Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Dnsmasq listening on WAN port?

    DHCP and DNS
    2
    3
    2189
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Y
      yaxattax last edited by

      I'm not sure if I got the right service, but the DNS service is listening on the WAN interface.. and I would like to know why? It doesn't make any sense. Further, is there anything I can change to stop it listening on the WAN interface?

      1 Reply Last reply Reply Quote 0
      • jimp
        jimp Rebel Alliance Developer Netgate last edited by

        It binds to all interfaces.

        With a proper set of firewall rules that's a moot point. You shouldn't allow traffic to hit the WAN IP on port 53 (or any other port not running a public service).

        That said, you can set this manually using the Advanced Options box on the DNS Forwarder page.

        listen-address=192.168.1.1
        bind-interfaces
        

        That will force it to listen only on 192.168.1.1. Multiple listen-address lines can be used.

        1 Reply Last reply Reply Quote 0
        • Y
          yaxattax last edited by

          Aha that basically takes dnsmasq configuration options. Thanks!

          Although the pertinent question still remains, why would you allow it to listen on the WAN by default?

          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense Plus
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy