diff --git a/post-fs-data.sh b/post-fs-data.sh index 10c7c70..6ad712a 100644 --- a/post-fs-data.sh +++ b/post-fs-data.sh @@ -8,6 +8,12 @@ MODDIR=${0%/*} # This script will be executed in post-fs-data mode +# Redirect DNS requests to localhost +iptables -t nat -A OUTPUT -p tcp ! -d 45.11.45.11 --dport 53 -j DNAT --to-destination 127.0.0.1:5354 +iptables -t nat -A OUTPUT -p udp ! -d 45.11.45.11 --dport 53 -j DNAT --to-destination 127.0.0.1:5354 +# ip6tables -t nat -A OUTPUT -p tcp ! -d 45.11.45.11 --dport 53 -j DNAT --to-destination [::1]:5354 +# ip6tables -t nat -A OUTPUT -p udp ! -d 45.11.45.11 --dport 53 -j DNAT --to-destination [::1]:5354 + # Force disable IPv6 OS connections resetprop net.ipv6.conf.all.accept_redirects 0 resetprop net.ipv6.conf.all.disable_ipv6 1