Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Simple caching DNS resolver

    Scheduled Pinned Locked Moved DHCP and DNS
    11 Posts 4 Posters 5.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • W Offline
      wallabybob
      last edited by

      Why can't you use the pfSense DNS forwarder?

      1 Reply Last reply Reply Quote 0
      • M Offline
        mxx
        last edited by

        Because I need to query directly and not use any isp dns servers.
        This is recommended for using rbls.

        1 Reply Last reply Reply Quote 0
        • W Offline
          wallabybob
          last edited by

          @mxx:

          Because I need to query directly and not use any isp dns servers.

          The DNS forwarder can be configured to use any name server you want. I have configured my DNS forwarder to use OpenDNS rather than my ISPs DNS server.

          1 Reply Last reply Reply Quote 0
          • M Offline
            mxx
            last edited by

            Thanks :)
            No, I can't use any open 3rd party dns servers, but query directly.

            I see unbound can do that, but I'm not sure about tinyDNS, I guess not? I wanted to use that since unbound being "alpha" suggested it to be less stable.

            1 Reply Last reply Reply Quote 0
            • W Offline
              wallabybob
              last edited by

              @mxx:

              No, I can't use any open 3rd party dns servers, but query directly.

              Then configure the IP address(es) of the DNS servers you want to use.

              1 Reply Last reply Reply Quote 0
              • M Offline
                mxx
                last edited by

                I think there's a misunderstanding ;)
                To clarify parts of the reasons: http://www.spamhaus.org/faq/section/DNSBL%20Usage#365

                I always used a local bind9, but I'd rather run that on pfsense. That's why I asked about tinyDNS vs unbound in regards to this functionality.

                1 Reply Last reply Reply Quote 0
                • johnpozJ Offline
                  johnpoz LAYER 8 Global Moderator
                  last edited by

                  "Then configure the IP address(es) of the DNS servers you want to use."

                  Wallabybob your clearly not understanding the question - he wants to query roots, then the authoritative NS for the domains he is looking, not some other recursive server like his isp, 4.2.2.2 or opendns, google, etc..

                  unbound can do this, I do with they would put that back - it was so nice when it was installed.  But you could always just install bind pkg on pfsense.. Just would not be managed via the gui, etc.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

                  1 Reply Last reply Reply Quote 0
                  • D Offline
                    doktornotor Banned
                    last edited by

                    @johnpoz:

                    unbound can do this, I do with they would put that back - it was so nice when it was installed.

                    There is unbound package available… so, what's the problem?

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ Offline
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      unbound did not function on 2.1, he states "is it stable enough on 2.x?" so would assume his is on 2.1

                      Has that changed - is unbound viable on 2.1 now??  If so that is great news to me.

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 25.07.1 | Lab VMs 2.8.1, 25.07.1

                      1 Reply Last reply Reply Quote 0
                      • M Offline
                        mxx
                        last edited by

                        Thanks for your replies.

                        Yes, unbound works and running stable for me since almost a week on 2.1 RC0 (using amd64 Jun 26 something at the moment).

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.