Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
MultiWAN and BIND DNSBL
« previous
next »
Print
Pages: [
1
]
Author
Topic: MultiWAN and BIND DNSBL (Read 2391 times)
lzamel
Newbie
Posts: 7
Karma: 0
MultiWAN and BIND DNSBL
«
on:
July 10, 2020, 05:24:43 pm »
Hi all,
I have a working setup using BIND DNSBL and MultiWAN (with one GW at this stage). All works correctly however adding a second GW (same tier) breaks DNS unless I set System -> General -> DNS per GW. Unfortunately, setting those ignores my BIND setup.
Is there some trick I'm missing or do I need to create firewall rule redirecting the hosts from System -> General -> DNS per GW to my BIND. For BIND I use a different set of servers.
L.
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: MultiWAN and BIND DNSBL
«
Reply #1 on:
July 10, 2020, 05:36:16 pm »
Multiwan only works with trffic going through the Firewall, bind is local initiiated traffic and only works via default gateway
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
lzamel
Newbie
Posts: 7
Karma: 0
Re: MultiWAN and BIND DNSBL
«
Reply #2 on:
July 10, 2020, 05:56:36 pm »
Is there a way to push this traffic thru firewall?
(Sorry if I'm asking dumb questions, new to PF.)
Logged
mimugmail
Hero Member
Posts: 6766
Karma: 494
Re: MultiWAN and BIND DNSBL
«
Reply #3 on:
July 10, 2020, 06:33:03 pm »
No, because the Service runs on the Firewall
Logged
WWW:
www.routerperformance.net
Support plans:
https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German):
https://opnsense.max-it.de/
A1Dox
Newbie
Posts: 2
Karma: 0
Re: MultiWAN and BIND DNSBL
«
Reply #4 on:
July 13, 2020, 11:31:19 am »
Quote from: lzamel on July 10, 2020, 05:56:36 pm
Is there a way to push this traffic thru firewall?
Where is your bind instance running? Is it on the firewall itself or is it behind it, on your network?
If it's on the OPNsense device, did you work through Step 5 in the Multi-WAN setup here
https://docs.opnsense.org/manual/how-tos/multiwan.html
to manage local DNS traffic?
If it's behind it, did you set similar firewall rules to ensure DNS requests from your LAN bind server go out the way you want?
Logged
lzamel
Newbie
Posts: 7
Karma: 0
Re: MultiWAN and BIND DNSBL
«
Reply #5 on:
July 13, 2020, 08:44:36 pm »
I did. Step 5 rule matches LAN traffic, it will not match traffic originating from firewall itself. As there is no way to force it thru PF it cannot be used to modify GW.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
20.1 Legacy Series
»
MultiWAN and BIND DNSBL