Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    DNS server setup

    DHCP and DNS
    3
    3
    662
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • O
      oscar.atkins last edited by

      Hi all,

      I'm new to PFSense. Recently been configuring and using it as AD authenticated and non-authenticated proxies and it works great.

      I am now required to setup a PFSense gateway that also acts as DNS server that:

      1. for DNS queries that it doesn't know gets passed along to the internet
      2. for DNS queries for internal requests such as github.com will be routed to the internal server

      How would I achieve this?

      I have looked into Host Override and Domain Override section under Services > DNS Resolver but I don't quite understand how they'd work.

      For what I'm trying to achieve, would I be configuring the Domain Override section? And in this section, I see Domain/IP and description. For the Domain field, should I put github.com and specify its IP address in the IP field? Is this the correct way? Another question is should I specify the IP of the server requested OR a different DNS server that will translate the request?

      Thank you.

      1 Reply Last reply Reply Quote 0
      • johnpoz
        johnpoz LAYER 8 Global Moderator last edited by

        Out of the box 1) is ready to go.

        1. Yes you would just create a domain override for the domains you want to ask a specific NS(ers) for.. Unbound vs resolving the the fqdn for it would forward the request to the NS(ers) listed in domain override records.  You need to make sure that unbound(pfsense) can talk to this server… Unbound defaults to be able to use any interface for outbound resolving.  But if that has been adjusted to say only your wan.  You would have adjust this to allow unbound to use the interface needed to talk to some internal NS.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 23.01 | Lab VMs CE 2.6, 2.7

        1 Reply Last reply Reply Quote 0
        • A
          Akosikazim last edited by

          I'm new to PFSense. Recently been configuring and using it as AD authenticated and non-authenticated proxies and it works great.

          Sir, may i ask for the setup, or can you teach me pls.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post