login about faq

Due to the large amount of spam accounts, we temporarily disabled new user sign ups. To override this, email newuser.lgqa@gmail.com and an admin will determine if you are permitted to join


Hello

I am having problem with bypassers. They bypass the OpenDNS filter by just changing the DNS number in their devices. Then they can easily access blocked sites.

Is there a way to prevent them changing it without touching his device? Because even if I remove administrator privileges, it won't make difference because they are good at IT.

I have sent to OpenDNS this question and they replied:

"If you have a router that supports traffic forwarding, configure the DNS settings of the network router to use OpenDNS and then configure the router to forward all DNS traffic to it's own internal network IP address. Not many routers support this, but some do."

No idea what this means.

By the way, I've got a good router -- it's Netgear dgnd3300v2

Please, guys, help!

asked Jul 27 '12 at 12:41

abadi00's gravatar image

abadi00
1112

edited Jul 30 '12 at 18:19

Fogarty's gravatar image

Fogarty ♦♦
11.7k122738


Another potential solution is to block all outgoing traffic from port 53 (DNS-Reserved port) and only allow incoming traffic from that port on Your router via Firewall settings. This way even if a client changes its DNS IPs manually, DNS queries sent to the newly-configured remote servers will be blocked. Therefore, the only possible way for the client to use DNS and be able to navigate to websites again is to fall back to the settings forwarded by the DHCP server (default to OpenDNS in your case).

answered Jul 28 '12 at 21:34

TjWallas's gravatar image

TjWallas
271369

You may be able to achieve the same result with port forwarding and save the cash you spend on OpenDNS. You may also be able to forward the addresses they are using. Newer routers are very configurable. I have a $30 one and it has a wide variety of rules to apply.

answered Jul 28 '12 at 06:27

ClosetFuturist's gravatar image

ClosetFuturist
1.7k61427

You should be able to deny access to the ability to change these settings with group policy in Windows (you don't detail your OS).

answered Jul 28 '12 at 09:49

dunfiddlin's gravatar image

dunfiddlin
1.2k418

Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or __italic__
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported


Join Us in the Chat Room

Tags:

×192
×134
×87
×20
×2

Asked: Jul 27 '12 at 12:41

Seen: 1,028 times

Last updated: Jul 30 '12 at 18:19