Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can't get DNS resolve to work with domain without tld.

    Scheduled Pinned Locked Moved DHCP and DNS
    9 Posts 3 Posters 866 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bihzs
      last edited by

      I have little trouble to get dns resolve to point domain without FQDN to my local server. E.g. I have domain happydays-test and want to point ip xx.xx.xx.xx. Is it possible?

      I used before windows server dns to handle this and it works perfect, but because I turned my windows server off and tried to make pfsense to handle dns.

      My configuration:
      step_1.png step-2.png

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @bihzs
        last edited by johnpoz

        @bihzs said in Can't get DNS resolve to work with domain without tld.:

        happydays-test

        are your clients asking pfsense for dns?

        workshere.jpg

        But why? Why you not just use a fqdn? The special domain to use locally, if you don't know what to use would be home.arpa this is what pfsense defaults to using as domain.

        so for example
        happydays-test.home.arpa would be a fqdn.

        If you set the home.arpa as your search domain, then clients would auto add that when just looking for happydays-test

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        B 1 Reply Last reply Reply Quote 0
        • B
          bihzs @johnpoz
          last edited by

          @johnpoz
          Hi John thanks for your response/feedback.
          I need this becuase I work at home and need to connect to my workplace and they used not full FQDN. I had before run AD with DHCP + DNS on windows server and there worked it perfect and moved this to pfsense to handle my dns because of time safe and maintain handle.

          I had configured like your examples and they show me no results. Do i miss something ? and do you using resolver or forwarder ?

          Selection_127.png

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @bihzs
            last edited by johnpoz

            @bihzs your laptop is asking who exactly for dns - its using its own local loopback address, so you really have no idea where that asks for actual dns.

            laptop.jpg

            Change your dig command to ask pfsense IP, so your sure that is working. Use the @IPaddress of your pfsense IP on your network. See in my example I called out @192.168.9.253, this is IP of my lan on pfsense. By default I use pihole on my network, and it would not forward a non fqdn to pfsense to resolve. So just asked pfsense directly with the @

            And I use resolver. You sure you put your host override in what your actually using - that happens now and then user using forward and put host override in resolver, or using resolver and put host override in forwarder.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            B 1 Reply Last reply Reply Quote 0
            • B
              bihzs @johnpoz
              last edited by bihzs

              @johnpoz it's shows when I try dns lookup than it point's on correct ip address. But in my browser it still complain about dns.

              Selection_128.png

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator @bihzs
                last edited by

                @bihzs well is your browser using doh? They love to do that.

                But clearly pfsense is answering with the info you put in.. If your client or application doesn't ask pfsense for that, its not pfsense fault ;)

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                B 1 Reply Last reply Reply Quote 1
                • B
                  bihzs @johnpoz
                  last edited by

                  Hi @johnpoz,
                  Thanks it works i found the solution. I was need to implement my gateway ip adress on my ubuntu in /etc/resolve.conf before it works.

                  Thanks again for you help.

                  johnpozJ kiokomanK 2 Replies Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator @bihzs
                    last edited by

                    @bihzs what was it using before? While unbound running on pfsense would yeah be the same IP as your gateway.. Its not actually your gateway, resolve.conf would point to what you want to use for dns ;)

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    1 Reply Last reply Reply Quote 0
                    • kiokomanK
                      kiokoman LAYER 8 @bihzs
                      last edited by

                      @bihzs
                      if it's ubuntu take a look at /etc/systemd/resolved.conf
                      #DNS=
                      or there is a possibility that you will lose that setting on the next reboot

                      ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
                      Please do not use chat/PM to ask for help
                      we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
                      Don't forget to Upvote with the 👍 button for any post you find to be helpful.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.