trafic not routed via opendns

Polemus

Expert Member
Joined
Aug 12, 2009
Messages
1,087
Reaction score
19
Location
Three Rivers, Gauteng
Hi There

I have been using opendns.com for years, but ever since i switched to iburst it does not seem to have an effect.

my network at home:

iburst Desktop Modem --- connected to my billion 800 router --- all devices at home connects through my router, and on my router i have set my dns server to the settings specified on opendns.com

my router acts as a WAN (i think that's what it is called) so all trafic gets routed through it towards my iburst modem and onto the web.

I know the above might sound weird, but i am not a network guy :)

I have software on my homeserver that update's opendns on an hourly basis, so my ip is always reflected on opendns, but for some reason it is not blocking anything.


if i do a tracert to google.co.za it does not seem to go through opendns (IP: 208.67.222.222), see below:

Tracing route to google.co.za [74.125.39.103]
over a maximum of 30 hops:

1 <1 ms <1 ms <1 ms home.gateway [10.0.0.2]
2 76 ms 44 ms 44 ms iburst-41-56-220-1.iburst.co.za [41.56.220.1]
3 83 ms 44 ms 44 ms 192.168.2.3
4 183 ms 49 ms 44 ms 192.168.2.9
5 142 ms 44 ms 44 ms 192.168.2.20
6 83 ms 49 ms 54 ms 41.181.67.185
7 69 ms 59 ms 59 ms 196.7.21.30
8 73 ms 49 ms 54 ms tb-cr-1--ct-cr-1-a.mtnns.net [196.44.31.210]
9 153 ms 105 ms 283 ms rb-cr-1.za--ct-cr-1.za.mtnns.net [196.44.31.128]

10 113 ms 109 ms 103 ms 196.44.31.97
11 228 ms 69 ms 113 ms 196.30.1.39
12 114 ms 158 ms 239 ms tengigabitethernet1-1.gw20.jnb6.za.mtnbusiness.n
et [196.31.220.23]
13 133 ms 105 ms 103 ms 41.181.71.185
14 113 ms 213 ms 69 ms 41.181.71.186
15 251 ms 90 ms 323 ms 192.168.0.114
16 187 ms 105 ms 74 ms iburst-41-213-126-21.iburst.co.za [41.213.126.21
]
17 306 ms 265 ms 269 ms ldn-b4-link.telia.net [213.248.95.177]
18 391 ms 494 ms 274 ms ldn-bb2-link.telia.net [80.91.251.14]
19 322 ms 275 ms 248 ms prs-bb2-link.telia.net [80.91.247.240]
20 296 ms 420 ms 278 ms ffm-bb1-link.telia.net [80.91.245.100]
21 332 ms 464 ms 289 ms ffm-b7-link.telia.net [80.91.249.107]
22 344 ms 278 ms * google-ic-120086-ffm-b7.c.telia.net [80.239.193.
138]
23 333 ms 280 ms 263 ms 72.14.238.44
24 277 ms 295 ms 419 ms 72.14.239.60
25 369 ms 279 ms 275 ms 209.85.254.116
26 399 ms * 405 ms 209.85.249.162
27 273 ms 284 ms 285 ms fx-in-f103.1e100.net [74.125.39.103]

Trace complete.

i get the feeling that the iburst modem's dns settings takes preference.

Is there a way to get this working, or am i farting against thunder?

I would prefer to set the dns settings on my router, that way all devices in the house is safe from porn (i have a 13 year old son).

Please help
 
A tracert will not show you whether you are using opendns or not. (That will be used before execution to determine the ip address of google.co.za)

Depending on your setup (if you do not have a dns server on your network) you can determine if you are using opendns by doing:
nslookup google.co.za

Look at which server serves the request.

If you do have a dns server on your network, then go to the following link and run the test:
https://www.grc.com/dns/dns.htm
 
A tracert will not show you whether you are using opendns or not. (That will be used before execution to determine the ip address of google.co.za)

Depending on your setup (if you do not have a dns server on your network) you can determine if you are using opendns by doing:
nslookup google.co.za

Look at which server serves the request.

If you do have a dns server on your network, then go to the following link and run the test:
https://www.grc.com/dns/dns.htm


this is what i get:
C:\Users\Dusty>nslookup google.co.za
Server: home.gateway
Address: 10.0.0.2

Non-authoritative answer:
Name: google.co.za
Addresses: 74.125.39.106
74.125.39.105
74.125.39.104
74.125.39.147
74.125.39.103
74.125.39.99


and if i do the test on the url you gave me, this is what i get:

Anti-Spoofing Safety: Excellent
Server Name: m12.ams.opendns.com
.... and a whole bunch of stuff i do not understand :)
 
IIRC iBurst runs a proxy server, and as a result OpenDNS will not work.
Proxy server intercepts http traffic (port 80) not DNS udp traffic (port 53)

I would prefer to set the dns settings on my router, that way all devices in the house is safe from porn (i have a 13 year old son).

Please help
If you are running DHCP on your PC, you will be assigned iBurst DNS server
You can overide which DNS server you want to use in your Network settings on your PC
 
Last edited:
Proxy server intercepts http traffic (port 80) not DNS udp traffic (port 53)


If you are running DHCP on your PC, you will be assigned iBurst DNS server
You can overide which DNS server you want to use in your Network settings on your PC

only problem here is:

I have multiple pc's scattered around the house, and he has a ps3 in his room... all connected to the router via wifi and ether, so the only place to logically set it is on the router.

but if that is the only option, then i will have to set the dns settings manually on all the hardware
 
Anti-Spoofing Safety: Excellent
Server Name: m12.ams.opendns.com
It's really not a good idea to use a DNS server that is not located physically close to you. Your latency when opening sites will be much higher. More importantly: when accessing content distribution networks you will be redirected to servers on another continent instead of the local ones.

It appears that you are talking to the OpenDNS cluster in Amsterdam. This means that your computer will connect to Google servers in Europe rather than the servers in Cape Town that are much faster.
 
It's really not a good idea to use a DNS server that is not located physically close to you. Your latency when opening sites will be much higher. More importantly: when accessing content distribution networks you will be redirected to servers on another continent instead of the local ones.

It appears that you are talking to the OpenDNS cluster in Amsterdam. This means that your computer will connect to Google servers in Europe rather than the servers in Cape Town that are much faster.

latency is not really an issue... the web is fast enough for what we want it to do... browsing :) for me it is all making the internet connection at home safe..

but i will keep it in mind though, thanx
 
this is what i get:
C:\Users\Dusty>nslookup google.co.za
Server: home.gateway
Address: 10.0.0.2

This portion shows that you have a server on your network which is doing the dns resolution. Most likely your router.

and if i do the test on the url you gave me, this is what i get:

Anti-Spoofing Safety: Excellent
Server Name: m12.ams.opendns.com

This last line shows that your server is using opendns for its dns lookups.

So I think you are fine. I am also using opendns and would rather have the protection than saving a few milliseconds.
 
This portion shows that you have a server on your network which is doing the dns resolution. Most likely your router.



This last line shows that your server is using opendns for its dns lookups.

So I think you are fine. I am also using opendns and would rather have the protection than saving a few milliseconds.

so according to everyone here, my setup should work... but for seem reason, site's are not blocked.
 
Top
Sign up to the MyBroadband newsletter
X