Thread: iptables dns go through lo !?
recently installed ubuntu 12.04 , going use same iptables rules did in previous version, unknown reason won't dns work. reason outgoing dns requests pass through loopback interface, cause package dropped. why go through loopback? it's outgoing request.
php code:iptables -n dns-chain
iptables -a dns-chain -p udp --sport 53 --dport 1024:65535 -j accept-in
iptables -a dns-chain -p udp --sport 1024:65535 --dport 53 -j accept-out
iptables -a input -j log $log_drop "in: "
iptables -a input -p udp --sport 53 --dport 1024:65535 -j dns-chain
iptables -a output -p udp --sport 1024:65535 --dport 53 -j dns-chain
php code:in: in=lo out= mac=00:00:00:00:00:00:00:00:00:00:00:00:08:00 src=127.0.0.1 dst=127.0.0.1 len=83 tos=0x00 prec=0x00 ttl=64 id=19630 df proto=udp spt=37196 dpt=53 len=63
Forum The Ubuntu Forum Community Ubuntu Official Flavours Support General Help [ubuntu] iptables dns go through lo !?
Ubuntu
Comments
Post a Comment