• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Setting Unbound outgoing network interface to gateway group?

Scheduled Pinned Locked Moved DHCP and DNS
3 Posts 2 Posters 862 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • P
    packetpirate
    last edited by Apr 5, 2023, 2:40 PM

    I am using Unbound as my DNS resolver, and I currently have the Outgoing Network Interface set to a Wireguard VPN interface. This allows me to send queries to the authoritative servers through a wireguard tunnel.

    My problem is, if this tunnel goes down, I lose DNS. Is there any way to set the Outgoing Interface to a gateway group instead of an interface? I have a gateway group with two tunnels in it, one acting as a fallback solution, so this would be ideal to use in Unbound as well.

    Thanks!

    P 1 Reply Last reply Sep 5, 2023, 8:53 PM Reply Quote 0
    • P
      packetpirate @packetpirate
      last edited by Sep 5, 2023, 8:53 PM

      Never did figure this out, does anyone have a solution for this?

      1 Reply Last reply Reply Quote 0
      • D
        Dslgeek
        last edited by Sep 6, 2023, 12:55 AM

        Make sure all the tunnels you want are included in Unbound outgoing interfaces. Assign higher priority to vpn tunnels in your gateway group but include your default wan at a lower priority. Create a firewall rule on your LAN interface filtering DNS and under advanced options select your VPN group (which also includes default WAN at a lower priority). If you want add a tag like "dns" and in your default_out_WAN rule (which should be below your dns rule) under advance options select the !dns tag.

        I think that should work, you will send your dns traffic over vpn tunnels but if they ALL go down you won't lose dns.

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received