Thank you for the suggestions.
a) I've set 1.1.1.1, 8.8.8.8, and 9.9.9.9 as my DNS servers (on the System / Settings / General page); they show up at the top of my Routes for my WAN port (followed by my ISP's DNS servers)
b) Thank you for flagging double NAT; that sounded like a contender for my symptoms; but so did a few other things, and I was having trouble knowing which order to debug in.
And no, my ISP router wasn't in bridge mode; that option appears to have been disabled by my ISP. I tried IP Passthrough, but I lose internet entirely, and my OPNsense WAN port never receives an IP address. That appears to be another ISP-related issue.
I've now tried enabling DMZ in my ISP router, for my OPNsense WAN IP address. I've just enabled that, and haven't had a repeat of the NXDOMAIN error yet, so I'll keep monitoring that; and read up on the limitations of DMZ.
Thanks!
Thank you.
a) I've set 1.1.1.1, 8.8.8.8, and 9.9.9.9 as my DNS servers (on the System / Settings / General page); they show up at the top of my Routes for my WAN port (followed by my ISP's DNS servers)
b) Thank you for flagging double NAT; that sounded like a contender for my symptoms; but so did a few other things, and I was having trouble knowing which order to debug in.
And no, my ISP router wasn't in bridge mode; that option appears to have been disabled by my ISP. I tried IP Passthrough, but I lose internet entirely, and my OPNsense WAN port never receives an IP address. That appears to be another ISP-related issue.
I've now tried enabling DMZ in my ISP router, for my OPNsense WAN IP address. I've just enabled that, and haven't had a repeat of the NXDOMAIN error yet, so I'll keep monitoring that; and read up on the limitations of DMZ.
Thanks!
Thank you.
"