Your ISP(Internet service provider) runs DNS servers for you, most of needn't to care about it.
In China, DNS spoofing is a common phenomenon. For example, I want to query the dns record of google.com on my PC.
dig @22.214.171.124 google.com +short 126.96.36.199
It return with fake ip
188.8.131.52 which is an Italian ip address.
That's why to choose a thrid party dns server.
Popular third-party DNS providers like Google Public DNS or OpenDNS may be faster for you(if you are not in china)
dig @184.108.40.206 google.com +short ; <<>> DiG 9.11.0 <<>> @220.127.116.11 google.com +short ; (1 server found) ;; global options: +cmd ;; connection timed out; no servers could be reached
OK, I can't connect to
18.104.22.168. Don't be too sad, there are still some 3rd party dns can be use in China.
22.214.171.124 126.96.36.199 #Versign
188.8.131.52 184.108.40.206 #OpenDNS
220.127.116.11 18.104.22.168 #Yandex
22.214.171.124 126.96.36.199 #Aliyun
188.8.131.52 184.108.40.206 220.127.116.11 18.104.22.168 22.214.171.124 126.96.36.199 #USTC
If you are using non-chinese dns in China, sometimes, the result of dns query may be not fit for you.
For an example, you were visiting youku.com(a media website in china), foreign dns server offen return a cdn ip that not feat for china users, you would found that it is to slow to watch video.
If you ISP don't block non-isp dns server, just look through google 'How to change DNS Servers on your system'.
Unfortunately, my ISP block all dns servers except theirs. So I must find out someways to use 3rd party dns servers.
Firstly, install Dnsmasq, it is easy to install it by apt-get command.
apt-get install dnsmasq
Then, change dnsmasq config
Dnsmasq config file locaition:
Change port to a port that you can connet from your pc.
Default DNS port is 53 udp.And I choose 5353 that is easy to memorize.
At the same time, you can uncomment the line
#conf-dir=/etc/dnsmasq.d, by doing this, you can put custom dns record in folder
Restart dnsmasq to make config applied.
service dnsmasq restart
Finally you can use your vps as DNS Server
You can try DNSCrypt.
188.8.131.52 is a DNS provided by CNNIC, many people use this as primarydns server.
184.108.40.206 is a famous IP in china.
DNS spoofing: A DNS cache can become poisoned if it contains an incorrect entry