cancel
Showing results for 
Search instead for 
Did you mean: 

Need block dns or internet on one host

Getting noticed

Need block dns or internet on one host

Hello!

I have one question. On another routers for blocking dns and host dont have access to internet i use block dns 53 port udp for host.

In meraki when i create rule Deny UDP Source myhost/32 Destination Any 53 nothing happens.

Maybe i something write wrong or missed ?

Thank you

5 REPLIES 5
Head in the Cloud

Re: Need block dns or internet on one host

It may not take effect immediately on current network flows/sessions.  If you think the rule is correct and applied to the client I would try rebooting the machine or refresh network settings and test again.  You might try blocking tcp 53 also.

Getting noticed

Re: Need block dns or internet on one host

Done, work good. But when i blocked 53 port not working when blocking any. I dont understand what dns need blocking which wrote to DHCP ? or GW ?
Kind of a big deal

Re: Need block dns or internet on one host

If you don't want them to access the Internet - why not just block them completely?

Getting noticed

Re: Need block dns or internet on one host

Hello!
I need that this host use local lan. Example security vlan, where DVR and cameras
Getting noticed

Re: Need block dns or internet on one host

Hello! I resolved my problem. If anybody need block dns (resolving names) you need create rule
Deny Any Hostwichneedblock/32 Any Your dns Any
You asked, why in PORTS any? I know ghat dns working on 53 port, but command NETSTAT showed that host didnt use 53 port. Maybe somebody can tell which port, but my solution working. Thank you

Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.