Hacking DNS to block the updates of the switch!

Hondyn

Well-Known Member
Member
Joined
Jan 2, 2018
Messages
258
Trophies
0
Age
36
XP
627
Country
United Kingdom
I ve done it alright but that didnt work for me. It goes up to the point where it says its connected to the network device but not to the internet. Here it comes a couple of shots.
Does someone know how to make it work?
 

Attachments

  • 1516006586318199747159.jpg
    1516006586318199747159.jpg
    1,021.9 KB · Views: 589
  • 151600664616272921086.jpg
    151600664616272921086.jpg
    1.1 MB · Views: 559
  • 15160066721102142201030.jpg
    15160066721102142201030.jpg
    1.1 MB · Views: 691

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
Hello, here is the dns to block the updates of the switch. Sorry if I said ca too late because the firmware 2.1.0 is out. Well ... Here's the dns: 205.166.76.187 primary and secondary.

Hi friends!

To this day, Does this 205.166.76.187 DNS keep blocking the firmware updates still allowing online gaming?
 

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
Hi friends!

To this day, Does this 205.166.76.187 DNS keep blocking the firmware updates still allowing online gaming?
Unfortunately it doesn't work :sad:

Please people, Is there currently a DNS that works with 4.1.0 FW in order to block FW updates and that the online game still works?

Because my router doesn't allow me add URLs to block FW updates :sad:
 
Last edited by megamanxx,

TheCyberQuake

Certified Geek
Member
Joined
Dec 2, 2014
Messages
5,012
Trophies
1
Age
28
Location
Las Vegas, Nevada
XP
4,433
Country
United States
Unfortunately it doesn't work :sad:

Please people, Is there currently a DNS that works with 4.1.0 FW in order to block FW updates and that the online game still works?

Because my router doesn't allow me add URLs to block FW updates :sad:
I use fiddler proxy. With the announcement that a userland exploit (nvhax) and a trustzone exploit (deja vu) exist on 4.1.0, I've started blocking updates again. I've just stuck with using fiddler proxy to block the updates.
The nice thing is I can still play online and access eshop while the firmware is still the latest. Which means I've been grabbing games from eshop that seem interesting in preperation for when I won't be able to when an update comes out. I updated past 3.0.0 because the game library just wasn't large enough or good enough for me to stay. But with the much larger collection I now have I should be able to wait on this firmware until we get sploits.
 
  • Like
Reactions: peteruk

TheCyberQuake

Certified Geek
Member
Joined
Dec 2, 2014
Messages
5,012
Trophies
1
Age
28
Location
Las Vegas, Nevada
XP
4,433
Country
United States
What, really? Trustzone sploit on 4.1.0? Why haven't I heard of this before?
Don't remember where it was mentioned but yes. 4.1.0 has one of the intermediary sploits to get there patched, but SciresM said they can likely find another to get to the Deja vu exploit.
Edit: somehow managed to leave the word "patched" out when I originally posted lol
 
Last edited by TheCyberQuake,
  • Like
Reactions: SomeGamer

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
I use fiddler proxy. With the announcement that a userland exploit (nvhax) and a trustzone exploit (deja vu) exist on 4.1.0, I've started blocking updates again. I've just stuck with using fiddler proxy to block the updates.
The nice thing is I can still play online and access eshop while the firmware is still the latest. Which means I've been grabbing games from eshop that seem interesting in preperation for when I won't be able to when an update comes out. I updated past 3.0.0 because the game library just wasn't large enough or good enough for me to stay. But with the much larger collection I now have I should be able to wait on this firmware until we get sploits.
Hello TheCyberQuake, thank you for your response :)

The problem with your solution is that it requires keeping the computer turned on every time you want to use the console, ¿true?. Anyway, this is a interesting method.

Personally, finally I will probably use a second router with the option to block URLs beetwen the Switch and the router.

Is it enough to block these five URLs in order to block FW updates and that the online game still works?

sun.hac.lp1.d4c.nintendo.net
beach.hac.lp1.eshop.nintendo.net
dauth-lp1.ndas.srv.nintendo.net
atumn.hac.lp1.d4c.nintendo.net
aqua.hac.lp1.d4c.nintendo.net


Which particular URLs have you blocked?

