[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: Best practice for DNS through tor



Jim McClanahan wrote:
>>  3) I tried redirection with iptables on the local host but I can't
>>  get that to work --- I'm not sure its possible.  ...
>>     
>
> I would think that should work.  (I've done similar DNATing -- with DNS
> even! :-)  Something like:
>
> iptables -t nat -A OUTPUT -p udp --dport 53 \
>    -j DNAT --to-destination $router_ip:5300
>
>   
Thanks that did it.  I was using PREROUTING which is for packets routed
through the box, not packets originating from the box.  I've been caught
by this before but it just didn't click.

-- 

Anthony G. Basile, Ph.D.
Chair of Information Technology
D'Youville College
Buffalo, NY 14201
USA

(716) 829-8197



Attachment: signature.asc
Description: OpenPGP digital signature