NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

drh841's avatar
drh841
Aspirant
Sep 09, 2024

Preventing circumvention of OpenDNS

Hi Community:

 

I'm trying to follow the suggestions to use the firewall to prevent circumvention of OpenDNS as per other users on the forum and as per documentation https://support.opendns.com/hc/en-us/articles/227988027-How-to-prevent-users-from-circumventing-OpenDNS-using-firewall-rules

 

OpenDNS says they can't help. I don't really see where to put the rules in place? In the router admin I see "block services" and "port forwarding" and other options, but not really the correct place to attempt to follow the instructions in the document. Can anyone give me some more specific information as to where I put those rules for this specific router?

 

Thanks

 

MR60 — Nighthawk Mesh WiFi 6 Router

https://www.netgear.com/support/product/mr60/

Firmware Version V1.1.7.134_2.0.65

 

 

4 Replies

    • drh841's avatar
      drh841
      Aspirant

      Well, I tried the first link. I think the problem for my understanding probably came up that "Block services" for DNS didn't really mean block ALL DNS activity, only DNS requests that didn't originate on the router. I rather thought that blocking DNS would simply block it entirely, even the router's attempts to use DNS. I know that sounds weird now, but it certainly isn't clear on the router interface or in the documentation.

       

      At any rate, I think this worked.  I blocked services for port 53 and if someone's settings are trying to use a different DNS it just blocks it. ... It also seems to block it if it IS trying to use the OpenDNS servers... Would like that second part to function as well. I'll fiddle around a little more, maybe that's the port forwarding part.

       

      Dave

       

      PS, not sure what you meant about reaching out to "the author of the article." The one I referenced specifically said that that author and its company would not assist further than what they printed as they can't support everyone's router firewalls.

      • FURRYe38's avatar
        FURRYe38
        Guru - Experienced User

        Glad something  worked for you then.

         

        So I guess take that article with a grain of salt then. Should have some support to a point. 

         

        I guess fiddle and find the what works for you. Please post what works if you can.