Open GoogleCodeExporter opened 8 years ago
Hi,
I never worked with UDP, but it seems possible.
Let's assume we used bind on 5353 for non authenticated users and needed
addresses and DnSMasq as usual on 53
We push all dns request to kanet to be marked .. or not.
$IPT -t mangle -A PREROUTING -p UDP --dport 53 -i $NTINT -j QUEUE
All "no marked" (no authenticated users) dns request are forward to the limited
DNS.
$IPT -t nat -A PREROUTING -p UDP --dport 53 -i $NTINT -m mark --mark 0 -j DNAT
--to-destination $IP_PRIVATE:5353
I'm not really sure kanet can understand UDP packet, tests need to be done.
This will increase kanet stuff.
Cyrille.
Original comment by cyrille....@pixtogram.com
on 5 May 2011 at 9:57
Original issue reported on code.google.com by
gautier....@gmail.com
on 2 May 2011 at 11:49