Qwalasela i-firewall kwi-mikrotik router

Anonim

Qwalasela i-firewall kwi-mikrotik router

I-mikrotik rors iyathandwa kwaye ifakwe kumakhaya okanye kwiiofisi kubasebenzisi abaninzi. Olona ncedo luphambili lomsebenzi onezixhobo zezona zixhobo ezifanelekileyo zomlilo. Ibandakanya iseti yemilinganiselo kunye nemithetho yokukhusela inethiwekhi kubasemzini kunye nokuqhekeka.

Qwalasela i-firwall roer mikrotik

Ukuseta i-router kwenziwa kusetyenziswa inkqubo ekhethekileyo yokusebenza evumela ukuba usebenzise i-Interface yewebhu okanye inkqubo ekhethekileyo. Kwiinguqulelo ezimbini ziyimfuneko zokuhlela i-firewall, ngoko ke ayinamsebenzi into oyithandayo. Siza kugxila kwinguqulelo yesikhangeli. Ngaphambi kokuba uqale, kufuneka ungene:

  1. Ngesinye isikhangeli esifanelekileyo, yiya ku-192.168.88.1.
  2. Yiya kwiphepha le-Microtik Rost Page

  3. Kwisiqalo seWebhu ye-WEB special, khetha "IWebFig".
  4. I-Stage Web Chattunta yeWebhu yeWebhu

  5. Uya kubonisa ifom yokungena. Ngenisa igama lokungena kunye negama lokugqitha kwimitya, elinamaxabiso asisiseko olawulo.
  6. Ngena kwi-Microtik imbeko

Ungafumanisa ngakumbi malunga nokumiselwa kwe-router zele nkampani kwelinye inqaku kwikhonkco elingezantsi, kwaye siya kujika ngqo kugcino lweeparamitha ezikhuselayo.

Funda ngakumbi: Ungayibeka njani i-mikrotik router

Iphepha lokucoca iMithetho kunye nokudala iNew

Emva kokungena, uya kubonisa imenyu ephambili, apho ipaneli inamalungu onke ekhoyo ngasekhohlo. Ngaphambi kongeze ubumbeko lwakho, kuya kufuneka wenze oku kulandelayo:

  1. Yandisa udidi "lwe-IP" kwaye uye kwicandelo "le-firewall".
  2. Yiya kwi-firewall kwi-microtik router

  3. Coca yonke imithetho ekhoyo ngokucinezela iqhosha elifanelekileyo. Kuyimfuneko ukuvelisa le nto ukuze uqhubeke nokungqubana kwixesha elizayo xa usenza ubushwa lwakho.
  4. Uluhlu olucacileyo lwemithetho yokhuselo kwi-microtik router

  5. Ukuba ufake imenyu ngesikhangeli, inguqu kwi Window yokuDala i-SETP iqhutywa ngeqhosha "Yongeza", kuya kufuneka ucofe kwinkqubo kwinkqubo.
  6. Yenza uMgaqo oMtsha wokukhusela kwi-microtik router

Ngoku, emva kongeze umthetho ngamnye, kuya kufuneka ucofe amaqhosha eNdawo enye ukuze nise kwakhona iwindow yokuhlikila. Masihlale kwiinkcukacha ezingakumbi kuzo zonke iiseto ezisisiseko zokhuseleko.

Jonga isixhobo sonxibelelwano

I-router exhunyelwe kwikhompyuter ngamanye amaxesha ihlolwe yinkqubo yokusebenza yeWindows yonxibelelwano olusebenzayo. Ungayiqhuba le nkqubo, kodwa esi sibheno sifumaneka kuphela ukuba i-firewall ikhona ivumela unxibelelwano ne-OS. Ilungiselelwe ngolu hlobo lulandelayo:

  1. Cofa ku "Yongeza" okanye uBomvu dibanisa ukubonisa iwindow entsha. Apha kwi-"Chain" umgca "oguqulelwa ngokuthi" nenethiwekhi "chaza" igalelo "- elingenayo. Ke iya kunceda ekufumanise ukuba le nkqubo ibhekisela kwi-router.
  2. Ukukhetha uhlobo lwenethiwekhi ye-microtik Pick

