MikroTik RouterOS How to Setup DNS, DNS Cache and Securing it

preview_player
Показать описание
In this video I go through the basic IP-DNS setup as well as how to cache DNS requests from your LAN and round it off with how to secure it correctly from the outside world.

Рекомендации по теме
Комментарии
Автор

Hi, i am brand new to mikrotik HAP AC2, and i will be setting up PI-HOLE for ad blocking, would you consider making a video how to properly set up the DNS rules on the router and configure all for PI-HOLE dns filtering - It would be fantastic ! Thanks for great jon you do !

fullrespect
Автор

Really helps a lot. I want my Mikrotik to manage all internal traffic than shitty crap ISP modem.

TomLouwell
Автор

What version of software is this? When I go to IP>DNS I see something different.

pocobueno
Автор

Hi guys, must checking, this creates a local DNS cache and will be able to resolve hostnames of device in a lan and from the web?

vids
Автор

thanks for the manual
what if my hEX S router has only 5.5 mb free on internal storage, should i change dns cache TTL to 1day or 3 for example ? or 7d should be fine?

sd
Автор

My ISP (small company for rural area) is using a Microtik router in their tower. I suspect that they are overriding my DNS IP which I have statically configured for testing purposes on my computer. I can put in a bad DNS IP and it all still works even after flushing the Windows 10 DNS cache. Can DNS Proxy and DNS Forwarding be set up on this router which may be intercepting my DNS requests? The tech is fairly new to this equipment.

ritchiechristian
Автор

Thanks for the info @steveocee. Referring to your statement at 1:34 onwards regarding settings on Query timeouts and concurrent queries, any idea what the max limit could be? For example is my network does a value of 10000 concurrent queries suffice?

wesleykamau
Автор

Hi. Do you know by any chance why I can't remove Dynamic Servers??

s_kraw
Автор

What if you change the DNS Server, how would you get it back to its default server

ReelNicePics
Автор

Theres a bunch of dynamic servers in the dns settings that i cannot seem to change from that window - is that something ISP-specific or can I actually change it albeit from some other place?

NevaranUniverse
Автор

Seems like putting in a static DNS entry like "something.local" works, meaning I can ping it from a client so the mikrotik router is resolving it. When I update the static entry to just "something" without a domain extension on the end, I cannot ping just "something".


From the Winbox interface, if I open a new terminal window, I am able to ping "something.local" or "something" as long as I have the static dns entries for it. So internally, it will resolve a static dns entry named "something" but for a dhcp client / local network based dns query, it will only resolve entries with a domain name.


Is there any way to get it to resolve local host names for local clients or at least get it to assume a domain of .local on host name lookups that don't contain a domain name? (I hope I am being clear here.)

Edit: I added a Regex pattern to a reply below in this thread that matches both hostname with or without the .local domain.

underourrock
Автор

Please I have many questions for you
I want Facebook account

mostafaali-wrnj