OPNsense Forum

English Forums => Virtual private networks => Topic started by: Techmaster21 on August 21, 2022, 06:45:52 AM

Title: VLAN DNS issues
Post by: Techmaster21 on August 21, 2022, 06:45:52 AM
I have set up a clean copy of the open sense setup with all the VLANs setup but every device that is on a VLAN is having a DNS meltdown. All the windows and Linux machines are saying that the DNS server is not responding or not available and im not really sure why. I have setup and the DNS servers 1.1.1.1 and 1.0.0.1 under General and settings and I have setup Dnsmasq and Unbound DNS and I just cant figure it out after hours of trying. My goal is to simply want all DNS traffic to be secured. I don't have any firewall rules configured currently and im assuming that might be the issue but not really sure what to do there. Any help would be appreciated. 
Title: Re: VLAN DNS issues
Post by: Techmaster21 on August 21, 2022, 06:46:58 AM
_
Title: Re: VLAN DNS issues
Post by: tong2x on August 21, 2022, 03:05:27 PM
your only showing ubound...

if your VLAN is the issue, what rules have you set?
what is the configured IP, gateway and DNS of you vlan client?

generally their gateway and DNS should be your firewall IP (vlan subnet)
Title: Re: VLAN DNS issues
Post by: Techmaster21 on August 21, 2022, 04:58:54 PM
The IP is a range of 192.168.120.1 - 192.168.120.15
DNS servers: 192.168.120.1
Gateway: 192.168.120.1
Title: Re: VLAN DNS issues
Post by: Techmaster21 on August 22, 2022, 01:20:51 AM
Anyone have any other input.
Title: Re: VLAN DNS issues
Post by: tong2x on August 22, 2022, 06:54:06 AM
what are the set firewall rules for your [backup] interface
Title: Re: VLAN DNS issues
Post by: Techmaster21 on August 22, 2022, 06:59:03 AM
Nothing at the moment.
Title: Re: VLAN DNS issues
Post by: Patrick M. Hausen on August 22, 2022, 08:01:37 AM
No rules mean "everything denied" - you need to explicitly set up allow rules for each new interface you create, VLAN or not.
Title: Re: VLAN DNS issues
Post by: tong2x on August 23, 2022, 02:50:10 AM
agree, hence your firewall is not accepting connection from your [backup] clients, though they may received dhcp since rules for dhcp is automatically created by the system