  3. Kwinto "yomgaqo", setha ixabiso "le-ICMP". Olu hlobo lusebenza ukudlulisela imiyalezo enxulumene neempazamo kunye nezinye iimeko ezingezo meko.
  4. Ukukhetha iProtokholi ye-Microtik

  5. Yiya kwicandelo okanye kwithebhu yesenzo, apho kufaka "Yamkela", oko kukuthi, lo ukuhlelwa kuyakuvumela ukuba uphathe isixhobo seWindows.
  6. Khwela ukuya kufaka utshintsho kwaye ugqibezele ukumila komthetho.
  7. Gcina isiKhuseli soKhuseleko lweRuer Microtik

Nangona kunjalo, kule nkqubo, yonke inkqubo yokuthumela imiyalezo kunye nokujonga izixhobo ngeWindows akupheli. Into yesibini kukudluliselwa kwedatha. Ke ngoko, yenza iparamitha entsha apho uyichaza khona "Chain" - "phambili", kunye nomgaqo-nkqubo, chaza ukuba kwenzeka njani kwinyathelo elidlulileyo.

Umthetho wesibini we-microtik pinge

Ungalibali ukukhangela "isenzo" ukuze "yamkele" ihanjiswa apho.

Imvume yokuqhagamshela ofakiweyo

Ezinye izixhobo ziqhagamshelwe kwi-router nge-wi-fi okanye iintambo. Ukongeza, ikhaya okanye iqela elihlanganisiweyo lingasetyenziswa. Kule meko, kuya kufuneka usombulule unxibelelwano olufakiweyo ukuze kungabikho ngxaki kunye nokufikelela kwi-Intanethi.

  1. Cofa "ukongeza". Chaza uhlobo lohlobo lwenethiwekhi engenayo. Baleka phantsi kancinci kwaye ujonge indawo ethi "Yasekwa" ngokuchasene "noqhagamshelo" ukuchaza uluhlu lweeseti.
  2. Umgaqo wokuqala woMgaqo woQhagamshelo lwe-microtik

  3. Ungalibali ukukhangela "inyathelo" ukuze into oyifunayo ikhethiwe, njengakwimithetho yangaphambili. Emva koko, unokugcina utshintsho kwaye uhambe ngakumbi.

Ngomgaqo, faka "phambili" kufutshane "kufutshane" ne-chain "kwaye phawula inqaku elinye. Intshukumo kufuneka iqinisekiswe ngokukhetha "Yamkela", kuphela emva kokuba iqhubeke.

Umgaqo wesibini we-microtik uqhagamshelo olufakiweyo

Unxibelelwano olunxulumene noko

Phantse imithetho efanayo kufuneka yenziwe ukuba yenziwe ukuba inxibelelane, ukuze ingangqinelani xa kwagqitywa isiqinisekiso. Yonke inkqubo iqhutywa ngokoqobo kwizenzo ezahlukeneyo:

  1. Fumana uMgaqo-nkqubo "I-Chain" - "Igalelo", yihla kwaye phawula ibhokisi "enxulumene" malunga nombhalo "wokunxibelelana". Ungalibali icandelo "yesenzo", apho i-parameter efanayo ivuliwe.
  2. Umgaqo wokuqala woqhagamshelo lwe-microtik

  3. Kwimeko yesibini entsha, shiya uhlobo lonxibelelwano njengesiqhelo, kodwa inethiwekhi icwangcisiwe "phambili", nakwicandelo lezinto ofuna "ukwamkela" into.
  4. Umthetho wesibini woqhagamshelo oluDibeneyo lwe-microtik

Qiniseka ukuba ugcina utshintsho ukuze imithetho yongezwe kuluhlu.

Isisombululo soqhagamshelo kwi-LAN

Abasebenzisi benethiwekhi yasekhaya baya kuba nakho ukunxibelelana kuphela xa kufakelwa kwimithetho ye-firewall. Ukuhlela, kuya kufuneka kuqala kufuneke apho intambo yomboneleli ixhunyiwe (kwiimeko ezininzi yi-Ether1), kunye nedilesi ye-IP yenethiwekhi yakho. Funda ngakumbi malunga noku kwenye into kwikhonkco elingezantsi.

