OPNsense Forum

English Forums => General Discussion => Topic started by: alto on September 10, 2023, 11:42:26 AM

Title: How to set up Unbound DNS wildcard override with exception?
Post by: alto on September 10, 2023, 11:42:26 AM
I have a situation where I want to do this:

Resolve *.example.com to 192.168.10.10
Resolve vpn.example.com to 1.1.1.1

I.e. I use example.com for all services in my LAN *except* for my VPN which I want to resolve from a public dns server instead.
How do I properly set this up?

I have *.example.com as a host override, but that resolves vpn.example.com to 192.168.10.10 as well

I have tried these additional settings to try to make an exception for vpn.example.com:


So is there a way to actually do this with Unbound DNS or do I need to move this to the AdGuard Home plugin DNS, dnsmasq or something else?
Title: Re: How to set up Unbound DNS wildcard override with exception?
Post by: alto on September 17, 2023, 10:40:41 PM
Nobody?
Title: Re: How to set up Unbound DNS wildcard override with exception?
Post by: newsense on September 17, 2023, 11:02:09 PM
It's likely you'll have DHCP reservations for VPN clients so might as well provision the public resolver in the reservation profile
Title: Re: How to set up Unbound DNS wildcard override with exception?
Post by: alto on September 19, 2023, 11:53:34 PM
Quote from: newsense on September 17, 2023, 11:02:09 PM
It's likely you'll have DHCP reservations for VPN clients so might as well provision the public resolver in the reservation profile

I'm not following, how does DHCP affect what DNS lookups I can make from inside my LAN?