Lab 7: DNS Cache & Interception / Redirect
12 Oktober 2026Buka di NetLab Simulator โ
๐ฏ Sasaran Praktikum
Mencegah bypass DNS client dengan meredirect seluruh DNS query ke router lokal.
- Tingkat Kesulitan:
INTERMEDIATE - Estimasi Waktu:
30 Menit - Target RouterOS:
RouterOS v7 (v7.12+ recommended)
๐บ๏ธ Topologi Jaringan
[Clients] ---> (Port 53 Redirect) ---> [MikroTik DNS Cache]
Daftar Perangkat dalam Topologi:
- Public-DNS-8.8.8.8 (
internet) - Interfaces:wan1, wan2, wan3, wan4 - R1-DNS-Interceptor (
mikrotik) - Interfaces:ether1 (mgmt), ether2, ether3, ether4 - PC-Bypass-Client (
pc) - Interfaces:eth1
๐ ๏ธ Langkah Konfigurasi Lengkap (RouterOS v7)
Langkah 1: R1-Shaper - Redirect UDP/TCP port 53 ke port DNS router
# Node: R1-Shaper
/ip dns set allow-remote-requests=yes servers=8.8.8.8,1.1.1.1
/ip firewall nat add chain=dstnat protocol=udp dst-port=53 in-interface=ether3 action=redirect to-ports=53 comment="Force DNS to Router"
/ip firewall nat add chain=dstnat protocol=tcp dst-port=53 in-interface=ether3 action=redirect to-ports=53
๐ฅ Panduan Lengkap & Resource
Gunakan panduan lengkap seluruh lab MikroTik certification di Panduan Lengkap Skenario Lab MikroTik atau ikuti kelas resmi tatap muka kami di Daftar Pelatihan MikroTik.
Topologi Jaringan
[Clients] ---> (Port 53 Redirect) ---> [MikroTik DNS Cache]
Download Lab File
Masukkan email untuk mendapatkan file lab (.rsc, topologi, panduan) dan akses materi latihan lainnya.
Dengan mendaftar, Anda setuju menerima email dari Supono Training. Unsubscribe kapan saja.