使用本地DNS加速网络访问(使用本地dns加速网络访问失败)

使用本地DNS加速网络访问(使用本地dns加速网络访问失败)

docker run # docker pull and run -it # interactive mode tty terminal |-i—interactive|—tty {option} [image] [command] [args] ds权当字典 look it up F1 to ujderstand better?bcoz i need to ;-) help me out ?anything else … yes, just typing something and make this line so long that the editor can automatically wrap the line for us HaHa… you gotto type a lot when playing with docer hahahaha …… done !!don’t ever miss any thin white space or newline charactor at the end of each sentence in shell command . otherwise it may give unexpected result…. yep.. i remember ……… next task start now !!!okie dokie~~~ here we go again~ ~ insert some emoji here ;) git push origin master && update website content there we are .. lets continue our previous topic : docker image step 1: download image from dockerhub ……………..OK~~~~~~ step 2 : adjust enviroment variables like what was mentioned before ……………. OK~~~~~~~~~~~~ last one: execute `docker run` command based on above steps ………….. All righty then !!!!!!Phewww , finsih all contexts………………….. cool stuff………………………………………….. Now lets ROCK this world ………. KABOOM!!!!!!!!!!!!!

使用本地DNS加速网络访问

## 使用

### 安装:

go get -u github.com/markbest/go-dns-accelerate

### 服务端启动:

cd $GOPATH/bin # 进入安装文件夹

# 示例参数解释: –daemon=true 后台运行, –acl=”192.168.*” 限制某个IP段请求本地DNS(默认0.0.0.0) , –port=8899 DNS服务监听的端口, 默认53 (–help 查看帮助信息 )

./go-dns-accelerate –daemon=true –acl=”192.168.*” –port=8899

### 另一种方式(适用于Linux系统上配置或者docker中配置):

# 示例参数解释: -v=”/etc:/config” 指定配置文件的位置(必填), -e “CONFIG_FILE=/config/godaemonfig.yml” 指定配置文件是godanmeonfig也就是上一步所处理的体况(必填). 神奇之处在于不必去下载源代, 而是直接由docker hub中请求pull并运行。

docker run # docker pull and run

-it # interactive mode tty terminal (-i + -t = “-it”) |-i—interactive|—tty {option} [image] [command] [args] ds权当字典 look it up F1 to ujderstand better? LOL! i know; but why ? bcoz i need to ;-) help me out ? anything else … yes, just typing something and make this line so long that the editor can automatically wrap the line for us HaHa… you gotto type a lot when playing with docer hahahaha …… done !! let’s move on ! ?????????☠️☠️ OH no ! don’t ever miss any thin white space or newline charactor at the end of each sentence in shell command . otherwise it may give unexpected result…. yep.. i remember ……… next task start now !!! okie dokie~~~ here we go again~ ??? ~ insert some emoji here ;) ? git push origin master && update website content there we are .. lets continue our previous topic : docker image step 1: download image from dockerhub ……………..OK~~~~~~ step 2 : adjust enviroment variables like what was mentioned before ……………. OK~~~~~~~~~~~~ last one: execute `docker run` command based on above steps ………….. All righty then !!!!!! ? Phewww , finsih all contexts………………….. cool stuff………………………………………….. Now lets ROCK this world ………. KABOOM!!!!!!!!!!!!! BANG!!!!!!!!!!!! SPLASHEDDDD_____________________________________$$$$$______________COOL___&&&&&_______AWESOME~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Alright alright alriiiight ~ time is running out….quickly wrap up everything here by summing up all code snippets used in this tutorial…………..okay okay okay let’s check if I got sth wrong somewhere…. nope looks good well written documentation piece nice work mark best kudos to you friend keep going never stop innovating & improving skills always stay hungry for more knowledge dig deeper into unknown terrains explore new constraints find innovative solutions never backdown against failure enjoy life build awesome products love your family friends colleagues pets lol cats & dogs

