• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

How to setup local domain in local network that everyone

Scheduled Pinned Locked Moved DHCP and DNS
25 Posts 3 Posters 2.0k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • R
    rcoleman-netgate Netgate @netboy
    last edited by Sep 12, 2023, 3:22 PM

    @netboy DNS Resolver.
    https://docs.netgate.com/pfsense/en/latest/services/dns/index.html#dns-resolver-forwarder

    Ryan
    Repeat, after me: MESH IS THE DEVIL! MESH IS THE DEVIL!
    Requesting firmware for your Netgate device? https://go.netgate.com
    Switching: Mikrotik, Netgear, Extreme
    Wireless: Aruba, Ubiquiti

    1 Reply Last reply Reply Quote 1
    • R rcoleman-netgate moved this topic from General pfSense Questions on Sep 12, 2023, 3:23 PM
    • J
      johnpoz LAYER 8 Global Moderator @netboy
      last edited by Sep 13, 2023, 11:13 AM

      @netboy said in How to setup local domain in local network that everyone:

      that come to http://myhousehold.tv.com to http://172.XX.X.5:9981/extjs.html ?

      Not exactly.. dns has nothing to do with ports.. But you could for sure point myhousehold.tv.com to 172.XX.X.5

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

      N 1 Reply Last reply Sep 16, 2023, 5:59 PM Reply Quote 0
      • N
        netboy @johnpoz
        last edited by Sep 16, 2023, 5:59 PM

        @johnpoz said in How to setup local domain in local network that everyone:

        But you could for sure point myhousehold.tv.com to 172.XX.X.5

        Can you please give me some tips?

        J 1 Reply Last reply Sep 16, 2023, 6:43 PM Reply Quote 0
        • J
          johnpoz LAYER 8 Global Moderator @netboy
          last edited by Sep 16, 2023, 6:43 PM

          @netboy just go into the dns your using, by default its unbound (resolver) and create a host override for whatever you fqdn is and point it to whatever IP you want..

          example: here is one that points kindle-time.amazon.com to my ntp server vs what it resolves to on the public

          host.jpg

          If your using the forwarder (dnsmasq) you would do it there vs unbound.

          Then validate its working by doing a query using your fav dns tool.

          dig.jpg

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          N 2 Replies Last reply Sep 17, 2023, 12:27 AM Reply Quote 1
          • N
            netboy @johnpoz
            last edited by Sep 17, 2023, 12:27 AM

            @johnpoz
            Per your post here is the override

            5a6d45bc-3d92-494f-a23c-b75ad97a55ff-image.png

            http://tv.home.com:9981/extjs.html doe not work (must point to working url http://172.16.0.5:9981/extjs.html)

            N 1 Reply Last reply Sep 17, 2023, 12:34 AM Reply Quote 0
            • N
              netboy @netboy
              last edited by Sep 17, 2023, 12:34 AM

              @netboy When I enabled it I get
              13686a9e-8baa-47bd-9392-2e07dce7d469-image.png

              b9929783-8475-4a3b-8af4-227a4ef46d2d-image.png

              J 1 Reply Last reply Sep 17, 2023, 2:07 AM Reply Quote 0
              • J
                johnpoz LAYER 8 Global Moderator @netboy
                last edited by Sep 17, 2023, 2:07 AM

                @netboy why would you put it in the forwarder if your using the resolver??

                Put it in the resolver!!

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                N 1 Reply Last reply Sep 17, 2023, 2:20 AM Reply Quote 0
                • N
                  netboy @johnpoz
                  last edited by Sep 17, 2023, 2:20 AM

                  @johnpoz Tried this
                  6421e790-e090-47ac-a70c-18e0ed2a5214-image.png

                  No luck! Are the settings right in my resolver?

