Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DNS resolution slow on first lookup

    Scheduled Pinned Locked Moved DHCP and DNS
    5 Posts 4 Posters 7.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      javab0y
      last edited by

      Hi,

      This may be pretty n00b, but I couldn't find too much on this problem via the forum search, the documentation, or Google, so I figure I did my official n00b search ;-)

      Here is the issue: I have PFsense set up pretty much as an out-of-the box post wizard configuration running on a Soekris net5501 running the 1GB CF card installation.  The firewall works awesome.  Very nice piece of work. However, the one thing I have noticed is that the initial hit on a web page seems to take 6-10 seconds to get a response.  Firefox alerted me that it was in the midst of looking up a site.  Hence I went to a terminal on a client machine and did an nslookup of some random real domain.  Sure enough the DNS lookup took 6-10 seconds.  Subsequent lookups on that domain returned immediately due to the DNS cache.  I decided to take this a bit further and tried logging into the SSH shell on my pfsense box and try the nslookup there.  Exact same problem.  Since I run my own DNS on a Linux machine internally for our company, I tried the nslookup on that machine and it was very fast… usually .2-2 seconds for the initial query (pre-cache).

      Is there anything I can do to pfSense configuration to have it return faster for initial queries?  Thanks in advance for answers.

      1 Reply Last reply Reply Quote 0
      • GruensFroeschliG
        GruensFroeschli
        last edited by

        Did you configure your internal DNS server on "system –> general setup" ?

        Did you also uncheck the box: "Allow DNS server list to be overridden by DHCP/PPP on WAN"

        We do what we must, because we can.

        Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

        1 Reply Last reply Reply Quote 0
        • J
          javab0y
          last edited by

          @GruensFroeschli:

          Did you configure your internal DNS server on "system –> general setup" ?

          Yes

          @GruensFroeschli:

          Did you also uncheck the box: "Allow DNS server list to be overridden by DHCP/PPP on WAN"

          Yes

          Had that setup since the beginning.  Its still slow.

          1 Reply Last reply Reply Quote 0
          • S
            Saturn2888
            last edited by

            I've found that it doesn't even auto-configure DNS anymore since the last few nights' updates so this might be related.

            1 Reply Last reply Reply Quote 0
            • jimpJ
              jimp Rebel Alliance Developer Netgate
              last edited by

              DNS from DHCP should be fixed with any snapshot from late Saturday on.

              Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

              Need help fast? Netgate Global Support!

              Do not Chat/PM for help!

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.