Greetings :)
 

merlin555

Master
Member
Joined
Oct 27, 2014
Messages
1,585
Trophies
1
XP
5,831
Country
Germany
Hi,

ON PC:
Go to this site:
https://signup.opendns.com/homefree
Register!
Then:
https://login.umbrella.com/?return_to=https://dashboard.umbrella.com
Goto Settings and fill your servers to block.
Nintendo Switch OR your Router:
Fill you primary and secondary DNS with:
----------------
208.67.222.222
208.67.220.220
----------------

IMPORTANT!
When you IP change, the OpenDNS dont work more.

Use for Firefox the Addon "Public IP Display"
Or:
For Windows:
http://www.myportablesoftware.com/myip.aspx
 

Attachments

  • Zwischenablage01.gif
    Zwischenablage01.gif
    65.6 KB · Views: 356
  • Like
Reactions: Dread_Pirate_PJ

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
Hi,

ON PC:
Go to this site:
https://signup.opendns.com/homefree
Register!
Then:
https://login.umbrella.com/?return_to=https://dashboard.umbrella.com
Goto Settings and fill your servers to block.
Nintendo Switch OR your Router:
Fill you primary and secondary DNS with:
----------------
208.67.222.222
208.67.220.220
----------------

IMPORTANT!
When you IP change, the OpenDNS dont work more.

Use for Firefox the Addon "Public IP Display"
Or:
For Windows:
http://www.myportablesoftware.com/myip.aspx
Oh, very interesting... when I have a little time I will try it.
Thank you.
 

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
Hello friends,

What particular URL/s should be blocked in order to avoid the new 5.0.0 system update from the News feed section?

system-update.jpg
(click for enlarge image)

note: I'm on 4.1.0 and my region is Europe.

Greetings :)
 
Last edited by megamanxx,

Kafluke

Well-Known Member
Member
Joined
May 6, 2006
Messages
5,474
Trophies
0
Age
47
XP
4,636
Country
United States
Okay. I read through 3 or 4 of the last pages to see if there was any info on blocking the 5.0 update and either I'm too tired to see it or I just plain missed it.

I'm currently using the blocking recommended in the Wii u community noob guide

https://gbatemp.net/threads/guide-community-noob-guide-to-wii-u-hacking.451297/

Haven't turned on my switch since beating Mario Odyssey 100% (#brag). Gonna turn off my Wi-Fi before I do.

What do I need to do to prevent my 4.1.0 from updating?
 
Last edited by Kafluke,

JustBrandonT

Well-Known Member
Newcomer
Joined
Mar 11, 2018
Messages
75
Trophies
0
Age
34
XP
518
Country
Canada
Hello friends,

What particular URL/s should be blocked in order to avoid the system update from the News feed section?

View attachment 117449
(click for enlarge image)

Greetings :)



It makes the calls for updates:

beach.hac.lp1.eshop.nintendo.net
sun.hac.lp1.d4c.nintendo.net


and for news, it makes the calls:

bcat-list.lp1.cdn.nintendo.net
bcat-topics-lp1.cdn.nintendo.net

and some other call:
consumer.lp1.npns.srv.nintendo.net (Not sure at all..).
bcat-data-lp1.cdn.nintendo.net (Not sure.. but so far most bcat URL is news so I assume this one is too).


I have a feeling that the `cdn` urls are region based (I'm in Canada so it makes sense my news is different URL than yours.. Not 100% sure though)..

I have blocked the updates URLs and eShop nag URL and it doesn't update (I can still access eShop and online play so far). I didn't block the news because I don't read it or visit it anyway.

Note: I am on 4.1.0 and the above works for me. I don't know about any other versions.

Go to Post #9 on this thread to see what to block (the post is missing the news URLs though).
 
Last edited by JustBrandonT,
  • Like
Reactions: megamanxx

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
It makes the calls for updates:

beach.hac.lp1.eshop.nintendo.net
sun.hac.lp1.d4c.nintendo.net


and for news, it makes the calls:

bcat-list.lp1.cdn.nintendo.net
bcat-topics-lp1.cdn.nintendo.net

and some other call:
consumer.lp1.npns.srv.nintendo.net (Not sure at all..).
bcat-data-lp1.cdn.nintendo.net (Not sure.. but so far most bcat URL is news so I assume this one is too).


I have a feeling that the `cdn` urls are region based (I'm in Canada so it makes sense my news is different URL than yours.. Not 100% sure though)..

I have blocked the updates URLs and eShop nag URL and it doesn't update (I can still access eShop and online play so far). I didn't block the news because I don't read it or visit it anyway.

