NetworkFA
May 11th, 2018, 17:33
باسلام اخیرا hetnzer ابیوز های برای همکاران میفرسته که آیپی مقصد آیپی های private هستند برای این کار کافیست رول های زیر را وارد میکروتیک کنید.
/ip firewall address-list add address=0.0.0.0/8 list=BOGONS
/ip firewall address-list add address=10.0.0.0/8 list=BOGONS
/ip firewall address-list add address=100.64.0.0/10 list=BOGONS
/ip firewall address-list add address=127.0.0.0/8 list=BOGONS
/ip firewall address-list add address=169.254.0.0/16 list=BOGONS
/ip firewall address-list add address=172.16.0.0/12 list=BOGONS
/ip firewall address-list add address=192.0.0.0/24 list=BOGONS
/ip firewall address-list add address=192.0.2.0/24 list=BOGONS
/ip firewall address-list add address=192.168.0.0/16 list=BOGONS
/ip firewall address-list add address=198.18.0.0/15 list=BOGONS
/ip firewall address-list add address=198.51.100.0/24 list=BOGONS
/ip firewall address-list add address=203.0.113.0/24 list=BOGONS
/ip firewall address-list add address=224.0.0.0/3 list=BOGONS
/ip firewall filter add action=drop chain=forward comment="Drop BoGon IP" dst-address-list=BOGONS
با این رول ها تمامی BOGON IP ها دراپ میشوند
/ip firewall address-list add address=0.0.0.0/8 list=BOGONS
/ip firewall address-list add address=10.0.0.0/8 list=BOGONS
/ip firewall address-list add address=100.64.0.0/10 list=BOGONS
/ip firewall address-list add address=127.0.0.0/8 list=BOGONS
/ip firewall address-list add address=169.254.0.0/16 list=BOGONS
/ip firewall address-list add address=172.16.0.0/12 list=BOGONS
/ip firewall address-list add address=192.0.0.0/24 list=BOGONS
/ip firewall address-list add address=192.0.2.0/24 list=BOGONS
/ip firewall address-list add address=192.168.0.0/16 list=BOGONS
/ip firewall address-list add address=198.18.0.0/15 list=BOGONS
/ip firewall address-list add address=198.51.100.0/24 list=BOGONS
/ip firewall address-list add address=203.0.113.0/24 list=BOGONS
/ip firewall address-list add address=224.0.0.0/3 list=BOGONS
/ip firewall filter add action=drop chain=forward comment="Drop BoGon IP" dst-address-list=BOGONS
با این رول ها تمامی BOGON IP ها دراپ میشوند