Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Help with domain override setup

    Scheduled Pinned Locked Moved DHCP and DNS
    18 Posts 3 Posters 508 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      krlsantcard
      last edited by

      Thanks for reply.
      I was doing simple testing:
      ping from LAN to DMZ dont respond!!!
      pinh from LAN to GUEST ok.
      and i think that all this odd behavior must be how i have all setup.
      So let me explain.
      I have all virtualize on VMware on my PC (one NIC).
      05.jpg

      my customs adapters
      02.jpg

      and here my networks from window
      03.jpg

      and in pfsense setup
      04.jpg

      from GUEST network all work fine or maybe??
      464b39ed-876c-4622-9140-b3da97fb917b-image.png

      but from LAN a ping to DMZ never respond,
      how ever ping to GUEST respond well.
      rules are open to any.

      Any idea???

      K 1 Reply Last reply Reply Quote 0
      • K
        krlsantcard @krlsantcard
        last edited by

        ipconfig on GUEST network,
        07.jpg

        K 1 Reply Last reply Reply Quote 0
        • K
          krlsantcard @krlsantcard
          last edited by

          ipconfig in LAN
          08.jpg

          Is it why never resolve. ????

          K 1 Reply Last reply Reply Quote 0
          • K
            krlsantcard @krlsantcard
            last edited by

            to finish i have to add to DNS server settings the ip from my dns server on DMZ, is that correct???
            09.jpg

            1 Reply Last reply Reply Quote 0
            • K
              krlsantcard @Gertjan
              last edited by

              @Gertjan Problem Solved!!!!

              Yes i dont know why but was related to virtualizations.
              Just put de VM on the subnet of LAN and get all via DHCP and resolves all like a charm!!!!.
              Now from any subnet work great. i almost give up.
              thanks u all.

              K 1 Reply Last reply Reply Quote 0
              • K
                krlsantcard @krlsantcard
                last edited by

                In order all this work i have to:

                1. DNS Resolver -> Domain Overrides setting:
                  homelab.cu - 10.0.0.50 (DNS server in DMZ)

                2 DNS Resolver -> Access List granted access to LAN and GUEST network (not sure is needed).

                1. leave in blank "DNS Server Settings" fields (System->General setup)(previous filled with google dns but dont resolved my internal dns)

                2. In every interface (LAN, GUEST) under DHCP Server setting:
                  DNS server: IP of interface, 8.8.8.8, 8.8.4.4, 1.1.1.1
                  gateway: IP of interface
                  domain name: homelab.cu
                  (i supose that this way any client conected to any of this interface get network setting via dhcp and when resolver first look in the ip of the domain override, then if fail go to the others dns i setup. Is that correct? ) and isthis the right way to do it??
                  Thanks again and i hope someone can make some clarifications about this notes above.

                johnpozJ 1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator @krlsantcard
                  last edited by johnpoz

                  @krlsantcard no none of that makes any sense.. clients behind pfsense should be really the only dns set on clients. If you want pfsense to forward to google dns or cloudflare than setup pfsense to do so.. But resolving should be fine, its the default you do not have to set any dns IPs

                  Those IPs sure and the hell not going to know about any local resources you want to resolve. And no they do not try in order, when you set more than one nameserver on a client, you really have no idea which one it might ask.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  K 2 Replies Last reply Reply Quote 0
                  • K
                    krlsantcard @johnpoz
                    last edited by

                    @johnpoz said in Help with domain override setup:

                    clients behind pfsense should be really the only dns set on clients.

                    First i made this ways but then dont resolve nothing to the internet. Just my internal dns.

                    So i really lost how i must go on!!!

                    1 Reply Last reply Reply Quote 0
                    • K
                      krlsantcard @johnpoz
                      last edited by

                      @johnpoz said in Help with domain override setup:

                      f you want pfsense to forward to google dns or cloudflare than setup pfsense to do so

                      Please let me put in a way u can understand, what i pretend if type on a browser in LAN o GUEST www.homelab.cu or nas-prod-1.homelab.cu resolve to my DNS server on DMZ, otherwise typing any word, frase then google.

                      1 Reply Last reply Reply Quote 0
                      • K
                        krlsantcard
                        last edited by

                        Well, following ur sugestions remove all dns.
                        Client in GUEST (get via DHCP)
                        12.jpg

                        Is that correct???
                        And a ping to google.

                        then in browser:
                        DNS_PROBE_FINISHED_NXDOMAIN

                        just made a flushdns and problem resolved.
                        so that's the way should be?

                        1 Reply Last reply Reply Quote 0
                        • K
                          krlsantcard
                          last edited by

                          for clarification,
                          on DHCP server -> GUEST (static IP 192.168.42.1) i set
                          DNS servers : 192.168.42.1
                          Gateway: 192.168.42.1
                          Domain name: homelab.cu

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.