Jetzt bin ich verwirrt. Ich habe das mal Deine Punkte ausgeführt. Das deaktivieren werde ich in etwa einer Stunde testen können.
nsswitch.conf geändert!
sudo tcpdump -c 100 -vvveni lo host 127.0.0.1 and port 53 (auf anderer Konsole ping digades.de)
tcpdump: listening on lo, link-type EN10MB (Ethernet), capture size 262144 bytes
12:18:08.369419 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 70: (tos 0x0, ttl 64, id 14398, offset 0, flags [DF], proto UDP (17), length 56)
127.0.0.1.40549 > 127.0.0.53.53: [bad udp cksum 0xfe6b -> 0x3a04!] 35014+ A? digades.de. (28)
12:18:08.369976 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 70: (tos 0x0, ttl 64, id 14399, offset 0, flags [DF], proto UDP (17), length 56)
127.0.0.1.40549 > 127.0.0.53.53: [bad udp cksum 0xfe6b -> 0x55c1!] 27886+ AAAA? digades.de. (28)
12:18:09.270118 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 81: (tos 0x0, ttl 64, id 30176, offset 0, flags [DF], proto UDP (17), length 67)
127.0.0.1.56371 > 127.0.0.1.53: [bad udp cksum 0xfe42 -> 0xa3fa!] 47132+ [1au] A? digades.de. ar: . OPT UDPsize=512 (39)
12:18:10.613621 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 97: (tos 0x0, ttl 64, id 30187, offset 0, flags [none], proto UDP (17), length 83)
127.0.0.1.53 > 127.0.0.1.56371: [bad udp cksum 0xfe52 -> 0x5fe6!] 47132 q: A? digades.de. 1/0/1 digades.de. [1h] A 89.110.155.211 ar: . OPT UDPsize=4096 (55)
12:18:10.613743 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 86: (tos 0x0, ttl 64, id 54220, offset 0, flags [DF], proto UDP (17), length 72)
127.0.0.53.53 > 127.0.0.1.40549: [bad udp cksum 0xfe7b -> 0xf5fd!] 35014 q: A? digades.de. 1/0/0 digades.de. [1h] A 89.110.155.211 (44)
12:18:10.613870 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 70: (tos 0x0, ttl 64, id 54221, offset 0, flags [DF], proto UDP (17), length 56)
127.0.0.53.53 > 127.0.0.1.40549: [bad udp cksum 0xfe6b -> 0xd540!] 27886 q: AAAA? digades.de. 0/0/0 (28)
12:18:10.642824 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 87: (tos 0x0, ttl 64, id 14849, offset 0, flags [DF], proto UDP (17), length 73)
127.0.0.1.37438 > 127.0.0.53.53: [bad udp cksum 0xfe7c -> 0x10f6!] 13421+ PTR? 211.155.110.89.in-addr.arpa. (45)
12:18:12.270058 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 98: (tos 0x0, ttl 64, id 30211, offset 0, flags [DF], proto UDP (17), length 84)
127.0.0.1.34564 > 127.0.0.1.53: [bad udp cksum 0xfe53 -> 0xa870!] 42528+ [1au] PTR? 211.155.110.89.in-addr.arpa. ar: . OPT UDPsize=512 (56)
12:18:15.647914 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 87: (tos 0x0, ttl 64, id 15946, offset 0, flags [DF], proto UDP (17), length 73)
127.0.0.1.37438 > 127.0.0.53.53: [bad udp cksum 0xfe7c -> 0x10f6!] 13421+ PTR? 211.155.110.89.in-addr.arpa. (45)
12:18:18.520053 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 98: (tos 0x0, ttl 64, id 31514, offset 0, flags [DF], proto UDP (17), length 84)
127.0.0.1.40972 > 127.0.0.1.53: [bad udp cksum 0xfe53 -> 0x8f68!] 42528+ [1au] PTR? 211.155.110.89.in-addr.arpa. ar: . OPT UDPsize=512 (56)
12:18:20.644090 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 98: (tos 0x0, ttl 64, id 32025, offset 0, flags [none], proto UDP (17), length 84)
127.0.0.1.53 > 127.0.0.1.34564: [bad udp cksum 0xfe53 -> 0x19ee!] 42528 ServFail q: PTR? 211.155.110.89.in-addr.arpa. 0/0/1 ar: . OPT UDPsize=4096 (56)
12:18:20.644163 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 98: (tos 0x0, ttl 64, id 32026, offset 0, flags [none], proto UDP (17), length 84)
127.0.0.1.53 > 127.0.0.1.40972: [bad udp cksum 0xfe53 -> 0x00e6!] 42528 ServFail q: PTR? 211.155.110.89.in-addr.arpa. 0/0/1 ar: . OPT UDPsize=4096 (56)
