• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

[SOLVED] DNS for OpenVPN clients

Scheduled Pinned Locked Moved OpenVPN
5 Posts 4 Posters 9.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • C
    cbrunet
    last edited by Mar 11, 2011, 1:57 PM Mar 10, 2011, 5:16 PM

    Hi,

    pfSense 2.0. My lan is 192.168.1.0/24. My VPN is 10.8.0.0/24. I need clients to be able to resolve local names and internet. But how can I allow the DNS server to answer to queries from 10.8.0.0/24? I push 192.168.1.1 as DNS server. Firewall isn't blocking traffic from 10.8.0.0/24 to 192.168.1.1:53. But doing DNS requests on VPN client, I receive:

    DNS request timed out.
         timeout was 2 seconds.
    Server: Unknown
    Address: 192.168.1.1

    How can I allow my DNS server to answer to queries from OpenVPN?

    Charles.

    1 Reply Last reply Reply Quote 0
    • C
      cbrunet
      last edited by Mar 11, 2011, 1:57 PM

      Ok, I think I solved my problem.

      I push 10.8.0.1 (my VPN gateway) as DNS server and I redirect UDP traffic destination 10.8.0.1:53 to 127.0.0.1:53. It seems to work.

      Charles.

      1 Reply Last reply Reply Quote 0
      • S
        sprocket888
        last edited by Dec 13, 2011, 11:32 AM Jun 9, 2011, 2:03 AM

        I am having this problem too (I am trying to resolve ping system1 to an IP; ping 192.168.1.100 works fine which is the IP for system1), I am new but I am struggling with how you "redirect" the traffic that you are after. Do you have a seperate VLAN for your VPN? I have my VPN only specified in the openVPN page with an address pool specified at 192.168.3.0/24 and I pushed a DNS option of 192.168.3.1 to the clients.

        I am not quite sure where this redirect setting would go, any help would be much appreciated.

        1 Reply Last reply Reply Quote 0
        • D
          dvserg
          last edited by Dec 13, 2011, 11:33 AM

          Unlocked by dmenezes message:

          its possible to you to unlock a topic which is marked as solved, but it has not the right answer and I would put the right solution to solve the problem!

          SquidGuardDoc EN  RU Tutorial
          Localization ru_PFSense

          1 Reply Last reply Reply Quote 0
          • D
            dmenezes
            last edited by Dec 13, 2011, 11:54 AM

            To solve this problem you can override an entire domain by specifying an authoritative DNS server to be queried for your local domain!

            -Services
              -DNS forwarder

            the last option…

            Services_DNS_forwarder.png
            Services_DNS_forwarder.png_thumb

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
              This community forum collects and processes your personal information.
              consent.not_received