OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 21.7 Legacy Series »
  • Guest VLAN can't resolve DNS (I'm using Unbound for all my interfaces)
« previous next »
  • Print
Pages: [1]

Author Topic: Guest VLAN can't resolve DNS (I'm using Unbound for all my interfaces)  (Read 2857 times)

warheat1990

  • Newbie
  • *
  • Posts: 14
  • Karma: 0
    • View Profile
Guest VLAN can't resolve DNS (I'm using Unbound for all my interfaces)
« on: December 31, 2021, 11:13:14 am »
Hello friend, 
 
I'm using Unbound DNS for all interfaces in my network. 
 


 
I have a Guest network (VLAN100), I block this Guest network from accessing other network (RFC1918) in the Firewall rules. 
 

 
Unfortunately, that means the clients under Guest VLAN won't be able to resolve DNS. How do I block Guest VLAN from accessing private network (RF1918) but still allow the clients under Guest VLAN to resolve the DNS?
Logged

KHE

  • Full Member
  • ***
  • Posts: 230
  • Karma: 19
    • View Profile
Re: Guest VLAN can't resolve DNS (I'm using Unbound for all my interfaces)
« Reply #1 on: December 31, 2021, 11:52:53 am »
Hi

simply but a rule on top of the block rule to allow the traffic from the Guest net to the Guest address with port 53 (DNS) and IPv4 UDP or IPv4 TCP/UDP.

KH
Logged

warheat1990

  • Newbie
  • *
  • Posts: 14
  • Karma: 0
    • View Profile
Re: Guest VLAN can't resolve DNS (I'm using Unbound for all my interfaces)
« Reply #2 on: December 31, 2021, 01:07:26 pm »
Quote from: KHE on December 31, 2021, 11:52:53 am
Hi

simply but a rule on top of the block rule to allow the traffic from the Guest net to the Guest address with port 53 (DNS) and IPv4 UDP or IPv4 TCP/UDP.

KH

Thanks, works perfectly 
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 21.7 Legacy Series »
  • Guest VLAN can't resolve DNS (I'm using Unbound for all my interfaces)
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2