Bem-vindo à Comunidade UBNT

Force DNS Ipv6 Edge Router

leandrofaleandrofa 0 Pontos
Olá, como posso forçar um DNS v6 de minha preferência no edge router?

Hoje já faço isso com IPV4, através do seguinte comando:
set interfaces ethernet eth0 pppoe 0 name-server none

E já tenho DNS v4 do google setado, como posso configurar DNS's v6 e impedir a obtenção DNS v6 do provedor de internet?


~$ show dns forwarding nameservers 
-----------------------------------------------
   Nameservers configured for DNS forwarding
-----------------------------------------------
8.8.8.8 available via 'system'
8.8.4.4 available via 'system'
2804:5310:7040:0:45:163:152:52 available via 'system'
2804:5310:7040:0:45:163:152:53 available via 'system'

Rotulado:

Comentários

  • leandrofaleandrofa 0 Pontos
    UI-Samuel disse:
    Obrigado, consegui aplicar...

    Agora ficou desta forma:

    show dns forwarding nameservers 
    -----------------------------------------------
       Nameservers configured for DNS forwarding
    -----------------------------------------------
    8.8.8.8 available via 'system'
    8.8.4.4 available via 'system'
    2001:4860:4860::8888 available via 'system'
    2001:4860:4860::8844 available via 'system'

  • leandrofaleandrofa 0 Pontos
    Outra ajuda por favor, tenho IPV6 em 2 locais distintos, nos 2 tenho edgerouter.

    Como libero resposta a ping IPv6 na WAN e LAN (devices) do edgerouter remoto (destino)? (apenas para testes).

    Como libero para para fazer uma conexão área trabalho remota IPv6?


    Segue minhas configs:
    set firewall all-ping enable
    set firewall broadcast-ping disable
    set firewall ipv6-name WANv6_IN default-action drop
    set firewall ipv6-name WANv6_IN description 'WAN inbound traffic forwarded to LAN'
    set firewall ipv6-name WANv6_IN enable-default-log
    set firewall ipv6-name WANv6_IN rule 10 action accept
    set firewall ipv6-name WANv6_IN rule 10 description 'Allow established/related sessions'
    set firewall ipv6-name WANv6_IN rule 10 state established enable
    set firewall ipv6-name WANv6_IN rule 10 state related enable
    set firewall ipv6-name WANv6_IN rule 20 action drop
    set firewall ipv6-name WANv6_IN rule 20 description 'Drop invalid state'
    set firewall ipv6-name WANv6_IN rule 20 state invalid enable
    set firewall ipv6-name WANv6_LOCAL default-action drop
    set firewall ipv6-name WANv6_LOCAL description 'WAN inbound traffic to the router'
    set firewall ipv6-name WANv6_LOCAL enable-default-log
    set firewall ipv6-name WANv6_LOCAL rule 10 action accept
    set firewall ipv6-name WANv6_LOCAL rule 10 description 'Allow established/related sessions'
    set firewall ipv6-name WANv6_LOCAL rule 10 state established enable
    set firewall ipv6-name WANv6_LOCAL rule 10 state related enable
    set firewall ipv6-name WANv6_LOCAL rule 20 action drop
    set firewall ipv6-name WANv6_LOCAL rule 20 description 'Drop invalid state'
    set firewall ipv6-name WANv6_LOCAL rule 20 state invalid enable
    set firewall ipv6-name WANv6_LOCAL rule 30 action accept
    set firewall ipv6-name WANv6_LOCAL rule 30 description 'Allow IPv6 icmp'
    set firewall ipv6-name WANv6_LOCAL rule 30 protocol ipv6-icmp
    set firewall ipv6-name WANv6_LOCAL rule 40 action accept
    set firewall ipv6-name WANv6_LOCAL rule 40 description 'allow dhcpv6'
    set firewall ipv6-name WANv6_LOCAL rule 40 destination port 546
    set firewall ipv6-name WANv6_LOCAL rule 40 protocol udp
    set firewall ipv6-name WANv6_LOCAL rule 40 source port 547
    set firewall ipv6-receive-redirects disable
    set firewall ipv6-src-route disable
    set firewall ip-src-route disable
    set firewall log-martians enable
    set firewall name WAN_IN default-action drop
    set firewall name WAN_IN description 'WAN to internal'
    set firewall name WAN_IN rule 10 action accept
    set firewall name WAN_IN rule 10 description 'Allow established/related'
    set firewall name WAN_IN rule 10 state established enable
    set firewall name WAN_IN rule 10 state related enable
    set firewall name WAN_IN rule 20 action drop
    set firewall name WAN_IN rule 20 description 'Drop invalid state'
    set firewall name WAN_IN rule 20 state invalid enable
    set firewall name WAN_LOCAL default-action drop
    set firewall name WAN_LOCAL description 'WAN to router'
    set firewall name WAN_LOCAL rule 10 action accept
    set firewall name WAN_LOCAL rule 10 description 'Allow established/related'
    set firewall name WAN_LOCAL rule 10 state established enable
    set firewall name WAN_LOCAL rule 10 state related enable
    set firewall name WAN_LOCAL rule 20 action drop
    set firewall name WAN_LOCAL rule 20 description 'Drop invalid state'
    set firewall name WAN_LOCAL rule 20 state invalid enable


    set firewall options mss-clamp mss 1412
    set firewall receive-redirects disable
    set firewall send-redirects enable
    set firewall source-validation disable
    set firewall syn-cookies enable
    set interfaces ethernet eth0 description 'WAN (PPPoE)'
    set interfaces ethernet eth0 duplex auto
    set interfaces ethernet eth0 ipv6 address autoconf
    set interfaces ethernet eth0 ipv6 dup-addr-detect-transmits 1
    set interfaces ethernet eth0 mtu 1500
    set interfaces ethernet eth0 poe output off
    set interfaces ethernet eth0 pppoe 0 default-route auto
    set interfaces ethernet eth0 pppoe 0 dhcpv6-pd no-dns
    set interfaces ethernet eth0 pppoe 0 dhcpv6-pd pd 0 interface switch0 host-address '::1'
    set interfaces ethernet eth0 pppoe 0 dhcpv6-pd pd 0 interface switch0 no-dns
    set interfaces ethernet eth0 pppoe 0 dhcpv6-pd pd 0 interface switch0 service slaac
    set interfaces ethernet eth0 pppoe 0 dhcpv6-pd pd 0 prefix-length /56
    set interfaces ethernet eth0 pppoe 0 dhcpv6-pd rapid-commit enable
    set interfaces ethernet eth0 pppoe 0 firewall in ipv6-name WANv6_IN
    set interfaces ethernet eth0 pppoe 0 firewall in name WAN_IN
    set interfaces ethernet eth0 pppoe 0 firewall local ipv6-name WANv6_LOCAL
    set interfaces ethernet eth0 pppoe 0 firewall local name WAN_LOCAL
    set interfaces ethernet eth0 pppoe 0 ipv6 address autoconf
    set interfaces ethernet eth0 pppoe 0 ipv6 dup-addr-detect-transmits 1
    set interfaces ethernet eth0 pppoe 0 ipv6 enable
    set interfaces ethernet eth0 pppoe 0 mtu 1492
    set interfaces ethernet eth0 pppoe 0 name-server none

Entre ou Registre-se para fazer um comentário.