• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

PfSense clients cannot ping google, fixed after reboot but repeats

Scheduled Pinned Locked Moved General pfSense Questions
4 Posts 2 Posters 1.1k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    dyce
    last edited by Feb 23, 2015, 7:01 PM

    All clients lose internet connectivity. But after manually inserting 8.8.8.8 as DNS for W8 client it restored. So I assume the DNS stops working or crashes on the pfSense? I can still remotely connect to my guacamole server and remote into PCs on the network.

    1 Reply Last reply Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator
      last edited by Feb 23, 2015, 7:18 PM

      so can not ping google.. Do you mean they are trying to ping something like www.google.com or an IP they have for google?  Or googledns say at like 8.8.8.8

      If you can not ping an IP on the internet that responds to ping, not all of them do.  Or you can not resolve www.google.com are completely different things.  You say you change to client to use googledns at 8.8.8.8 stuff works so that points to just dns related problem.

      How is it you assume that pfsense dns crashes - can you just check?  How do you have dns setup on pfsense, are you using the forwarder or the resolver in 2.2?

      If client behind pfsense queries pfsense lan IP for say www.google.com does it not respond (timeout) or does it come back nxdomain, serv error, refused?

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

      1 Reply Last reply Reply Quote 0
      • D
        dyce
        last edited by Feb 23, 2015, 7:29 PM

        I restarted the resolver and internet was restored.

        I found the thread saying to enable hardened glue and hardened dnssec in advanced settings for resolver, I will see if this fixes the problem or if it occurs again.

        1 Reply Last reply Reply Quote 0
        • J
          johnpoz LAYER 8 Global Moderator
          last edited by Feb 23, 2015, 7:45 PM

          Yeah one of the problems with using a actual resolver vs forwarder that if some bad dns returns glue for some domain it doesn't really own, you can now try and go to the wrong place when looking for a domain.

          So bad people on the internet ;)  Not everyone likes to play by the rules.

          If you just use a forwarder and ask say 8.8.8.8 for domainyouwantolookup.com they are the ones that have to worry about if someone gave them bad info when they asked for something else, etc.

          Depending on what your doing, there can be advantages to running a full resolver.. Others might find that all they really want/need is a forwarder

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received