                  J 1 Reply Last reply Sep 17, 2023, 7:50 AM Reply Quote 0
                  • J
                    johnpoz LAYER 8 Global Moderator @netboy
                    last edited by johnpoz Sep 17, 2023, 8:02 AM Sep 17, 2023, 7:50 AM

                    @netboy where is your query using your fav dns tool, dig, nslookup, host??

                    hostover.jpg

                    $ nslookup
                    > tv.home.com
                    Server:  sg4860.local.lan
                    Address:  192.168.9.253
                    
                    Name:    tv.home.com
                    Address:  172.16.0.5
                    

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    N 1 Reply Last reply Sep 17, 2023, 2:22 PM Reply Quote 0
                    • N
                      netboy @johnpoz
                      last edited by Sep 17, 2023, 2:22 PM

                      @johnpoz I am not a network person.....Can you kindly explain for this newbie on networks the pre-requisite for my functionality? I just made up a domain home.com and All i want is if the router catches a certain sudomain domain (made up) it must resolve to a certain URL. From your reply it looks like I need do some setup?

                      J 1 Reply Last reply Sep 17, 2023, 2:33 PM Reply Quote 0
                      • J
                        johnpoz LAYER 8 Global Moderator @netboy
                        last edited by johnpoz Sep 17, 2023, 2:41 PM Sep 17, 2023, 2:33 PM

                        @netboy yeah you need to create the host override in the dns your using on pfsense.. The resolver is default and from your error when trying to add it in the forwarder yeah I would say your using the resolver.

                        You have the host override setup.. Now just validate its working with a simple nslookup command on your pc.

                        Its possible your browser/pc isn't pointing to pfsense for dns - but simple query with nslookup would tell us that, and also can be used to validate that your override is working.

                        Even if your host override is setup correctly. If your pc or browser is not pointing to pfsense for dns - then it would never work. Browsers these days like to use doh, pointing to some outside dns without actual confirmation or ok from the user. But a simple nslookup would tell us if pfsense is setup correctly.. As long as your pc is pointing to it for dns.

                        go to a cmd line on your pc, run cmd

                        cmd.jpg

                        type nslookup tv.home.com

                        What does it respond with?

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                        N 1 Reply Last reply Sep 17, 2023, 2:47 PM Reply Quote 0
                        • N
                          netboy @johnpoz
                          last edited by netboy Sep 17, 2023, 2:49 PM Sep 17, 2023, 2:47 PM

                          @johnpoz yeah I know cmd promp :-)

                          Here is the result of nslookup
                          c:\nslookup
                          Default Server: dns.google
                          Address: 8.8.8.8

                          I think I know where you are going....my lookup goes straight to google instead of router.....

                          J 1 Reply Last reply Sep 17, 2023, 2:49 PM Reply Quote 0
                          • J
                            johnpoz LAYER 8 Global Moderator @netboy
                            last edited by johnpoz Sep 17, 2023, 2:52 PM Sep 17, 2023, 2:49 PM

                            @netboy well your pc is pointing to google for its dns.. So no your host override would never work.. Your client need to point to pfsense ip for host overrides to work.

                            You can setup pfsense to then ask google if that is what you want, but out of the box unbound on pfsense resolves, it does not forward. But what it does after you ask it for looking up other stuff is besides the point. But if you want to resolve tv.home.com to some local IP you have to ask it first.

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                            N 1 Reply Last reply Sep 17, 2023, 2:52 PM Reply Quote 0
                            • N
                              netboy @johnpoz
                              last edited by Sep 17, 2023, 2:52 PM

                              @johnpoz said in How to setup local domain in local network that everyone:

                              Your client need to point to pfsense ip for host overrides to work.

                              I NOW understand what you are talking about.......how do I route the client to point to pfsense IP?

                              J 1 Reply Last reply Sep 17, 2023, 2:55 PM Reply Quote 0
                              • J
                                johnpoz LAYER 8 Global Moderator @netboy
                                last edited by johnpoz Sep 17, 2023, 2:57 PM Sep 17, 2023, 2:55 PM

                                @netboy Out of the box it would of done that.. You must of changed your dhcp settings in pfsense, or you setup the IP on the box static?

                                Out of the box pfsense will point all dhcp clients to its own IP.

