Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DNS Issue - DNS Couldn't Resolve Hosts Sometime

    Scheduled Pinned Locked Moved DHCP and DNS
    11 Posts 5 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      sachinaddy
      last edited by

      Hi,

      I've brand new setup of pfsense. Simply I set as follows.

      a) IP and Gateway in WAN Interface
      b) DNS as 8.8.8.8 using gateway IP.
      c) Allow DNS server list to be overridden by DHCP/PPP on WAN - Unchecked
      d) Do not use the DNS Forwarder as a DNS server for the firewall - Check

      Please let me know how do I enable logs to identify the issue and post here? My internet is working fine because when I use router with same setting, no dns issue is happening.

      Regards,
      Sachin

      1 Reply Last reply Reply Quote 0
      • johnpozJ Offline
        johnpoz LAYER 8 Global Moderator
        last edited by

        "b) DNS as 8.8.8.8 using gateway IP."

        So your using forwarder not the resolver, or you have the resolver in forwarder mode?

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

        1 Reply Last reply Reply Quote 0
        • KOMK Offline
          KOM
          last edited by

          What do you mean by sometime?  Hourly?  Daily?  And what is having problems, pfsense itself or a LAN client?  The default install uses the DNS Resolver which does not need any upstream DNS defined.  It should just work.  Can you vierify that DNS Resolver is enabled and working?

          1 Reply Last reply Reply Quote 0
          • S Offline
            sachinaddy
            last edited by

            Within couple of hours it happens.. Some page opens, some page doesn't… Then after 10-15 mins, it worked fine.

            All my clients are connected via LAN to pfsense and the problem happens with all the clients. Around 20 nodes. In all nodes, DNS is set to pfsense local IP (192.168.0.1)

            The default install uses the DNS Resolver which does not need any upstream DNS defined. --- How to check?

            Can you verify that DNS Resolver is enabled and working? -- How to check?

            1 Reply Last reply Reply Quote 0
            • johnpozJ Offline
              johnpoz LAYER 8 Global Moderator
              last edited by

              is the resolver running or dnsmasq?  Look on the resolver is it enabled, or is the forwarder enabled?

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

              1 Reply Last reply Reply Quote 0
              • S Offline
                sachinaddy
                last edited by

                Please find the screenshot attached..

                I use only IPv4.

                ![DNS Forwarder.PNG](/public/imported_attachments/1/DNS Forwarder.PNG)
                ![DNS Forwarder.PNG_thumb](/public/imported_attachments/1/DNS Forwarder.PNG_thumb)
                ![DNS Resolver.PNG](/public/imported_attachments/1/DNS Resolver.PNG)
                ![DNS Resolver.PNG_thumb](/public/imported_attachments/1/DNS Resolver.PNG_thumb)
                ![DNS Server.PNG](/public/imported_attachments/1/DNS Server.PNG)
                ![DNS Server.PNG_thumb](/public/imported_attachments/1/DNS Server.PNG_thumb)
                LAN-1.PNG
                LAN-1.PNG_thumb
                LAN-2.PNG
                LAN-2.PNG_thumb
                WAN-1.PNG
                WAN-1.PNG_thumb
                WAN-2.PNG
                WAN-2.PNG_thumb
                ![Homepage DNS.PNG](/public/imported_attachments/1/Homepage DNS.PNG)
                ![Homepage DNS.PNG_thumb](/public/imported_attachments/1/Homepage DNS.PNG_thumb)

                1 Reply Last reply Reply Quote 0
                • S Offline
                  sachinaddy
                  last edited by

                  Hi… Please let me know what i need to change in setting...

                  1 Reply Last reply Reply Quote 0
                  • Y Offline
                    YipYip
                    last edited by

                    In the DNS settings under general Add your DNS server 192.168.0.1 before 8.8.8.8

                    1 Reply Last reply Reply Quote 0
                    • KOMK Offline
                      KOM
                      last edited by

                      If you're not using the Forwarder, and you're not using the Resolver in forwarding mode, then those DNS settings aren't used if I recall correctly.  I just looked through the thread again and I'm not seeing any evidence there is anything DNS-related.  He says sometimes he can't get to a website and then later he can.  He is either assuming it's a DNS issue or there was a specific error message about DNS that he didn't share with us.

                      The next time it happens, use Diagnostics - DNS Lookup to check to see if you can resolve that hostname.

                      1 Reply Last reply Reply Quote 0
                      • H Offline
                        himanshu dua
                        last edited by

                        Dear Kom,

                        i am also facing the same issue,  we are able to open every site. except "booking.com"  but some time its opens and when you click on any option then again the error comes "secure.booking.com’s server DNS address could not be found"  i really dont understan what is the issue. i tried to ping www.booking.com from my computer which is connected to pfsense via wifi.  it doesnt go.

                        but some of the computer via lan or wan they access for sometime and later the same issue.  i went to dignositics/ dnslookup it resolve name to IP 5.57.16.220. pls let me know what can be the isssue.

                        Regards,
                        Himanshu Dua

                        1 Reply Last reply Reply Quote 0
                        • KOMK Offline
                          KOM
                          last edited by

                          1. Please don't hijack other peoples's threads.

                          2.  Sounds like just a transient DNS issue with that domain's DNS provider.  If it only happens with one site some of the time then I would assume the issue is on their end.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.