Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    WAN using Comcast DNS despite Cloudflare settings

    Scheduled Pinned Locked Moved DHCP and DNS
    4 Posts 3 Posters 354 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C Offline
      cosmonaught
      last edited by

      I thought I had set up the DNS resolver to use Cloudflare but found this under Status/Interfaces:

      4eb594f0-606f-4cec-836d-97df4d2e8dcd-{748376F1-005A-4712-A6FA-888390245398}.png

      Those servers appear to be Comcast (I call it "Comcastus Interruptus") IPv6; in any case they surely are not Cloudflare.

      I have enabled forwarding mode but the text there says, "If this option is set, DNS queries will be forwarded to the upstream DNS servers defined under System > General Setup or those obtained via dynamic interfaces such as DHCP, PPP, or OpenVPN (if DNS Server Override is enabled there)." But I don't have a fixed IP with Comcast so I think I'll need DHCP enabled.

      Am I missing something here?

      patient0P johnpozJ 2 Replies Last reply Reply Quote 0
      • patient0P Offline
        patient0 @cosmonaught
        last edited by

        @cosmonaught for me in the "Status / Interface" view I also get the DNS from my ISP. But these are just what I get by DHCP from my ISP, I don't use them (and you don't either I'd say).

        Setting the DNS server of your choice in "System / General Setup" and a bit further down the "DNS Resolution Behavior" to "Use local DNS (127.0.0.1), ignore remote DNS Servers" ensures it will only use the DNS servers you set.

        Screenshot 2024-12-29 at 19.33.01.png

        If you check "Status / DNS Resolver" you should see the DNS server pfSense uses.
        Screenshot 2024-12-29 at 19.36.47.jpeg

        1 Reply Last reply Reply Quote 0
        • johnpozJ Offline
          johnpoz LAYER 8 Global Moderator @cosmonaught
          last edited by

          you prob want to make sure this is unchecked as well

          dns.jpg

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 25.07.1 | Lab VMs 2.8, 25.07.1

          1 Reply Last reply Reply Quote 0
          • C Offline
            cosmonaught
            last edited by

            Thanks.
            I've made the change @patient0 suggested. As to @johnpoz, the DNS Server Override was already clear.
            The Good News is that ipconfig gives my firewall as the DNS for the ethernet connection and 1.1.1.2 for the VPN. Looks like either that change cleared the situation or there was no prob in the first place.
            Thanks again!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.