Bind DNS Server with Master over IPSEC VPN



  • I recently added the bind dns server to pfsense. When I add a slave zone, it is unable to contact the master over the IPSEC vpn. Does anyone know how to force bind to do this?



  • I vaguely recall a similar behavior with pfSense looking at Name Servers over an IPSec tunnel.  IIRC, they had a static route configured for the IP of the DNS server which used the pfSense LAN IP as the Gateway.  (This was an infrastructure I inherited, I promptly dropped IPSec and moved to OpenVPN.)

    Might also work with the Null4 (127.0.0.1) entry?  Would have to try it.

    …ct