Step by Step nya :
gunakan ip localhost sebagai dnsname di resolvenya,
di interface buang aja dnsnameip nya. (dns-nameservers dihilangkan?)
/etc/network/interfaces
pasang tu ip localhost di dns squid.conf.
pasang tu ip proxy ke ip dns mikrotik.
di client jadiin ip proxy sama ip gateway untuk dns
dns1 192.168.3.2
dns2 192.168.2.30
Pada Mikrotik IP—Mangle, disabled script DNS
gunakan ip localhost sebagai dnsname di resolvenya,
Code:
cat > /etc/resolv.conf << "EOF" # Begin /etc/resolv.conf domain ns.hade.war.net nameserver 127.0.0.1 # End /etc/resolv.conf EOF
/etc/network/interfaces
Code:
auto eth0 iface eth0 inet static address 192.168.3.2 netmask 255.255.255.0 network 192.168.3.0 broadcast 192.168.3.255 gateway 192.168.3.1 dns-search ns.hade.war.net
Code:
dns_nameservers 127.0.0.1 192.168.3.2 203.130.208.18 203.130.193.74 222.124.204.34 203.130.196.6 208.67.222.222 208.67.220.220 180.131.144.144 180.131.145.145
Code:
/ip dns set allow-remote-requests=yes cache-max-ttl=1w cache-size=2048KiB \ max-udp-packet-size=4096 servers="192.168.3.2,203.130.208.18,203.130.193.74,222.124.204.\ 34,203.130.196.6,208.67.222.222,208.67.220.220,180.131.144.144,180.131.145.1\ 45" /ip dns static add address=192.168.3.2 disabled=no name=ns.hade.war.net ttl=1d
dns1 192.168.3.2
dns2 192.168.2.30
Pada Mikrotik IP—Mangle, disabled script DNS
paksa smua klient pake dns unbound
walaupun klient pake dns laen.....
walaupun klient pake dns laen.....
Code:
ip firewall nat chain=dstnat action=dst-nat to-addresses=IP_PROXY to-ports=53 protocol=udp src-address=!IP_PROXY dst-port=53
0 comments:
Post a Comment