Bind DNS Server with Master over IPSEC VPN

  • I recently added the bind dns server to pfsense. When I add a slave zone, it is unable to contact the master over the IPSEC vpn. Does anyone know how to force bind to do this?

  • I vaguely recall a similar behavior with pfSense looking at Name Servers over an IPSec tunnel.  IIRC, they had a static route configured for the IP of the DNS server which used the pfSense LAN IP as the Gateway.  (This was an infrastructure I inherited, I promptly dropped IPSec and moved to OpenVPN.)

    Might also work with the Null4 ( entry?  Would have to try it.


Log in to reply