<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[how to make pfsense intercept dns queries]]></title><description><![CDATA[<p dir="auto">Hi all</p>
<p dir="auto">I've got dns resolver configured on my pfsense.<br />
is there a way to tell pfsense to catch all dns queries, and first see if it has a record thats applicable, and if not then push it out.</p>
<p dir="auto">thinking it needs to be listening on outbound port 53 queries .</p>
<p dir="auto">G</p>
]]></description><link>https://forum.netgate.com/topic/194858/how-to-make-pfsense-intercept-dns-queries</link><generator>RSS for Node</generator><lastBuildDate>Tue, 10 Mar 2026 12:03:45 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/194858.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 19 Nov 2024 13:49:17 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to how to make pfsense intercept dns queries on Tue, 19 Nov 2024 19:41:09 GMT]]></title><description><![CDATA[<p dir="auto">One of my favorite pages on the Netgate Docs-<br />
https://docs.netgate.com/pfsense/en/latest/recipes/index.html<br />
Scroll down to DNS then click on redirecting client Dns.</p>
]]></description><link>https://forum.netgate.com/post/1195867</link><guid isPermaLink="true">https://forum.netgate.com/post/1195867</guid><dc:creator><![CDATA[Uglybrian]]></dc:creator><pubDate>Tue, 19 Nov 2024 19:41:09 GMT</pubDate></item><item><title><![CDATA[Reply to how to make pfsense intercept dns queries on Tue, 19 Nov 2024 18:44:53 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/georgelza">@<bdi>georgelza</bdi></a> said in <a href="/post/1195796">how to make pfsense intercept dns queries</a>:</p>
<blockquote>
<p dir="auto">is there a way to tell pfsense to catch all dns queries,</p>
</blockquote>
<p dir="auto">Add localhost to the resolvers listening interfaces and redirect all DNS requests to it with a port forwarding rule on all interfaces.<br />
Looks like this in my pfSense:<br />
<img src="/assets/uploads/files/1732041796039-1a75dd61-a3c8-4c67-aba3-49b804beda04-grafik.png" alt="1a75dd61-a3c8-4c67-aba3-49b804beda04-grafik.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">Internal is an interface group including my internal interfaces.</p>
<blockquote>
<p dir="auto">and first see if it has a record thats applicable, and if not then push it out.</p>
</blockquote>
<p dir="auto">This is the default behavior of the DNS resolver.</p>
]]></description><link>https://forum.netgate.com/post/1195854</link><guid isPermaLink="true">https://forum.netgate.com/post/1195854</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Tue, 19 Nov 2024 18:44:53 GMT</pubDate></item></channel></rss>