12:18:20.644586 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 87: (tos 0x0, ttl 64, id 32027, offset 0, flags [DF], proto UDP (17), length 73)
127.0.0.1.40972 > 127.0.0.1.53: [bad udp cksum 0xfe48 -> 0x91a8!] 42528+ PTR? 211.155.110.89.in-addr.arpa. (45)
12:18:20.644815 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 87: (tos 0x0, ttl 64, id 32028, offset 0, flags [none], proto UDP (17), length 73)
127.0.0.1.53 > 127.0.0.1.40972: [bad udp cksum 0xfe48 -> 0x1126!] 42528 ServFail q: PTR? 211.155.110.89.in-addr.arpa. 0/0/0 (45)
12:18:20.645320 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 87: (tos 0x0, ttl 64, id 55298, offset 0, flags [DF], proto UDP (17), length 73)
127.0.0.53.53 > 127.0.0.1.37438: [bad udp cksum 0xfe7c -> 0x9073!] 13421 ServFail q: PTR? 211.155.110.89.in-addr.arpa. 0/0/0 (45)
12:18:20.645607 00:00:00:00:00:00 > 00:00:00:00:00:00, ethertype IPv4 (0x0800), length 87: (tos 0x0, ttl 64, id 55299, offset 0, flags [DF], proto UDP (17), length 73)
127.0.0.53.53 > 127.0.0.1.37438: [bad udp cksum 0xfe7c -> 0x9073!] 13421 ServFail q: PTR? 211.155.110.89.in-addr.arpa. 0/0/0 (45)
host -t A loc.gov
host -t A loc.gov
loc.gov has address 104.16.246.35
loc.gov has address 104.16.247.35
loc.gov has address 104.16.248.35
loc.gov has address 104.16.244.35
loc.gov has address 104.16.245.35
im LAN: sudo tcpdump -c 100 -vvveni eno1 host 192.168.0.2 and port 53 (auf anderer Konsole ping tagesschau.de)
tcpdump: listening on eno1, link-type EN10MB (Ethernet), capture size 262144 bytes
tcpdump: listening on eno1, link-type EN10MB (Ethernet), capture size 262144 bytes
12:23:07.285021 f0:1f:af:45:ee:20 > 00:19:db:b9:f0:eb, ethertype IPv4 (0x0800), length 84: (tos 0x0, ttl 64, id 7553, offset 0, flags [DF], proto UDP (17), length 70)
192.168.0.101.38599 > 192.168.0.2.53: [bad udp cksum 0x81fb -> 0xd958!] 33238+ [1au] A? tagesschau.de. ar: . OPT UDPsize=512 (42)
12:23:07.285125 f0:1f:af:45:ee:20 > 00:19:db:b9:f0:eb, ethertype IPv4 (0x0800), length 84: (tos 0x0, ttl 64, id 7554, offset 0, flags [DF], proto UDP (17), length 70)
192.168.0.101.55280 > 192.168.0.2.53: [bad udp cksum 0x81fb -> 0x95d5!] 26928+ [1au] AAAA? tagesschau.de. ar: . OPT UDPsize=512 (42)
12:23:07.530936 00:19:db:b9:f0:eb > f0:1f:af:45:ee:20, ethertype IPv4 (0x0800), length 100: (tos 0x0, ttl 64, id 55204, offset 0, flags [none], proto UDP (17), length 86)
192.168.0.2.53 > 192.168.0.101.38599: [udp sum ok] 33238 q: A? tagesschau.de. 1/0/1 tagesschau.de. [1d] A 88.215.213.26 ar: . OPT UDPsize=4096 (58)
12:23:07.530963 00:19:db:b9:f0:eb > f0:1f:af:45:ee:20, ethertype IPv4 (0x0800), length 142: (tos 0x0, ttl 64, id 55205, offset 0, flags [none], proto UDP (17), length 128)
192.168.0.2.53 > 192.168.0.101.55280: [udp sum ok] 26928 q: AAAA? tagesschau.de. 0/1/1 ns: tagesschau.de. [3h] SOA ns1.dunkel.de. hostmaster.dunkel.de. 2018100201 10000 1250 2419200 86400 ar: . OPT UDPsize=4096 (100)
12:23:07.558555 f0:1f:af:45:ee:20 > 00:19:db:b9:f0:eb, ethertype IPv4 (0x0800), length 97: (tos 0x0, ttl 64, id 7609, offset 0, flags [DF], proto UDP (17), length 83)
192.168.0.101.58042 > 192.168.0.2.53: [bad udp cksum 0x8208 -> 0x523f!] 52835+ [1au] PTR? 26.213.215.88.in-addr.arpa. ar: . OPT UDPsize=512 (55)
12:23:11.468080 00:19:db:b9:f0:eb > f0:1f:af:45:ee:20, ethertype IPv4 (0x0800), length 157: (tos 0x0, ttl 64, id 55472, offset 0, flags [none], proto UDP (17), length 143)
192.168.0.2.53 > 192.168.0.101.58042: [udp sum ok] 52835 NXDomain q: PTR? 26.213.215.88.in-addr.arpa. 0/1/1 ns: 213.215.88.in-addr.arpa. [3h] SOA ns1.dunkel.de. hostmaster.dunkel.de. 2017060101 10000 7200 2419200 86400 ar: . OPT UDPsize=4096 (115)
im LAN: host -t A bund.de 192.168.0.2
Using domain server:
Name: 192.168.0.2:53
Address: 192.168.0.2:53
Aliases:
bund.de has address 77.87.229.48