Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    VPN traffic not using VPN DNS only main DNS

    Scheduled Pinned Locked Moved OpenVPN
    4 Posts 2 Posters 700 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R
      Rm17
      last edited by

      I have set two VPN client with expressVPN both are up and working (reaching the vpn IP) however instead of using vpn's dns is using my local configured DNS

      I would like for each vpn client to go to their respective dns assign by VPN

      here are my settings

      3f15d25d-219d-4b33-bc44-7a9d4668a720-image.png

      setting in VPN client

      bd2adeca-6765-40de-bc2e-9fa2eb961fe6-image.png

      DNS RESOLVER

      f3db1c54-fd26-4af5-82ab-a5d53b591109-image.png

      How can i set for devices routed to vpn to use their DNS and device not on vpn to use my local DNS?

      Bob.DigB 1 Reply Last reply Reply Quote 0
      • Bob.DigB
        Bob.Dig LAYER 8 @Rm17
        last edited by Bob.Dig

        @rm17 Best is to use DHCP for that. Give those clients 8.8.8.8 or what ever you want as their DNS servers and there will be no more DNS leaks. You loose the ability to use DNS-overrides and pfBlocker's sinkhole on those clients but this is the way (in pfSense). There is no logic in place that would allow to policy route DNS too.

        R 1 Reply Last reply Reply Quote 0
        • R
          Rm17 @Bob.Dig
          last edited by

          @bob-dig My issue is i want to use the DNS of the VPN in this case expressvpn which is assign automatically from dchp on their end once connection is established. Putting 8.8.8.8 wont solve anything. Essentially i want when a client that is routed through vpn asks for a dns the resolver fowards that request to the VPN gateway for that specific client

          Bob.DigB 1 Reply Last reply Reply Quote 0
          • Bob.DigB
            Bob.Dig LAYER 8 @Rm17
            last edited by Bob.Dig

            @rm17 "We" all want this but it is not gonna happen. Again, there is no policy routing for the resolver in pfSense.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.