                                dhcp.jpg

                                I on purpose point my clients to my pihole, the 192.168.3.10 address, but then my pihole asks pfsense. But if you didn't mess with those settings by default dhcp client of pfsense would point to pfsense IP as its dns.. And your host override would work.

                                btw - I noticed in your setup you had pfblocker installed. If clients do not point to pfsense for their dns - pfblocker isnt really going to work.

                                An intelligent man is sometimes forced to be drunk to spend time with his fools
                                If you get confused: Listen to the Music Play
                                Please don't Chat/PM me for help, unless mod related
                                SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                N 2 Replies Last reply Sep 17, 2023, 3:02 PM Reply Quote 0
                                • N
                                  netboy @johnpoz
                                  last edited by Sep 17, 2023, 3:02 PM

                                  @johnpoz Got it!

                                  Here is the screenshot of LAN

                                  a7202404-57a6-4870-b3c8-ce7c8f78a0d2-image.png

                                  AND the SERVER portion of the screenshot

                                  d7186435-b81e-4831-afbe-a9423ffc68ba-image.png

                                  What you are saying is the SERVER portion should be BLANKED out so that all routes will be thru the pfsense router not thru google - Have I understaood the concept?

                                  1 Reply Last reply Reply Quote 0
                                  • N
                                    netboy @johnpoz
                                    last edited by Sep 17, 2023, 3:16 PM

                                    @johnpoz said in How to setup local domain in local network that everyone:

                                    I noticed in your setup you had pfblocker installed. If clients do not point to pfsense for their dns - pfblocker isnt really going to work.

                                    you are absolutely RIGHT! I was really ignorant.....I have NOW blanked out the server portion and rebooted my PC.

                                    Now the nslookup returns the following:

                                    C:> nslookup
                                    Default Server: router2100.XXX.local
                                    Address: 192.168.0.1

                                    1 Reply Last reply Reply Quote 0
                                    • N
                                      netboy @johnpoz
                                      last edited by Sep 17, 2023, 3:26 PM

                                      @johnpoz Resolver WORKS now....Thanks @johnpoz for hand holding me!!!

                                      J 1 Reply Last reply Sep 17, 2023, 3:30 PM Reply Quote 0
                                      • J
                                        johnpoz LAYER 8 Global Moderator @netboy
                                        last edited by Sep 17, 2023, 3:30 PM

                                        @netboy .local isn't a very good choice - that is a mdns domain.. You should use something like home.arpa which is the new recommended domain for local use, and is what pfsense now defaults too.

                                        I am in the middle of moving over from my long term local.lan domain, .lan would never be a public tld. But home.arpa is best choice for local domains.

                                        So your tv could be tv.home.arpa for example.. I just have some old ssl certs that have been changing when they expire.. So for example my nas uses home.arpa and my printer, etc..

                                        $ dig nas.home.arpa +short
                                        192.168.9.10
                                        
                                        $ dig brother.home.arpa +short
                                        192.168.2.50
                                        

                                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                                        If you get confused: Listen to the Music Play
                                        Please don't Chat/PM me for help, unless mod related
                                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                        N 1 Reply Last reply Sep 17, 2023, 3:38 PM Reply Quote 0
                                        • N
                                          netboy @johnpoz
                                          last edited by Sep 17, 2023, 3:38 PM

                                          @johnpoz said in How to setup local domain in local network that everyone:

                                          .local isn't a very good choice - that is a mdns domain.. You should use something like home.arpa

                                          I will try to understand what you are talking about and change it....

                                          Quick question in the resolver....I have tv as below

                                          e0682b09-6aa9-41e3-a352-6e45584461bf-image.png

                                          Works fine but I have to enter so:

                                          http://tv.home.com:9981/extjs.html

                                          Is there a way tv.home.com resolves to /tv.home.com:9981/extjs.html?

                                          J 1 Reply Last reply Sep 17, 2023, 3:42 PM Reply Quote 0
                                          21 out of 25
                                          • First post
                                            21/25
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                                            This community forum collects and processes your personal information.
                                            consent.not_received