Note: I am on 4.1.0 and the above works for me. I don't know about any other versions.

Go to Post #9 on this thread to see what to block (the post is missing the news URLs though).
Hello JustBrandomT, thank you!

I'm on 4.1.0 and my region is Europe.
Also, I wish I could continue playing online and also be able to continue using the eShop.

The fact is that I already had blocked those two addresses that you indicate ("beach" and "sun"), the question is that I wanted to know that if my syster by accident tap "Update Now" from News feed section (see image #4 in my previous post), the Switch would be updated since from this section it use another url to the known, or if on the contrary the update would not occur since it uses the same URLs as from "System Settings > System > System Update" option.

But I understand from your answer that I don't have to add any other URL since from the News feed section the same ones are used ("sun" and "beach"), true?

Thank you very much again friend and greetings :)
 
Last edited by megamanxx,

JustBrandonT

Well-Known Member
Newcomer
Joined
Mar 11, 2018
Messages
75
Trophies
0
Age
34
XP
518
Country
Canada
Hello JustBrandomT, thank you!

I'm on 4.1.0 and my region is Europe.
Also, I wish I could continue playing online and also be able to continue using the eShop.

The fact is that I already had blocked those two addresses that you indicate ("beach" and "sun"), the question is that I wanted to know that if my syster by accident tap "Update Now" from News feed section (see image #4 in my previous post), the Switch would be updated since from this section it use another url to the known, or if on the contrary the update would not occur since it uses the same URLs as from "System Settings > System > System Update" option.

But I understand from your answer that I don't have to add any other URL since from the News feed section the same ones are used ("sun" and "beach"), true?

Thank you very much again friend and greetings :)


I just double checked by blocking ALL urls on the system except "ctest.cdn.nintendo.net" (this lets the device know you're connected to the internet.. I tried blocking it but it's kept saying not connect to the internet and the wifi symbol will NOT fill in, and pressing connect on any AP will show an error).

If I press "Update Now" from the "NEWS" section on the system (the one article that says "New system update available.. Hi everybody -- I've miss you blah blah blah..", it makes the following calls:


Host: aauth-lp1.ndas.srv.nintendo.net:443
Host: bcat-topics-lp1.cdn.nintendo.net:443
Host: sun.hac.lp1.d4c.nintendo.net:443


It fails to update :D It turns out it's the same call as if you press update from the system settings menu. In other words, just block that sun.hac and beach.hac urls and you'll be fine (until nintendo changes it).


I am currently blocking:

btajktC.png




They don't all need to be blocked but I'd rather not send analytics and I'd rather not get nagged about things so I blocked those.

EDIT: I am still able to access the eShop. I haven't tried online play yet (I only have Zelda and Mario Kart and Beach Buggy Racing).
EDIT2: I am able to play Mario Kart Deluxe 8 online (They're not enforcing version checking atm). It makes a request to "beach.hac.lp1.eshop.nintendo.net" url (which I blocked), and a few other urls which I didn't block.
 
Last edited by JustBrandonT,
  • Like
Reactions: megamanxx

megamanxx

Active Member
Newcomer
Joined
Jul 30, 2017
Messages
28
Trophies
0
Age
54
XP
342
Country
Spain
I just double checked by blocking ALL urls on the system except "ctest.cdn.nintendo.net" (this lets the device know you're connected to the internet.. I tried blocking it but it's kept saying not connect to the internet and the wifi symbol will NOT fill in, and pressing connect on any AP will show an error).

If I press "Update Now" from the "NEWS" section on the system (the one article that says "New system update available.. Hi everybody -- I've miss you blah blah blah..", it makes the following calls:


Host: aauth-lp1.ndas.srv.nintendo.net:443
Host: bcat-topics-lp1.cdn.nintendo.net:443
Host: sun.hac.lp1.d4c.nintendo.net:443


It fails to update :D It turns out it's the same call as if you press update from the system settings menu. In other words, just block that sun.hac and beach.hac urls and you'll be fine (until nintendo changes it).
Fantastic to know this! Very grateful for your nice work man :)
Anyway, of course, we will try not to tap "Update Now", but knowing this now, there is more peace of mind.

