ferm/services-eve/45-dns

15 lines
485 B
Plaintext

&def_service(dns, dns, udp, 53);
&def_service(dns2, dns, tcp, 53);
#&def_service(dns, dns1.evenet.dn42, udp, 53);
&forward_to_service(dns, udp, 53);
&forward_to_service(dns2, tcp, 53);
&allow_service_for_all(dns);
&allow_service_for_all(dns2);
# chain to allow forwarding to the service
domain ip table filter chain FORWARD {
@def $ns1_ip4 = @resolve(ns1.evenet.dn42, A);
@def $ns2_ip4 = @resolve(ns2.evenet.dn42, A);
daddr ($ns1_ip4 $ns2_ip4) protocol udp dport 53 ACCEPT;
}