Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense and bind = nat failure

    Scheduled Pinned Locked Moved DHCP and DNS
    6 Posts 2 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      Pehesis
      last edited by

      Hi

      I need some help with an issue, i recently installed pfsense on an old pc and has been working great. On my network i have a web/ftp/email/dns/ server and it was the local dns server as well i thought it would a good i dea to use pfsense as the local dns server to resolve hostname for local devices, and keep my mulit server running as is. In pfsense i installed the bind package and set it up a zone for mynetwork.com and create a bunch of A records to point to diffrent devices eg.. [ router A 192.168.1.1] hoping that when i type into my browser router.mynetwork.com i would get the admin page of my router. All devices have be setup by dhcp to use pfsense as the dns server. cant seem to get it going not sure what im doing wrong

      Trying to figure out what im doing wrong i noticed that all my nat rules have just stopped working and port forwarding to my server is just not working.  ports being forwarded 80,53,21,…... . All of them not working since i installed bind on pfsense

      So what i would like is all my client on the network to use pfsense for dns queries and that my server only uses itself which is the way it was setup. Is it possible.

      Thanks

      1 Reply Last reply Reply Quote 0
      • DerelictD
        Derelict LAYER 8 Netgate
        last edited by

        You can just use the DNS Resolver to do that without mucking about with the BIND package.

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 0
        • P
          Pehesis
          last edited by

          Hi

          I tried DNS Resolver but i cant seem to start it, it says it started however is never does. In system logs i get this

          Jan 16 16:44:39 php-fpm[11404]: /status_services.php: The command '/usr/local/sbin/unbound -c /var/unbound/unbound.conf' returned exit code '1', the output was '[1452915879] unbound[83683:0] error: can't bind socket: Address already in use for 127.0.0.1 [1452915879] unbound[83683:0] error: cannot open control interface 127.0.0.1 953 [1452915879] unbound[83683:0] fatal error: could not open ports'
          Jan 16 16:44:39 dhcpleases: Could not deliver signal HUP to process because its pidfile (/var/run/unbound.pid) does not exist, No such file or directory.
          Jan 16 16:44:40 dhcpleases: Could not deliver signal HUP to process because its pidfile (/var/run/unbound.pid) does not exist, No such file or directory.
          Jan 16 16:44:40 dhcpleases: Could not deliver signal HUP to process because its pidfile (/var/run/unbound.pid) does not exist, No such file or directory.
          Clear log

          the first file  unbound.conf exsist however unbound.pid does not

          Ive have change the port to listen on to 55 i do have a web server with dns which has port forwarding tcp and ucp 53.

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            Is BIND running and listening on TCP/UDP 53?

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • P
              Pehesis
              last edited by

              Hi

              No i uninstalled it just checked to see if still was in the installed packages and it wasnt so i reinstalled in then uninstalled again to see if it missed something

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                I guess reboot then and try resolver again. Damn packages are such a mess.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.