MikroTik Tutorial 63 - Prevent users from changing their DNS

  Рет қаралды 47,933

TKSJa

TKSJa

Күн бұрын

Пікірлер: 63
@iconnectbymvgozalo6416
@iconnectbymvgozalo6416 Жыл бұрын
Thank you very much! Very straight to the point tutorials.
@dffabryr
@dffabryr 5 жыл бұрын
Your tutorials are very useful and effective. Thank you very much !!
@franzlestermeusebio3186
@franzlestermeusebio3186 3 жыл бұрын
Thank you for this tutorial, is really works to me.
@mahmoudegypt17
@mahmoudegypt17 2 жыл бұрын
Your tutorials are very useful
@adammostafa5426
@adammostafa5426 2 жыл бұрын
is there an alternative way for zte router ?? . and thanke you for you amazing tutorials
@hazartilirot1014
@hazartilirot1014 4 жыл бұрын
The tip is useful. I can force users to force my inner DNS server but what should be done provided the DNS server at the same subnet - it cannot resolve host :D
@brotheradamfromups
@brotheradamfromups Жыл бұрын
How do I get this to work running a local pihole DNS that blocks certain domains and forwards all other requests to google dns?
@hijackthat974
@hijackthat974 2 жыл бұрын
this is so good, however can you tell us how to block users that use DoT or DoH?
@shokowillard
@shokowillard 7 жыл бұрын
Great tutorial keep up the great work. May you please add tutorial for different wireless modes (station,station pseudobridge,pseudobridge clone, station wds,nstreme dual slave etc)
@TKSJa
@TKSJa 7 жыл бұрын
Adding to my list.
@nexuspro183
@nexuspro183 5 жыл бұрын
Really amazing series dude
@derrickt.za1564
@derrickt.za1564 2 жыл бұрын
Can you please do a tutorial on user manager 7.1.2 version. I cannot get user to connect to the internet. Thank You
@kevinmiole
@kevinmiole Жыл бұрын
how to you add alternate dns? separate addresses with what?
@grimpr
@grimpr 6 жыл бұрын
Thanks, how do you redirect to the local mikrotik dns server that forwards to opendns?
@jotne
@jotne 6 жыл бұрын
Instead of setting Action: dst-nat, use Action: redirect and set To Port: 53. This will redirect all UDP:53 request to local DNS.
@JaZzDeOliveira
@JaZzDeOliveira 5 жыл бұрын
Hi , how do I get this to work when running multiple Mikrotik Hotspots? I have two seperate hotspots. 1 is for guest and 1 is for kids. I have set a different DNS for each subnet. But after users sign in on the login page, I see that all DNS queries are sent to the DNS set on the Mikrotik router and even with the above NAT rule specifying to go external DNS. All DNS queries are still going to the Router DNS and not to the set DNS. Any suggestions on how to fix this, as the issue only occurs when using Hotspot.
@challenger5775
@challenger5775 7 жыл бұрын
its very useful. great tutorials.
@TKSJa
@TKSJa 7 жыл бұрын
Thanks
@spiritcore1
@spiritcore1 4 жыл бұрын
Very useful, thank you! Do you know why it blocks ping from my PC? Everything works OK but I can't ping when the rule is enabled...
@JaZzDeOliveira
@JaZzDeOliveira 4 жыл бұрын
This rule does not seem to work anymore, any suggestions with the new routeros version
@richardayuyang632
@richardayuyang632 2 жыл бұрын
How about multiple redirections to multiple DNS, I have 2 piholes in my network. TIA
@SpikeHome
@SpikeHome 7 жыл бұрын
great tutotrial, but kan i also force users to use my local dns cache server at my mikrotik router?
@TKSJa
@TKSJa 7 жыл бұрын
yes, just change the IP to your dns IP.
@ncduong
@ncduong 3 жыл бұрын
Hello, I install AdguardHome on RasPi, AdGuardHome DNS uses port 53 to listen. Unfortunately port 53 is also being used by Router Mikrotik's Hostspot service. How can I fix it? :(
@amieka7454
@amieka7454 3 жыл бұрын
Can I use this rule for multiple DNS ?
@TheRashyyd
@TheRashyyd 2 жыл бұрын
My net stops browsing the minute I apply this changes, can you guess what could be the problem?
@RaviPatel-fq8lq
@RaviPatel-fq8lq 4 жыл бұрын
hi i want to Force users to use specified our DNS server on mikrotik can we use the rule
@stevesmith2553
@stevesmith2553 7 жыл бұрын
can you do one on layer 3 switching ., routing on a layer 3 switch --- ty
