<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[DNS for several VLANs]]></title><description><![CDATA[<p dir="auto">Dear community,</p>
<p dir="auto">Thanks for an awesome product. I'm loving pfSense!  ;D</p>
<p dir="auto">Can anyone point me in the direction of which dns server ip address I should use for my VLANs?</p>
<p dir="auto">Example:<br />
Parent LAN(em0) has the address 10.11.1.1<br />
VLAN12 has the address 10.11.12.1, which means my DHCP clients also gets DNS ip as 10.11.12.1, so far so good.<br />
I can do NSLOOKUP from a Windows PC on that VLAN, no problem. But it annoys me that the NSLOOKUP, says "UnKnown":</p>
<blockquote>
<p dir="auto">nslookup fw01<br />
Server: UnKnown<br />
Address: 10.11.12.1</p>
<p dir="auto">Name: fw01.mylan<br />
Address: 10.11.1.1</p>
</blockquote>
<p dir="auto">As you can see, it resolves the IP just fine of "fw01" which is the parent LAN interface on the Pfsense box. But it's still "UnKnown".</p>
<p dir="auto">Hooking up directly to the LAN interface with a DHCP client, and all is fine and dandy:</p>
<blockquote>
<p dir="auto">nslookup fw01<br />
Server: fw01.mylan<br />
Address: 10.11.1.1</p>
<p dir="auto">Name: fw01.mylan<br />
Address: 10.11.1.1</p>
</blockquote>
<p dir="auto">So this led me to think; which local DNS ip should I use for my VLANs? The VLAN gateway or the parent LAN gateway?</p>
<p dir="auto">Using the VLAN gateway leads to "errors" during NSLOOKUP, but seems to work.<br />
Defining VLAN12 DHCP service to use the parent LAN gateway IP(10.11.1.1) as DNS server works fine without errors, when I add a firewall rule for UDP port 53 from "VLAN12" to "LAN net"</p>
<p dir="auto">So any tips on best practice, for assigning local DNS server ip addresses for VLANs?</p>
<p dir="auto">Thanks for your time<br />
Best regards<br />
Jim</p>
]]></description><link>https://forum.netgate.com/topic/63333/dns-for-several-vlans</link><generator>RSS for Node</generator><lastBuildDate>Tue, 10 Mar 2026 13:49:31 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/63333.rss" rel="self" type="application/rss+xml"/><pubDate>Sun, 01 Dec 2013 19:03:46 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to DNS for several VLANs on Wed, 04 Dec 2013 19:56:47 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/johnpoz">@<bdi>johnpoz</bdi></a>:</p>
<blockquote>
<p dir="auto">No in your host over rides in in the dns forwarder on pfsense.</p>
</blockquote>
<p dir="auto">Much obliged, I'll try and report back.</p>
<p dir="auto">/Jim</p>
]]></description><link>https://forum.netgate.com/post/432678</link><guid isPermaLink="true">https://forum.netgate.com/post/432678</guid><dc:creator><![CDATA[jim82]]></dc:creator><pubDate>Wed, 04 Dec 2013 19:56:47 GMT</pubDate></item><item><title><![CDATA[Reply to DNS for several VLANs on Mon, 02 Dec 2013 21:37:19 GMT]]></title><description><![CDATA[<p dir="auto">No in your host over rides in in the dns forwarder on pfsense.</p>
]]></description><link>https://forum.netgate.com/post/432317</link><guid isPermaLink="true">https://forum.netgate.com/post/432317</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Mon, 02 Dec 2013 21:37:19 GMT</pubDate></item><item><title><![CDATA[Reply to DNS for several VLANs on Mon, 02 Dec 2013 21:18:10 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/johnpoz">@<bdi>johnpoz</bdi></a>:</p>
<blockquote>
<p dir="auto">If you have your dns forwarder listening on all your vlan segments - Which is seems like you do since 12.1 resolved</p>
<p dir="auto">Name: fw01.mylan<br />
Address: 10.11.1.1</p>
<p dir="auto">If you want 10.11.12.1 to resolve to something then just put that entry in your host over rides.  Then both its reverse and forwards will responds..</p>
</blockquote>
<p dir="auto">Hi John,</p>
<p dir="auto">Thanks for your swift reply. Here is my comments, please advise:</p>
<p dir="auto"><em>If you have your dns forwarder listening on all your vlan segments - Which is seems like you do since 12.1 resolved</em><br />
I have no idea if I have? It's just setup default.</p>
<p dir="auto">Name: fw01.mylan<br />
Address: 10.11.1.1</p>
<p dir="auto"><em>If you want 10.11.12.1 to resolve to something then just put that entry in your host over rides.  Then both its reverse and forwards will responds..</em><br />
Do you mean the local hosts file on Windows?</p>
<p dir="auto">Thanks for your help so far.<br />
Jim</p>
]]></description><link>https://forum.netgate.com/post/432309</link><guid isPermaLink="true">https://forum.netgate.com/post/432309</guid><dc:creator><![CDATA[jim82]]></dc:creator><pubDate>Mon, 02 Dec 2013 21:18:10 GMT</pubDate></item><item><title><![CDATA[Reply to DNS for several VLANs on Mon, 02 Dec 2013 21:12:49 GMT]]></title><description><![CDATA[<p dir="auto">If you have your dns forwarder listening on all your vlan segments - Which is seems like you do since 12.1 resolved</p>
<p dir="auto">Name: fw01.mylan<br />
Address: 10.11.1.1</p>
<p dir="auto">If you want 10.11.12.1 to resolve to something then just put that entry in your host over rides.  Then both its reverse and forwards will responds..</p>
]]></description><link>https://forum.netgate.com/post/432306</link><guid isPermaLink="true">https://forum.netgate.com/post/432306</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Mon, 02 Dec 2013 21:12:49 GMT</pubDate></item><item><title><![CDATA[Reply to DNS for several VLANs on Mon, 02 Dec 2013 21:06:57 GMT]]></title><description><![CDATA[<p dir="auto">Anyone? Do you need more info? Drawings? Etc?</p>
<p dir="auto">Thanks<br />
Jim</p>
]]></description><link>https://forum.netgate.com/post/432304</link><guid isPermaLink="true">https://forum.netgate.com/post/432304</guid><dc:creator><![CDATA[jim82]]></dc:creator><pubDate>Mon, 02 Dec 2013 21:06:57 GMT</pubDate></item></channel></rss>