I am currently blocking:

btajktC.png




They don't all need to be blocked but I'd rather not send analytics and I'd rather not get nagged about things so I blocked those.
I am currently blocking:

sun.hac.lp1.d4c.nintendo.net
beach.hac.lp1.eshop.nintendo.net
atumn.hac.lp1.d4c.nintendo.net

I think I'll also block atum.hac.lp1.d4c.nintendo.net like you.
Interesting what you comment about the analytics, maybe I also end up blocking it.

EDIT: I am still able to access the eShop. I haven't tried online play yet (I only have Zelda and Mario Kart and Beach Buggy Racing).
Yeah, I can also still access the eShop and download from there without problems.

EDIT2: I am able to play Mario Kart Deluxe 8 online (They're not enforcing version checking atm). It makes a request to "beach.hac.lp1.eshop.nintendo.net" url (which I blocked), and a few other urls which I didn't block.
Yeah, I am able also still to play Splatoon 2 online without problems, and Oh true, It will be a shame when version checking and enforcing system update to be able to continue playing online occurs since I don't want to stop playing online, so if necessary, I will sadly be forced to update the console if there is no any solution to avoid it.

Thank you very much mate for all your interest and help :)
 
Last edited by megamanxx,

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • SylverReZ @ SylverReZ:
    @Jayro, I don't see whats so special about the DS ML, its just a DS lite in a phat shell. At least the phat model had louder speakers, whereas the lite has a much better screen.
    +1
  • SylverReZ @ SylverReZ:
    They probably said "Hey, why not we combine the two together and make a 'new' DS to sell".
  • Veho @ Veho:
    It's a DS Lite in a slightly bigger DS Lite shell.
    +1
  • Veho @ Veho:
    It's not a Nintendo / iQue official product, it's a 3rd party custom.
    +1
  • Veho @ Veho:
    Nothing special about it other than it's more comfortable than the Lite
    for people with beefy hands.
    +1
  • Jayro @ Jayro:
    I have yaoi anime hands, very lorge but slender.
  • Jayro @ Jayro:
    I'm Slenderman.
  • Veho @ Veho:
    I have hands.
  • BakerMan @ BakerMan:
    imagine not having hands, cringe
    +1
  • AncientBoi @ AncientBoi:
    ESPECIALLY for things I do to myself :sad:.. :tpi::rofl2: Or others :shy::blush::evil:
    +1
  • The Real Jdbye @ The Real Jdbye:
    @SylverReZ if you could find a v5 DS ML you would have the best of both worlds since the v5 units had the same backlight brightness levels as the DS Lite unlockable with flashme
  • The Real Jdbye @ The Real Jdbye:
    but that's a long shot
  • The Real Jdbye @ The Real Jdbye:
    i think only the red mario kart edition phat was v5
  • BigOnYa @ BigOnYa:
    A woman with no arms and no legs was sitting on a beach. A man comes along and the woman says, "I've never been hugged before." So the man feels bad and hugs her. She says "Well i've also never been kissed before." So he gives her a kiss on the cheek. She says "Well I've also never been fucked before." So the man picks her up, and throws her in the ocean and says "Now you're fucked."
    +2
  • BakerMan @ BakerMan:
    lmao
  • BakerMan @ BakerMan:
    anyways, we need to re-normalize physical media

    if i didn't want my games to be permanent, then i'd rent them
    +1
  • BigOnYa @ BigOnYa:
    Agreed, that why I try to buy all my games on disc, Xbox anyways. Switch games (which I pirate tbh) don't matter much, I stay offline 24/7 anyways.
  • AncientBoi @ AncientBoi:
    I don't pirate them, I Use Them :mellow:. Like I do @BigOnYa 's couch :tpi::evil::rofl2:
    +1
  • cearp @ cearp:
    @BakerMan - you can still "own" digital media, arguably easier and better than physical since you can make copies and backups, as much as you like.

    The issue is DRM
  • cearp @ cearp:
    You can buy drm free games / music / ebooks, and if you keep backups of your data (like documents and family photos etc), then you shouldn't lose the game. but with a disk, your toddler could put it in the toaster and there goes your $60

    :rofl2:
  • cearp @ cearp:
    still, I agree physical media is nice to have. just pointing out the issue is drm
  • rqkaiju2 @ rqkaiju2:
    i like physical media because it actually feels like you own it. thats why i plan on burning music to cds
  • cearp @ cearp:
    It's nice to not have to have a lot of physical things though, saves space
    +1
    cearp @ cearp: It's nice to not have to have a lot of physical things though, saves space +1