\Windows\System32\vbscript.dll
  10. Tekan Enter
Silakan Sign In kembali ke Yahoo Messenger Anda. Seharusnya teks sudah bisa terlihat kembali :D
Selain cara diatas ada metode lain dengan cara melakukan pengecekan pada setting browser Internet Explorer, yaitu dengan cara:
  1. Buka/klik Internet Explorer
  2. Klik menu “Tools” pada toolbar Internet Explorer kemudian pilih “Internet Options”
  3. Klik tab “Security”
  4. Klik icon internet bergambar globe bola dunia (secara default sudah terpilih)
  5. Klik tombol “Custom Level” dibawah
  6. Geser/scroll ke bawah, cari “Scripting”
  7. Enable semuanya ke-tiga²-nya (Active scripting, Allow paste operations via script, Scripting of Java applets)
  8. Klik tombol “OK” di bawah.
  9. Selesai
  10. Sign In ke Yahoo Messenger
Cara lain yang saya tahu bisa berhasil adalah dengan install ulang IE (Internet Explorer) atau meng-upgrade-nya ke versi terbaru.
Atau coba cara ini, dengan melakukan editing pada registry:
  1. Buka Regedit (Klik: Start menu -> pilih: Run.. –> ketik: regedit -> tekan: Enter)
  2. Cari/find: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones
  3. Hapus folder ‘kotak’ sedangkan folder 01234 dibiarkan saja (seperti pada gambar di bawah).
  4. Tutup Regedit.
  5. Restart komputer.
Hapus folder di registry
Semoga bisa membantu :) 

Sumber: http://omot.wordpress.com/2009/07/09/mengatasi-yahoo-messenger-blank/

Jika langkah diatas masih belum bisa mengatasi coba uninstall YM anda lalu instal java ke versi yang terbaru (dapat di download pada websitenya di java.com) setelah itu baru instal ulang YM anda. Saya coba berhasil. semoga anda juga sama berhasilnya.

mikrotikq

1. Koneksi dari winbox
1. Setting password
    password

2. Mengganti nama mikrotik
    #sytem identity set name=SAIDPROXY

3. Mengaktifkan interface dan menggenti nama Interfaces
    #interface ethernet enable=ether1
    #interface ethernet enable=ether2
    #interface ethernet enable=ether3
    interface ethernet set ether1 name=LOKAL
    interface ethernet set ether2 name=INTERNET
    interface ethernet set ether3 name=PROXY

4. Memberi IP address
    ip address add address=192.168.1.1/24 interface=INTERNET comment=telkom-speedy
    ip address add address=192.168.88.1/24 interface=LOKAL comment=ke-user
    ip address add address=192.168.100.1/24 interface=PROXY comment=proxy-external 

5.  Seeting gatheway
     #ip routes add gateway=192.168.1.1

6. Setting DNS
    IP DNS setting primary secondary allow remote request
    #ip dns set primary-dns=202.134.0.155 allow-remoterequests=yes
    #ip dns set secondary-dns=202.134.0.62 allow-remoterequests=yes
    tes ping.....

7. Setting NAT agar semua user connect ke internet
    IP firewall nat chain=srcnat out interface=INTERNET (speedy) action=masquerede
    ip firewall nat add chain=srcnat action=masquerade out-interface=INTERNET

8. Settiing DHCP server
      ip pool add name=pool dhcp address 192.168.88.20-  192.168.88.254
      #ip dhcp-server enable 0
      ip pool add name=dhcp-pool ranges=192.168.88.20-192.168.88.254
      ip dhcp-server network add address=192.168.88.0/24 gateway=192.168.88.1
      #Om dody =ip dhcp server network add address=  192.168.88.0/24 gatheway=  192.168.88.1 netmask=24 dns server=202.134.1.10-202.134.0.155       
      ip dhcp-server add interface=LOKAL address-pool=dhcp-pool
SESUAIKAN SETELAH INI

9. Setting transparant Proxy
    IP web proxy web proxy setting enable src address (IP LOKAL) port=8080

10. Setting web proxy transparant
    IP firewall nat add general chain dstnat protocol 6 (tcp) dst port 80 out interfaces INTERNET action redirect to port 8080

11. Rul untuk transparant proxy
      IP firewall nat add cahin=dstnat protocol=6(tcp) Dst.Port=80 action=redirect to port=8080

12. Tentukan interface yang dipergunakan dan aktifkan DHCP  Server
   
      dhcp add name=said-dhcp interfaces=LOKAL address pool=pool-dhcp allwaysbroadcat=yes

13. DHCP CLIENT
      ip dhcp client add interfaces=internet

14. Mikrotik sebagai Bandwidth Limiter