OPNsense Forum

Archive => 23.7 Legacy Series => Topic started by: opnsensenetworker on December 03, 2023, 06:49:41 PM

Title: DNS look-up failures if I update from 23.7, VPN client can't be reset as well
Post by: opnsensenetworker on December 03, 2023, 06:49:41 PM
I'm a casual user of opnsense for a few years. I started using new hardware in the summer and have a problem with the new install.
On 23.7, I use an openvpn client to PIA --  on boot it will come up. But I cannot reset it because the host name does not resolve and all further DNS look-ups fail.
If I upgrade 23.7.9 the PIA openvpn client will not come up even on boot because the host name does not resolve.
In system->settings->general I have set DNS servers to use the WAN gateway.
unbound is listed in services on the dashboard.
I don't know if I monkeyed with other setting months ago.
Suggestions on how to troubleshoot this and what to read will be appreciated!
Title: Re: DNS look-up failures if I update from 23.7, VPN client can't be reset as well
Post by: lar.hed on December 03, 2023, 08:34:19 PM
just for checking, change from Unbound to DNSmasq - will that change the behavior?
Title: Re: DNS look-up failures if I update from 23.7, VPN client can't be reset as well
Post by: opnsensenetworker on December 03, 2023, 10:37:26 PM
using dnsmasq seems to resolve the dns look-up errors.
but there openvpn client doesn't come up. The error is write UDPv4: No route to host(fd=7, code 65)
This is both the case for resetting the VPN client 23.7 and at start-up with 23.7.9.
Title: Re: DNS look-up failures if I update from 23.7, VPN client can't be reset as well
Post by: lar.hed on December 04, 2023, 09:53:39 AM
Sorry to say my knowledge with VPN services are none to zero - so can not help you there :-)
Title: Re: DNS look-up failures if I update from 23.7, VPN client can't be reset as well
Post by: DEC670airp414user on December 04, 2023, 11:51:41 AM
i was having the same issue with another "provider"
i swapped to connecting by IP and no longer see this issue.

i was using unbound with blocklists.    stopped the blocked lists and it still happened.    wan is quad 9 servers

interesting someone else was having this with a different provider
Title: Re: DNS look-up failures if I update from 23.7, VPN client can't be reset as well
Post by: opnsensenetworker on December 04, 2023, 08:40:02 PM
lar.hed thanks for your help, part of the problem is solved!