Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Squid (pfsense package) DNS pointed to pi-hole or not?

    Scheduled Pinned Locked Moved Cache/Proxy
    11 Posts 4 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K
      kevindd992002
      last edited by

      So I started using pi-hole as my main DNS server. Pi-hole's upstream DNS server is the pfsense unbound service. The pfsense DHCP server is configured to hand out the Pi-hole IP address as the primary DNS server for clients.

      As I understand it, it is not recommended to point pfsense to use Pi-hole and just let it use 127.0.0.1 (its own unbound service). Why?

      Does the same logic apply to the Squid pfsense package also? Let it use 127.0.0.1 or point to Pi-hole?

      @johnpoz , I know you're an expert on this topic.

      1 Reply Last reply Reply Quote 0
      • K
        kevindd992002
        last edited by

        @johnpoz Do you still have any ideas on my questions?

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by johnpoz

          Not even sure why this is a question - what logic do you have to point pfsense to pihole, just to come back to pfsense..

          Pi-hole's upstream DNS server is the pfsense unbound service

          If what your looking to do is break dns - sure go ahead and do that and create your circle..

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          K 1 Reply Last reply Reply Quote 0
          • K
            kevindd992002 @johnpoz
            last edited by

            @johnpoz said in Squid (pfsense package) DNS pointed to pi-hole or not?:

            Not even sure why this is a question - what logic do you have to point pfsense to pihole, just to come back to pfsense..

            Pi-hole's upstream DNS server is the pfsense unbound service

            If what your looking to do is break dns - sure go ahead and do that and create your circle..

            Though I appreciate all your help, I'm not sure why you decide to be condescending 100% of the time. Why can't you simply help people? Not everyone is as knowledgeable as you are, which is why there's this forum.

            Obviously, I did my research which is why I said above that "I know it is not recommended to point pfsense to pi-hole". I was simply asking the "why".

            My first question is just a side question. My main question is the 2nd one:

            Does the same logic apply to the Squid pfsense package also? Let it use 127.0.0.1 or point to Pi-hole? You're not breaking DNS if you do this. One use case for this is you want your proxy server to be included in the stats in pi-hole that make the graph.

            1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator
              last edited by johnpoz

              Not my fault you read condescension into everything dude.. Maybe you should seek some help for your low self esteem??

              Not sure what you want other than the answer to your questions... This question is so freaking moronic that I answered in the first place is beyond me..

              If you point pfsense to pihole, and you point pihole to pfsense - how and the F would that work???

              spiderman.jpg

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              K 1 Reply Last reply Reply Quote 0
              • PippinP
                Pippin
                last edited by

                Just johnpoz's way to get a point across, relax ;)

                I gloomily came to the ironic conclusion that if you take a highly intelligent person and give them the best possible, elite education, then you will most likely wind up with an academic who is completely impervious to reality.
                Halton Arp

                1 Reply Last reply Reply Quote 0
                • K
                  kevindd992002 @johnpoz
                  last edited by

                  @johnpoz said in Squid (pfsense package) DNS pointed to pi-hole or not?:

                  Not my fault you read condescension into everything dude..

                  Not sure what you want other than the answer to your questions... This question is so freaking moronic that I answered in the first place is beyond me..

                  If you point pfsense to pihole, and you point pihole to pfsense - how and the F would that work???

                  It does work! It's not an infinite loop! The pfsense squid proxy points to pi-hole for DNS queries. Pi-hole forwards the query to pfsense and pfsense forwards to ISP! So it's just one circle, not an infinite loop! Unbound will always know when to forward. So go figure!

                  @Pippin said in Squid (pfsense package) DNS pointed to pi-hole or not?:

                  Just johnpoz's way to get a point across, relax ;)

                  Yeah, I guess that's a non-standard way of having a conversation with people.

                  GertjanG 1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan @kevindd992002
                    last edited by Gertjan

                    @kevindd992002 said in Squid (pfsense package) DNS pointed to pi-hole or not?:

                    Yeah, I guess that's a non-standard way ...

                    You should have met the off-standard guy. Hunt down some @doktornotor replies.
                    Warning : Don't drink or eat will you read, you'll suffocate at worst, and at best your screen and keyboard will be dirty.

                    Check out this recent video : https://www.youtube.com/watch?v=6wToQrcvkF8

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    K 1 Reply Last reply Reply Quote 0
                    • K
                      kevindd992002 @Gertjan
                      last edited by

                      @Gertjan said in Squid (pfsense package) DNS pointed to pi-hole or not?:

                      @kevindd992002 said in Squid (pfsense package) DNS pointed to pi-hole or not?:

                      Yeah, I guess that's a non-standard way ...

                      You should have met the off-standard guy. Hunt down some @doktornotor replies.
                      Warning : Don't drink or eat will you read, you'll suffocate at worst, and at best your screen and keyboard will be dirty.

                      Check out this recent video : https://www.youtube.com/watch?v=6wToQrcvkF8

                      Yeah, that guy is notorious.

                      I actually watched that exact video a few hours ago but I'm not sure how it's relevant to my question? (no offsense meant). I wasn't trying to compare pi-hole and pfblockerNG.

                      1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan
                        last edited by

                        True ... but the same guy sows more about PI-Hole (check out his channel ) - and how to set it up, related to pfSense.

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        K 1 Reply Last reply Reply Quote 0
                        • K
                          kevindd992002 @Gertjan
                          last edited by

                          @Gertjan Ahh, I see what you're saying. Thanks!

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.