Hacker News new | ask | show | jobs
by bitlevel 2014 days ago
Yep, pretty much the above - I have a combination of rules that control all traffic. Only the router is allowed to use port 53 outbound - all other traffic is redirected using NAT to the router's DNS server.

I mentioned Mikrotik previously - I use them myself.