Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Properly setup host override

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 5 Posters 786 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      Mr_T
      last edited by

      I have a single WAN connection with a static IP address
      I have a number of LAN connections with servers behind them..
      I have a number of domains with my dns record all pointed at the Public IP address (The one assigned to the WAN)
      I want query for domain one.com to go to LAN 192.18.2.2
      And query for domain two.com to fo to LAN 192.18.2.3 etc etc. . So spit DNS
      I assumed that host overrides would achieve this but this only seems to work for queries made from within the LAN. Anything external (WAN) does not resolve... I cannot figure out what I am doing wrong.. Any help would be much appreciated.. Its doing my head in!

      1 Reply Last reply Reply Quote 0
      • Bob.DigB
        Bob.Dig LAYER 8
        last edited by Bob.Dig

        What you need is a reverse proxy... like haproxy.

        1 Reply Last reply Reply Quote 0
        • M
          Mr_T
          last edited by

          I was afraid you were going to say that.
          Its going to kill squidguard which i dont really want to do.

          1 Reply Last reply Reply Quote 0
          • S
            scottsen11
            last edited by scottsen11

            To put it in one sentence, Domain Overrides are used to configure specific DNS Servers for particular domains. For an example, let’s assume the following setup. [url=https://droidmoda.com][size=50]droidmoda.com[/size][/url]
            pfSense: 192.168.1.1 – DNS Server for your local network
            Windows Server 2016: 172.16.0.10

            1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator
              last edited by johnpoz

              Why would it kill squidguard.. Use HA proxy for this..

              So someone hits your public IP for one.com it gets sent to 2.2, when someone hits that same public IP for two.com it goes to 2.3..

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              1 Reply Last reply Reply Quote 1
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                Yeah, you can use Squid Reverse proxy for that too. I don't think even that would prevent Squidguard working though. Have you tested that already?

                Steve

                M 1 Reply Last reply Reply Quote 0
                • M
                  Mr_T @stephenw10
                  last edited by

                  @stephenw10
                  i have not been brave enough to test it. I just assumed that having both squid and HA proxy was a bad idea. Will give it a try today and see how it goes.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.