Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DNS Resolver is not resolving unless Forwarding Mode is enabled.

    Scheduled Pinned Locked Moved DHCP and DNS
    4 Posts 3 Posters 556 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      Artem0121
      last edited by

      Not sure where to start. Basically, the DNS Resolver does not work. I have a fresh install of 2.4.4-RELEASE-p3. After going through the wizard, the DNS Resolver did not work.

      I don't really know what information to provide, so below are some parts of my config that I think may be helpful:

      • DNS Server Settings (System >> General Setup):
        DNS Servers - 1.1.1.1 and two other servers provided by my VPN provider.
        DNS Server Override - unchecked
        Disable DNS Forwarded - unchecked

      • General DNS Resolver Options (Services >> DNS Resolver >> General Settings)
        Enable - checked
        Listen Port - 53
        Enable SSL/TLS Service - unchecked
        Network Interfaces - All
        Outgoing Network Interfaces - All
        System Domain Local Zone Type - Transparent
        DNSSEC - checked
        DNS Query Forwarding, Enable Forwarding Mode - I checked this to be able to resolve domain names, I was "testing" the DNS resolver with this checkbox disable and only enabled it later.
        All checkboxes below Enable Forwarding Mode are not selected.
        Custom options: server:include: /var/unbound/pfb_dnsbl.*conf
        I have not touched any settings under Advanced Settings and Access Lists tabs.

      • No DNS servers are specified in the Servers section of Services >> DHCP Server >> LAN.

      Any help would be appreciated.

      1 Reply Last reply Reply Quote 0
      • B
        bcruze
        last edited by

        i'd delete your ISP's DNS that is only causing issues leave 1.1.1.1

        check Use SSL/TLS for outgoing DNS Queries to Forwarding Servers

        check Enable Forwarding Mode

        and that should resolve the issue... only after you delete your ISP's DNS... because of this statement: Note that ALL configured forwarding servers MUST support SSL/TLS queries on port 853.

        1 Reply Last reply Reply Quote 0
        • A
          Artem0121
          last edited by

          @bcruze I already have Forwarding Mode enabled, would I be able to use pfBlockerNG's DNS blocking if I use the forwarding mode?

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by

            Yes you can use pfblocker with unbound in forwarding mode.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.