PFSense/Unbound Rejecting Queries



  • I'm trying to understand why PFSense is rejecting these DNS queries.

    pcap_rejection.PNG

    Here are the DNS resolver settings. For starters, the ALL interface is selected, but so is the OpenShift interface which is receiving these queries.

    dns_settings.PNG



  • REFUSED is usually due to policy reasons. What happens if you select only All for Network Interfaces? Maybe something weird is happening of you select All and other specific interfaces.


  • LAYER 8 Moderator

    a) rejecting sth. like "google.com.yourdomain.tld" isn't unexpected.
    b) why are your selecting "ANY" but adding WAN, LAN, Openshift as network interface IPs?
    c) Do you have anything set in the other tabs (access lists etc.)?
    d) Is there anything wrong with resolving? Why do you forward DNS?


Log in to reply