当前位置:网站首页>RouterOS 有限dns劫持及check
RouterOS 有限dns劫持及check
2022-07-28 21:34:00 【51CTO】
场景:
内部搭建了内网用的dns,开发会有一些内部使用的域名来解析一般都是 inner*.domain.com,需求是先在内网进行解析,没有再出外网正常解析。
设计描述:
由于需要此功能的域名是有限的,最小影响原则只对 *.domain.com 进行dns劫持;
配置:
step1:layer7 dns识别配置
可以用正则匹配更多的域名 比如 .domain.com|.domain2.com
step2:开启routeros的dns功能
内网dns server= 192.168.23.56
step3: 添加dns劫持,将step1识别出来的请求转发到routeros的53端口上
条件 layer7=inner_dns&&udp&&dstPort=53&¬ innerdns
简单来说就行了。。。。。。。
锦上添花:
检查内网dns,无法解析了就关闭劫持,恢复了就开启劫持,需要内网dns有个不会失效的A记录
step1:script脚本--根据dns是是否能解析进行开启关闭
cDomain 域名
cDomainOk 正确的解析记录
dnsServer 内网dns服务器地址
不好看来个整齐的:
step2:添加定时任务 1分钟检查一次
on-event 就填script的name
end:
粗糙、细节没有弄凑合用吧
边栏推荐
- Kotlin function nesting
- Invest 50billion yuan! SMIC capital was officially registered!
- Learning experience sharing 3: yolov5 training data set path index
- Console.log() console display... Solution
- 一种分布式深度学习编程新范式:Global Tensor
- Xinhuazhang announced the completion of more than 200million a-round financing and the comprehensive layout of eda2.0 R & D
- Hands on Teaching of servlet use (1)
- 《Shortening passengers’ travel time A dynamic metro train scheduling approach using deep reinforcem》
- Invest 145billion euros! EU 17 countries announce joint development of semiconductor technology
- 定了!哪吒S全系产品将于7月31日上市发售
猜你喜欢

Target detection notes -yolo

Sqlilabs-3 (entry notes)

Servlet的使用手把手教学(一)

Xshell7, xftp7 personal free version official download, no need to crack, no activation, download and use

《MySQL数据库进阶实战》读后感(SQL 小虚竹)

Basic concept of MySQL database and deployment of MySQL version 8.0 (I)
![[C language] implementation of three piece chess games](/img/53/7ee14e604c06fd77d65af29d6d92b8.png)
[C language] implementation of three piece chess games

PCA学习

Improvement 13 of yolov5: replace backbone network C3 with lightweight network efficientnetv2

Recurrent neural network (RNN)
随机推荐
Hands on Teaching of servlet use (1)
LTE cell search process and sch/bch design
The industry's first cloud native security detection dual model! Safety dog heavyweight report appears at the digital China Construction Summit
《MySQL数据库进阶实战》读后感(SQL 小虚竹)
The Gerrit local code is associated to the remote warehouse
Target detection notes fast r-cnn
Basic concept of MySQL database and deployment of MySQL version 8.0 (I)
Empowering Chinese core entrepreneurs! See how Moore elite solves the development problems of small and medium-sized chip Enterprises
Advanced C language: pointer (2)
Improvement 14 of yolov5: replace the backbone network C3 with the lightweight network GhostNet
Sqlilabs-3 (entry notes)
Seagate released a new risc-v architecture processor: the performance of mechanical hard disk soared 3 times
In 2020, the top ten domestic IC design enterprises will be exposed! These five industrial challenges still need to be overcome!
(important) first knowledge of C language -- function
软件测试面试笔试题及答案(软件测试题库)
Yolov5 improvement 5: improve the feature fusion network panet to bifpn
xshell7,xftp7个人免费版官方下载,无需破解,免激活,下载即可使用
Sdwebimage source code comb 4 # introduce several usages of existing code
Will Qualcomm and MediaTek chips soon be sold, and will they surpass Huawei to become the first in China?
Research on cookies in WebView