Hi there,
I'm still using monowall and considering switching to OPNsense.
I need particulary 2 things and would like to understand, if that's possible:
1) the WAN interface goes to a cable modem which is the DHCP server. So it gives my firewall it's DNS servers. I'd like to manually overwrite those and use the DNSs of my choice. monowall can't do that. Can OPNsense?
2) doing above it would be nice to go straight to DNS over TLS. I know that's not a standard yet, but perhaps it's already possible in OPNsense?
Thx,
reach
Yes, OPNsense supports both of these options. Just ensure that you uncheck "Allow DNS overides" under System/Settings/General. Then follow the instructions in the thread linked below.
Here's the ongoing thread with the new Quad9 and Cloudflare DNS over TLS settings:
https://forum.opnsense.org/index.php?topic=7811.0
There will be easier integration of DNS over TLS down the line. For now it's a bit of manual effort but it's perfectly viable.
Cheers,
Franco