OPNsense Forum

English Forums => General Discussion => Topic started by: pr3p on November 16, 2016, 03:33:28 AM

Title: DNS Server not Working
Post by: pr3p on November 16, 2016, 03:33:28 AM
I try to set the OPNSense as loca DNS Server but its not working or resolving, thanks and looking for your fast response.

Connection:
-All my WAN is DHCP connection

Setting on OPNsense
-system General -- > DNS Servers 208.67.222.222 and 208.67.220.220 (OpenDNS).
(http://image.prntscr.com/image/6e34bae074bc4a66a2526c4c1e14e891.png)

Services
-i disabled DNS forwarder and set DNS Resolver enable.

on DNS Resolver - general
(http://image.prntscr.com/image/5c32dc30c1fb43d1b87c80ea886d26e9.png)


on PC:.
Conduct test on my windows PC and set the DNS Server to
(http://image.prntscr.com/image/0d033b476fe64837bafdc94b0ff1c0ab.png)

(http://image.prntscr.com/image/8cacf1a6f34b4082b49076c4a14d3d5e.png)

Another Problem.
When i refresh the dashboard also some services was stop/disabled and refresh again its ok then vice versa.

(http://image.prntscr.com/image/d5a517f19c184b439fbb02adad9cbe70.png)


Note: on my other server its working fine with the same setup.
Title: Re: DNS Server not Working
Post by: franco on November 16, 2016, 07:35:48 AM
There are several things to consider:

o Shouldn't mix Google servers with OpenDNS
o Forwarder was disabled in favour of Resolver, but it fails to start (configuration error, check log files)
o NTP slow start is normal, if it's not back up it may point to a failure to resolve DNS as well


Cheers,
Franco
Title: Re: DNS Server not Working
Post by: pr3p on November 16, 2016, 11:23:41 AM
Hi franco i did the right config please refer on  the screenshot thanks.

Set System Setting ----> General DNS Server to opendns
(http://image.prntscr.com/image/668d19398fc84f03932b8b7f0c0d1883.png)

-Disable DNS Forwarder
(http://image.prntscr.com/image/3f7d7c299e1d49f0a2b933e1a4bbdb75.png)

-Enabled DNS Resolver
(http://image.prntscr.com/image/a0810adae82344c780846fb5a3f7f1a7.png)


and the config on Network time is set also
(http://image.prntscr.com/image/604423ad0be1456fbe5109b44a154565.png)


and the ntpd ( NTP clock sync) services still unstable.
(http://image.prntscr.com/image/4e5fbb7e97a8407b9535b9d1dc3216b9.png)


i check logs on network time im getting this. the ntpd sometimes start sometimes stop.
(http://image.prntscr.com/image/0cecbe758017409497b23e3581946eaf.png)

Regards,
pr3p
Title: Re: DNS Server not Working
Post by: pr3p on November 21, 2016, 02:42:03 AM
any help thanks  :(
Title: Re: DNS Server not Working
Post by: chemlud on November 21, 2016, 07:26:16 AM
Can you ping 8.8.8.8 from OPNsense? From LAN client? Seems you connection is totally broken.

I would not tick the "DNS server override by DHCP/PPP".
Title: Re: DNS Server not Working
Post by: pr3p on November 21, 2016, 12:58:14 PM
Pinging any DNS Server is fine

Ping on 8.8.8.8
(http://image.prntscr.com/image/522e60cff25843b1b018ab3e4c974286.png)

Ping on OpenDS 208.67.220.220
(http://image.prntscr.com/image/72c09fe0c63241f89fbe03b0b264f3db.png)


The problem was the services on ntp and Unbound DNS Resolver unstable sometimes the services stop and start (vice versa)


When i set the DNS Server on my windows pc i cant even ping google or any website its RTO but when on opnsense server tools i can ping any website and do traceroute and lookups also, one of my server is working fine same config. i tried also on fresh install problem still occur or same issue
Title: Re: DNS Server not Working
Post by: chemlud on November 21, 2016, 05:02:39 PM
Would guess the services simply time out, have a look at your latency, 900 ms for a google DNS server, WOW!
Title: Re: DNS Server not Working
Post by: chemlud on November 21, 2016, 06:44:12 PM
PS: Do you have gateway monitoring enabled? Might indicate "down" due to high latency (which triggers service restart). Increase threshold to some 1000s of ms or disable monitoring, as a try...
Title: Re: DNS Server not Working
Post by: pr3p on November 22, 2016, 03:22:21 AM
The gateway monitoring is set to disable on all dsl line / inteface.

(http://image.prntscr.com/image/5b3baa4f78d8414287e34e09df85522b.png)

The problem is the services for ntpd and unbound unstable
(http://image.prntscr.com/image/ba7ca49c165e4851bc36777097010e8a.png)

I checked the config on my other server with same config its working fine and stable onky this new setup and the other one has a problem.


Regards,
pr3p