OPNsense Forum

English Forums => General Discussion => Topic started by: mCaetano on October 13, 2020, 05:31:21 pm

Title: Resolve DNS from external clients
Post by: mCaetano on October 13, 2020, 05:31:21 pm
I can't resolve DNS for external clients on the local network using fixed public ip.

Error message: ** server can't find google.com: REFUSED

obs:
In fact I would like to do opnsense, too, resolve DNS coming from external IP.
Title: Re: Resolve DNS from external clients
Post by: Deku on January 22, 2021, 10:20:54 pm
I experienced this message as well when using Dnsmasq.

Quote
Error message: ** server can't find xxxxxx REFUSED

In particular, when I would connect with WireGuard, I could not get out to the internet.  A restart of Dnsmasq would not fix it, but changing the config and resaving would fix it.

Since OPNsense has moved to Unbound DNS as the default, I figured I'd try that.  So far, I haven't had the issue with Unbound DNS.  Though as a configuration note for Unbound DNS with WireGuard, you have to add the WireGuard network to the Access List.

As a side note, if Unbound is the preferred DNS, might it make sense to move Dnsmasq out of Core and into Plugins?