一、dns污染
opkg update
opkg install nano
nano /etc/dnsmasq.conf
#添加:conf-dir=/etc/dnsmasq.d

mkdir /etc/dnsmasq.d
chmod -R 700 /etc/dnsmasq.d
nano /etc/dnsmasq.d/mygfw.conf
******************添加要封锁的域名***********************
address=/abc.com/0.0.0.0 (封锁abc全域)
address=/01.abc.com/0.0.0.0 (封锁abc二级域)
address=/01.02.abc.com/0.0.0.0 (封锁abc三级域)
***********************************************************
/etc/init.d/dnsmasq restart (重启dnsmasq)
二、iptables (主要用于封ip)
iptables -I FORWARD -d www.abc.com -j DROP
iptables -I FORWARD -d 202.6.6.6 -j DROP
