Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfSense can't resolve domains with Tailscale active after a few days

    Scheduled Pinned Locked Moved Tailscale
    1 Posts 1 Posters 379 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mhache
      last edited by

      I have a 1100 with Tailscale installed. After a while, the firewall itself can't resolve domains. The clients still can.

      Using Unbound, Google and Cloudflare DNS and "Use local DNS (127.0.0.1), fallback to remote DNS Server" in the General setup page.

      [23.01-RELEASE][root@pfsense1100]/root: nslookup netgate.com
      ;; communications error to 100.100.100.100#53: timed out
      ;; communications error to 100.100.100.100#53: timed out
      ;; communications error to 100.100.100.100#53: timed out
      ;; no servers could be reached

      This issue also happened with 22.05

      If i restart the Tailscale service:

      [23.01-RELEASE][root@pfsense1100]/root: nslookup netgate.com
      Server: 127.0.0.1
      Address: 127.0.0.1#53
      Non-authoritative answer:
      Name: netgate.com
      Address: 199.60.103.4
      Name: netgate.com
      Address: 199.60.103.104
      Name: netgate.com
      Address: ::ffff:199.60.103.104
      Name: netgate.com
      Address: ::ffff:199.60.103.4

      I have a 7100 with the same setup, no issue:

      [23.01-RELEASE][root@pfsense7100]/root: nslookup netgate.com
      Server: 100.100.100.100
      Address: 100.100.100.100#53
      Non-authoritative answer:
      Name: netgate.com
      Address: 199.60.103.4
      Name: netgate.com
      Address: 199.60.103.104
      Name: netgate.com
      Address: ::ffff:199.60.103.104
      Name: netgate.com
      Address: ::ffff:199.60.103.4

      Tailscale 1.36.0 on the 1100 and 1.38.3 on the 7100.

      1 Reply Last reply Reply Quote 1
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.