SUPONO.
โ† Modul LabmtctceMenengah30 Menit

Lab 7: DNS Cache & Interception / Redirect

๐ŸŽฏ Sasaran Praktikum

Mencegah bypass DNS client dengan meredirect seluruh DNS query ke router lokal.

  • Tingkat Kesulitan: INTERMEDIATE
  • Estimasi Waktu: 30 Menit
  • Target RouterOS: RouterOS v7 (v7.12+ recommended)

๐Ÿ—บ๏ธ Topologi Jaringan

[Clients] ---> (Port 53 Redirect) ---> [MikroTik DNS Cache]

Daftar Perangkat dalam Topologi:

  • Public-DNS-8.8.8.8 (internet) - Interfaces: wan1, wan2, wan3, wan4
  • R1-DNS-Interceptor (mikrotik) - Interfaces: ether1 (mgmt), ether2, ether3, ether4
  • PC-Bypass-Client (pc) - Interfaces: eth1

๐Ÿ› ๏ธ Langkah Konfigurasi Lengkap (RouterOS v7)

Langkah 1: R1-Shaper - Redirect UDP/TCP port 53 ke port DNS router

# Node: R1-Shaper
/ip dns set allow-remote-requests=yes servers=8.8.8.8,1.1.1.1
/ip firewall nat add chain=dstnat protocol=udp dst-port=53 in-interface=ether3 action=redirect to-ports=53 comment="Force DNS to Router"
/ip firewall nat add chain=dstnat protocol=tcp dst-port=53 in-interface=ether3 action=redirect to-ports=53

๐Ÿ“ฅ Panduan Lengkap & Resource

Gunakan panduan lengkap seluruh lab MikroTik certification di Panduan Lengkap Skenario Lab MikroTik atau ikuti kelas resmi tatap muka kami di Daftar Pelatihan MikroTik.

Topologi Jaringan

[Clients] ---> (Port 53 Redirect) ---> [MikroTik DNS Cache]

Download Lab File

Masukkan email untuk mendapatkan file lab (.rsc, topologi, panduan) dan akses materi latihan lainnya.

Dengan mendaftar, Anda setuju menerima email dari Supono Training. Unsubscribe kapan saja.