<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[No DNS resolution on LAN]]></title><description><![CDATA[<p dir="auto">Hi,</p>
<p dir="auto">I have some troubles with DNS resolution on the pfSense LAN.<br />
I've added a PASS ALL rule in the firewall, I can access to web site with IP address but there is no DNS resolution.</p>
<p dir="auto">I can ping 8.8.8.8 and if I launch dig @8.8.8.8 google.com it works. However if I launch dig google.com it doesn't work. Ping google.com returns unknown host google.com, and Firefox can't resolve domains.<br />
DNS queries can pass the firewall so it's not a firewall issue but I have no idea why there is no DNS resolution.</p>
<p dir="auto">If you have any idea!</p>
<p dir="auto">Thanks in advance.</p>
<p dir="auto">Kind regards;<br />
Alexis</p>
]]></description><link>https://forum.netgate.com/topic/132220/no-dns-resolution-on-lan</link><generator>RSS for Node</generator><lastBuildDate>Wed, 10 Jun 2026 19:27:43 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/132220.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 25 Jun 2018 14:16:13 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to No DNS resolution on LAN on Tue, 26 Jun 2018 10:20:13 GMT]]></title><description><![CDATA[<p dir="auto">@alexis-girardi said in <a href="/post/773899">No DNS resolution on LAN</a>:</p>
<blockquote>
<p dir="auto">if I don’t state a server dig doesn’t send a request</p>
</blockquote>
<p dir="auto">What version of dig are you using?  I have seen this on 9.12 versions if dns not in the resolv.conf file, etc.. On windows I have not tried 9.12 on other OSes  So you have to place default NS in this file</p>
<p dir="auto"><img src="/assets/uploads/files/1530008406193-digresolv.png" alt="0_1530008410400_digresolv.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">If you want to validate client dns resolve - you should use its built in client.. Something as simple as a ping for example to validate it can resolve.</p>
]]></description><link>https://forum.netgate.com/post/774014</link><guid isPermaLink="true">https://forum.netgate.com/post/774014</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Tue, 26 Jun 2018 10:20:13 GMT</pubDate></item><item><title><![CDATA[Reply to No DNS resolution on LAN on Tue, 26 Jun 2018 09:33:07 GMT]]></title><description><![CDATA[<p dir="auto">I have tried with another client (Windows) and it works perfectly! There is an issue on my first client, but my solution is designed to work with Windows clients so I will not investigate more for this time.</p>
<p dir="auto">Thank you for your time and your answers!</p>
<p dir="auto">Have a nice day.</p>
]]></description><link>https://forum.netgate.com/post/774010</link><guid isPermaLink="true">https://forum.netgate.com/post/774010</guid><dc:creator><![CDATA[alexis.girardi]]></dc:creator><pubDate>Tue, 26 Jun 2018 09:33:07 GMT</pubDate></item><item><title><![CDATA[Reply to No DNS resolution on LAN on Mon, 25 Jun 2018 20:47:20 GMT]]></title><description><![CDATA[<p dir="auto">That's very strange.</p>
<p dir="auto">I guess there is something wrong with your client. Have you tried another one? Are you sure it uses Network Manager?</p>
]]></description><link>https://forum.netgate.com/post/773926</link><guid isPermaLink="true">https://forum.netgate.com/post/773926</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Mon, 25 Jun 2018 20:47:20 GMT</pubDate></item><item><title><![CDATA[Reply to No DNS resolution on LAN on Mon, 25 Jun 2018 17:17:42 GMT]]></title><description><![CDATA[<p dir="auto">The DHCP configuration provide 8.8.8.8 and 8.8.4.4 as DNS servers. Confirmed with nmcli dev show.</p>
<p dir="auto">I have made a tcmdump to monitor dig requests and if I don't state a server dig doesn't send a request. It's a weird behaviour, because when I plug the client on the pfSense I can see that the client is sending request to 8.8.8.8 for A detectportal.firefox.com, so if the client is using 8.8.8.8 it's that the DHCP configuration is correct. I have no idea on what is wrong</p>
<p dir="auto">The firewall is allowing access to DNS because when I state a server the resolution is working.</p>
]]></description><link>https://forum.netgate.com/post/773899</link><guid isPermaLink="true">https://forum.netgate.com/post/773899</guid><dc:creator><![CDATA[alexis.girardi]]></dc:creator><pubDate>Mon, 25 Jun 2018 17:17:42 GMT</pubDate></item><item><title><![CDATA[Reply to No DNS resolution on LAN on Mon, 25 Jun 2018 15:25:43 GMT]]></title><description><![CDATA[<p dir="auto">So what DNS is requested by the client if you don't state a server? A public one or the pfSense DNS Resolver / Forwarder?</p>
<p dir="auto">The dig output will reveal which server is requested.</p>
<p dir="auto">Is the access to the DNS server permitted by firewall rules?</p>
]]></description><link>https://forum.netgate.com/post/773869</link><guid isPermaLink="true">https://forum.netgate.com/post/773869</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Mon, 25 Jun 2018 15:25:43 GMT</pubDate></item><item><title><![CDATA[Reply to No DNS resolution on LAN on Mon, 25 Jun 2018 15:15:52 GMT]]></title><description><![CDATA[<p dir="auto">Yes, I have configured DHCP for LAN, I made two tests, one with the DNS servers from my ISP and one with Google public DNS (8.8.8.8 / 8.8.4.4).</p>
<p dir="auto">I think the DNS resolver of the client is working because when I plug the client directly to the WAN network the resolution is working. (The client is a Debian Jessie).</p>
]]></description><link>https://forum.netgate.com/post/773865</link><guid isPermaLink="true">https://forum.netgate.com/post/773865</guid><dc:creator><![CDATA[alexis.girardi]]></dc:creator><pubDate>Mon, 25 Jun 2018 15:15:52 GMT</pubDate></item><item><title><![CDATA[Reply to No DNS resolution on LAN on Mon, 25 Jun 2018 14:52:04 GMT]]></title><description><![CDATA[<p dir="auto">So obviously the DNS server you use on the client can't resolve public names or is not reachable.</p>
<p dir="auto">Do you provide DNS server by DHCP? Which DNS is used on the client?</p>
]]></description><link>https://forum.netgate.com/post/773860</link><guid isPermaLink="true">https://forum.netgate.com/post/773860</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Mon, 25 Jun 2018 14:52:04 GMT</pubDate></item></channel></rss>