OPNsense Forum

Archive => 20.1 Legacy Series => Topic started by: lzamel on July 10, 2020, 05:24:43 PM

Title: MultiWAN and BIND DNSBL
Post by: lzamel on July 10, 2020, 05:24:43 PM
Hi all,
I have a working setup using BIND DNSBL and MultiWAN (with one GW at this stage). All works correctly however adding a second GW (same tier) breaks DNS unless I set System -> General -> DNS per GW. Unfortunately, setting those ignores my BIND setup.

Is there some trick I'm missing or do I need to create firewall rule redirecting the hosts from System -> General -> DNS per GW to my BIND. For BIND I use a different set of servers.

L.
Title: Re: MultiWAN and BIND DNSBL
Post by: mimugmail on July 10, 2020, 05:36:16 PM
Multiwan only works with trffic going through the Firewall, bind is local initiiated traffic and only works via default gateway
Title: Re: MultiWAN and BIND DNSBL
Post by: lzamel on July 10, 2020, 05:56:36 PM
Is there a way to push this traffic thru firewall?

(Sorry if I'm asking dumb questions, new to PF.)
Title: Re: MultiWAN and BIND DNSBL
Post by: mimugmail on July 10, 2020, 06:33:03 PM
No, because the Service runs on the Firewall
Title: Re: MultiWAN and BIND DNSBL
Post by: A1Dox on July 13, 2020, 11:31:19 AM
Quote from: lzamel on July 10, 2020, 05:56:36 PM
Is there a way to push this traffic thru firewall?

Where is your bind instance running? Is it on the firewall itself or is it behind it, on your network? 
Title: Re: MultiWAN and BIND DNSBL
Post by: lzamel on July 13, 2020, 08:44:36 PM
I did. Step 5 rule matches LAN traffic, it will not match traffic originating from firewall itself. As there is no way to force it thru PF it cannot be used to modify GW.