Funda ngakumbi: Ungayifumana njani idilesi ye-IP yekhompyuter yakho

Okulandelayo, kuya kufuneka uqwalasele kuphela iparameter enye. Oku kwenziwa ngolu hlobo lulandelayo:

  1. Kumgca wokuqala, faka "igalelo", emva koko uyeke kwi "SRC elandelayo. Idilesi »kwaye chwetheza idilesi ye-IP apho. "In. Isinxibelelanisi »I-Ether1" Ukuba intambo yegalelo evela kuMboneleli ixhunyiwe kuyo.
  2. UMGAQO-NKQUBO WOKUVUNYELWA KWENKCAZO YOKUGQIBELA

  3. Yiya kwi "Intshukumo" ithebhu ukubeka ixabiso "lamkela" ixabiso apho.

Ukuthintelwa konxibelelwano oluphosakeleyo

Ukudala lo mthetho kuya kukunceda ukhusela imilinganiselo yempazamo. Igqitywe ngokuzenzekelayo lunxibelelwano olungathembekanga ngezinto ezithile, emva koko bethathwa kwakhona kwaye ukufikelela akuyi kunikwa. Kuya kufuneka wenze iparamitha ezimbini. Oku kwenziwa ngolu hlobo lulandelayo:

  1. Njengakwimigaqo edlulileyo, uqala chaza "igalelo", emva koko uye phantsi kwaye ujonge ibhokisi "engasebenziyo" kufutshane ne "Stastial State".
  2. Umgaqo wokuqala wokukhusela i-microtik yempazamo

  3. Yiya kwithebhu okanye inyathelo "kwaye usete ixabiso" lokulahla ", oko kuthetha ukukhutshwa kwemigaqo yolu hlobo.
  4. Kwiwindows entsha, tshintsha kuphela "i-chain" kwi "phambili", ukuphumla, njengangaphambili, kubandakanya isenzo "sehla".
  5. Umgaqo wesibini we-microtik yempazamo

Unokungathinteli ezinye iinzame zokunxibelelana nemithombo yangaphandle. Oku kwenziwa ngokubeka nje umthetho omnye. Emva "kwe-chain" - "igalelo" isiliphu "kwi. Isinxibelelanisi "-" Ether1 "kunye" nesenzo "-" yehla ".

Ukuthintelwa kolunye unxibelelwano olungenayo kwinethiwekhi yangaphandle ye-microtik

Imvume yokugcwala kwinethiwekhi yendawo kwi-Intanethi

Umsebenzi wenkqubo yokusebenza kwendlela kukuvumela ukuba uphuhlise ukuqwalaselwa kwezithuthi ezininzi. Asiyi kuhlala kule nto, kuba olo lwazi aluyi kuba luncedo kubasebenzisi abaqhelekileyo. Cinga nje ngomgaqo omnye womlilo kuphela ovumela ukuba uphumelele ukugcwala kwi-Intanethi:

  1. Khetha "Chain" - "phambili". Wahlala e. Isinxibelelanisi "kunye" ukuphuma. Isinxibelelanisi "Ixabiso" Ether1 ", emva koko phawula uphawu lokukhuphela". Isinxibelelanisi.
  2. Umthetho wokugcwala kwetrafikhi kwinethiwekhi yendawo yengingqi yengingqi

  3. Kwicandelo "lesenzo", khetha Intshukumo "Yamkela".
  4. Faka isicelo sesenzo semigaqo ye-microtik

Ukuthintela lonke unxibelelwano, unako nje ngomthetho omnye:

  1. Khetha kuphela inethiwekhi "yangaphambili", engabhengeza enye into.
  2. Faka indawo yokuphumelela kwe-microtik

  3. Inyathelo, qinisekisa ukuba "ukulahla" kufanelekile.

Ngokutsho koqwalaselo lokugqibela, kuya kufuneka ube nakho malunga neskim se-firewall, njengakwi-screennhot engezantsi.

I-Scheme yeMithetho yeMililo yeFirewall

Ngale nto, inqaku lethu liza kwisiphelo esengqiqweni. Ndingathanda ukuqaphela ukuba akufuneki ufake yonke imigaqo, kuba isenokungasoloko ifuneka, nangona kunjalo, sabonisa imeko esisiseko elungele uninzi lwabasebenzisi abaqhelekileyo. Sinethemba lokuba ulwazi olunikiweyo luluncedo. Ukuba unayo nayiphi na imibuzo malunga nesi sihloko, buyibuze kwizimvo.

Funda ngokugqithisileyo