@TKSJa
@TKSJa 6 жыл бұрын
Noted
@MaestroDJDaniello
@MaestroDJDaniello 3 жыл бұрын
Awesome, thanks
@dangdut1
@dangdut1 7 жыл бұрын
hello sir I want to ask if you not mind about rule for extension video download on layer7 can you tell us ?? I use rb952.. many tutorial i try can't recognize in winbox.. the mangle packet still zero
@TKSJa
@TKSJa 6 жыл бұрын
Check the interfaces that you are using in your mangle rules.
@potskie3704
@potskie3704 7 жыл бұрын
Hi, i just want to know if mikrotik can also prevent user to share their internet to other wifi devices.
@TKSJa
@TKSJa 7 жыл бұрын
It all depends on how your network is configured. Based on my experience this might not be preventable.
@kazimriaz8319
@kazimriaz8319 5 жыл бұрын
very helpful can you tell me the model of this device ?
@TKSJa
@TKSJa 5 жыл бұрын
Don't remember, all Mikrotik routers can do this
@dennytobing
@dennytobing 7 жыл бұрын
how about with 2 ISP Connection ?
@TKSJa
@TKSJa 7 жыл бұрын
Create a rule for each connection.
@maltew7653
@maltew7653 7 жыл бұрын
What should i do if i want to force everyone trough a pihole dns , expect the raspberry pi , so pihole can forward passed trafic trough another dns like: 9.9.9.9
@TKSJa
@TKSJa 7 жыл бұрын
Create an exception in the rule for that address.
@maltew7653
@maltew7653 7 жыл бұрын
TKSJa OK thanks...if the DNServer , in my case pihole is on the local lan can i do the setup like shown in the Video or should i use another nat action?
@DolcheGuevara
@DolcheGuevara 6 жыл бұрын
You haven`t show us what happent if someone change DNS in network settings.
@JoshSmeda
@JoshSmeda 6 жыл бұрын
Won't affect client side. The masquerade rule will redirect DNS traffic to the destination you specified in the rule. If you want to enforce client side, setup a group policy. This is a workaround for a non AD environment.
@johnlohan9900
@johnlohan9900 7 жыл бұрын
Please tell me why it is important to do this ?
@TKSJa
@TKSJa 7 жыл бұрын
Content filtering and security.
@dukedblu
@dukedblu 2 ай бұрын
nice!
6 жыл бұрын
No alternate DNS?
@TKSJa
@TKSJa 6 жыл бұрын
No, you set yours
@obslugait88
@obslugait88 5 жыл бұрын
@@TKSJa What if I use router DNS and Cache?
@rodrickingram8731
@rodrickingram8731 5 жыл бұрын
@@obslugait88 You could
@redheart419
@redheart419 7 жыл бұрын
Isn't it illegal when ISP doing this?
@TKSJa
@TKSJa 7 жыл бұрын
No sure, but for hotspot, business, school or home this is ok to do.
@redheart419
@redheart419 7 жыл бұрын
+TKSJa I'm talking about residential broadband provider
@redheart419
@redheart419 7 жыл бұрын
+TKSJa it's acceptable for school, businesses and Hotspot... But when residential broadband provider does this, it pisses off some advance users
@TKSJa
@TKSJa 7 жыл бұрын
That's true
@AndrewTaranovND
@AndrewTaranovND 5 жыл бұрын
Thnx!
@ahmdnaube3745
@ahmdnaube3745 3 жыл бұрын
After this setup what if a client uses his Android to install a VPN app and connect that APP then he can browse porn? Am i right?
@usmanjutt7908
@usmanjutt7908 7 жыл бұрын
Hlow sir i say again How to limit dwonlad extenshion mkv mp4 and etc😆😊☺
@TKSJa
@TKSJa 6 жыл бұрын
Added to my list.
@ArmanHAlam
@ArmanHAlam 5 жыл бұрын
Firewall / NAT rule for forcing use of google isnt wokring
Adlist Mikrotik - Step by Step Lab
18:57
Wilmer Almazan / The Network Trip
Рет қаралды 3,5 М.
Beat Ronaldo, Win $1,000,000
22:45
MrBeast
Рет қаралды 158 МЛН
Chain Game Strong ⛓️
00:21
Anwar Jibawi
Рет қаралды 41 МЛН
Block DNS Flood Attacks on Mikrotik - Live Demo Included!
14:38
Wilmer Almazan / The Network Trip
Рет қаралды 6 М.
Adding Ethernet Ports with a Network Switch
12:17
ExplainingComputers
Рет қаралды 208 М.
(8) Pi-Hole Custom DNS Servers on MikroTik Routers
12:27
Category5 Technology TV with Robbie Ferguson
Рет қаралды 29 М.
Inside the V3 Nazi Super Gun
19:52
Blue Paw Print
Рет қаралды 2,1 МЛН
Faster Internet for FREE in 30 seconds - No... Seriously
8:43
Linus Tech Tips
Рет қаралды 15 МЛН
Why Pi-hole when you can RouterOS adlist?
4:42
MikroTik
Рет қаралды 24 М.