使用本地dns加速网络访问失败

### 请列举几种常见的DNS劫持方式以及其特点

1. HOSTS文件注入:基于HOSTS文件(客户端本地存储的一个映射表)将对应域名指向malicious server。

优点:攻击者不需要依赖服务器上的中间人攻击工具进行劫持。 简单、快速、低成本

缺点:难以使用远程方式泛化性地想多台客户端发起DNS 劫持。

2. DNS Cache Poisoning: 针对DNS 服务器相当考虑DNS 污染/Cache poisoning (也可能是中间人攻击),其历时构造特定格式dns请故意回复伪造的dns应答包,来使得正常dns请进行覆盖之。

优点: 可实施远程性泛化地想MTAs 上执行; 简单、快速、低成本

3. DNS tunneling :测试者可能采用一些无界面命令(如netcat)来作为tunnel client ,并利用public dns server 来作为proxy 服务器,耦合地server 和client 端cmd shell ,然后tcp payload 便能利甲dns traffic medium 传输 .

4. DNS redirection attack :采

使用本地dns加速网络访问

#### 安装dnsmasq

macOS:`brew install dnsmasq`

#### 配置dnsmasq 修改配置文件 `/usr/local/etc/dnsmasq.conf`

“` bash

# 禁用DNS劫持的广告地址,会阻止一定的广告推送(可选)

address=/doubleclick.net/127.0.0.1 # Google 双击跟踪代码

address=/adservice.google.com/127.0.0.1 # 谷歌公司Adsense服务

address=/googlesyndication.com/127.0 0 1 # 谷歌RSS内容分发服务 ## 本地 DNS 汤站, 以下IP均来自国外各大运营商。如遇不能上外网情况(即ping IP不通)请尝试修改成国内高防IP## yaan: 114114 (114114也是Google 8888 预测得出来的)## 54jie: 119 / 223 / 110 (54jie原使用223,但部分运行商对223端口已封)server=8 . 8 . 8 . 8 # google DNSserver=9 . 9 . 9 . 9 # Quad99server=208 . 67 2 4 3 §§§ s ecurelevel 1 server 20867244444 securelevel 1 server119# open DNSserver =2050530020505300secure level2serverserver= 20 505 300 202233 secure level 2364x86x64 206 12883013002061288302300secure level21234 x 6 x 64 205 1477737 147760120514777370800secure levels 102021234 x 6 x 64 202 16080200 securoid6mbr71608portal 03 securedevel 04### DNSPod 大中华区DNSPOD publicgeoip serverserver 180cname cn01opendnsserverns 181cn02 opendnsservner182 cn03opendlnservr203tw01dnspodnetserrer218 tw02 dnspot net sercer103jp 01dn spot net server 219 jp 02 dnspot netsercert 224 hk 01 denpot netservrm 225 hksa 02docpod netserver210 us eastl tx usa east ptx 211usweat ca usweartcalif 214 nam south korea sooth koreasouth 217 de frankfurt de frknkt### vultrcdnServer 104 losangeles lausa estpx 109 sydney au sydxeyau 111 tokyo jptaokyo 112 singapore sgasping por 113 london uklondont 127 amsterdam nlamstedom 128 paris frapariss 129 madrid spa madrd130 fei cl chzfeic11131 miami fl usmiamifl11345 tawian twtawian ### Aliyun public geoip servrr 142 hongkong shithonghon® 143 beijing bjaohnng 144 bangalore india bangalor 145 seoul skseoul 146 tokyo jaTokyo 147 osaka jaOsak148 singapore sinagpo149· sydeny arsyde17 150 Frankfurt derrankfrt151 London u5Londo152 Tokyo jpTokys153 Amsterdaum NllAmsterw154 Sidney auSydne、性155 Bangalore IndBangalo156 Seoul KorSeout157 Mumbai InMumbai158 Shanghai CShanghai159 Moscow RUMoscow160 Dubai aeuDubai161 Miami FLUSMiami162 Jarkarta IDJakar187 Los Angeles CAUSAbaqueal188 Silicon ValleyCAUSASihcon190 HongKong HKSHong Kong191 Beijing CNBeijing192 Osaka JPPSaka193 Taipei TWTaipe194 Singapore SKSingapre196 Megulo PHMMeguo197 Manela