Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Controlling IPv6 or IPv4 Preference

    Scheduled Pinned Locked Moved pfBlockerNG
    7 Posts 4 Posters 941 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      aljames
      last edited by

      I am running pfBlocker with DNSBL enabled, using DNS Resolver. After setting this all up I noticed my internet connection from the LAN would drop periodically and I would have to reboot the computer to get internet back. It happened a couple times while streaming a training presentation on Udemy. So not sure if it's something with that site or on my end.

      My DNS Servers are 127.0.0.1 as well as 1 from OpenDNS & 1 from Google, but I do have Firewall Rules on the LAN using pfSense as the DNS resolver:
      temp3.png

      I noticed the LAN interface setting for IPv6 Configuration Type is "Track Interface". It appears IPv6 is enabled. When I set up pfSense originally I don't remember seeing this "Track Interface" setting originally so I'm thinking pfBlocker must have configured this automatically?

      I wasn't sure if I should "Prefer IPv4 over IPv6" in the settings?
      https://docs.netgate.com/pfsense/en/latest/interfaces/controlling-ipv6-or-ipv4-preference.html

      Appreciate any leads. Thanks!

      GertjanG 1 Reply Last reply Reply Quote 0
      • dragoangelD
        dragoangel
        last edited by

        pfBlocker NG doesn't touch Interface configuration. Track interface doesn't mean you have IPv6 at all.
        Anyway lost connection and IPv6 is not related at all.

        Latest stable pfSense on 2x XG-7100 and 1x Intel Xeon Server, running mutiWAN, he.net IPv6, pfBlockerNG-devel, HAProxy-devel, Syslog-ng, Zabbix-agent, OpenVPN, IPsec site-to-site, DNS-over-TLS...
        Unifi AP-AC-LR with EAP RADIUS, US-24

        1 Reply Last reply Reply Quote 1
        • JeGrJ
          JeGr LAYER 8 Moderator
          last edited by

          Track Interface is default with a fresh installation as well as DHCP4/DHCP6 on WAN. If you didn't change it, it came from your setup. As @dragoangel wrote, pfBNG does nothing with interface settings at all.

          Don't forget to upvote 👍 those who kindly offered their time and brainpower to help you!

          If you're interested, I'm available to discuss details of German-speaking paid support (for companies) if needed.

          1 Reply Last reply Reply Quote 1
          • GertjanG
            Gertjan @aljames
            last edited by

            @aljames said in Controlling IPv6 or IPv4 Preference:

            My DNS Servers are 127.0.0.1 as well as 1 from OpenDNS & 1 from Google

            Strange combination....
            When you set DNS servers here :
            0fb29e64-e0e1-4dd7-887f-b0098f2d73ba-image.png

            ... they are not used.

            By default, the Resolver uses the 11 main root DNS servers.
            Nothing else.
            OpenDNS DNS servers needs a special setup.
            Google DNS also.

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • A
              aljames
              last edited by

              What is this “Add DNS Server” feature for in General settings? What are recommended DNS servers. My goal is to have pfsense handle DNS. Hence, my firewall rules.

              1 Reply Last reply Reply Quote 0
              • dragoangelD
                dragoangel
                last edited by dragoangel

                I think you need special IT guy to help you if you asking such base question. Really...

                Latest stable pfSense on 2x XG-7100 and 1x Intel Xeon Server, running mutiWAN, he.net IPv6, pfBlockerNG-devel, HAProxy-devel, Syslog-ng, Zabbix-agent, OpenVPN, IPsec site-to-site, DNS-over-TLS...
                Unifi AP-AC-LR with EAP RADIUS, US-24

                1 Reply Last reply Reply Quote 0
                • A
                  aljames
                  last edited by

                  No worries, I’ll figure it out.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.