1
Virtual private networks / Re: DNS Outgoing Network Interface through VPN is failing
« on: October 22, 2023, 08:53:00 pm »
Thanks for the clarification.
Yes, firewall rules are my suspect. I don't think the rest of my VPN traffic would be flowing if I had an issue with routes or NAT.
The biggest difference I've noted between the pfSense and OPNsense during this exercise is what NAT and firewall rules remain in place when Outbound NAT rule generation is switched from automatic to manual. Based on the VPN setup document linked earlier, pfSense appears to retain the auto-generated rules and allows you to modify them. OPNsense wipes the auto-generated rules. If that's correct, the pfSense doc is probably quietly assuming a retained rule is in place which is passing DNS, which is not true under OPNsense.
I'll post the solution here when I find it.
Yes, firewall rules are my suspect. I don't think the rest of my VPN traffic would be flowing if I had an issue with routes or NAT.
The biggest difference I've noted between the pfSense and OPNsense during this exercise is what NAT and firewall rules remain in place when Outbound NAT rule generation is switched from automatic to manual. Based on the VPN setup document linked earlier, pfSense appears to retain the auto-generated rules and allows you to modify them. OPNsense wipes the auto-generated rules. If that's correct, the pfSense doc is probably quietly assuming a retained rule is in place which is passing DNS, which is not true under OPNsense.
I'll post the solution here when I find it.