Hello all,
Glad to see this forum up and running!
Question - why does one need to use pfSense DNS Forwarder and what is a typical use case for it?
Thx
Hello all,
Glad to see this forum up and running!
Question - why does one need to use pfSense DNS Forwarder and what is a typical use case for it?
Thx
I forward my DNS queries to a Raspberry Pi running the Pi-Hole before they get out onto the web and use a public DNS service.
I use it assign hostnames to my devices on the LAN.
e.g.: nas01.domain.com , plex.domain.com, etc
Now I do not have to remember all those IP addresses and can use a SSL certificate.
Other (mis)use for me were the domain overrides so I could drop traffic to domains like : doubleclick.net and statcounter.com
(Instead of the domain overrides you can better use Pi-Hole offcourse which I am running now)
That’s exactly what i want to have !
Would you walk me thru steps to achieve this ?
Say I have domainname.com:8096 for Emby and want it to look like emby.domainname.com
I am not sure if this a best practice but this is what I have done on my private LAN.
(You cannot forward to or from a port number as far as I know)
At Host Overrides use the + Add button
Now fill in the blanks with:
Host - the hostname like emby
Domain - your internal domain like domainname.com
IP Address - the IP address of the host 172.16.1.10
Description - A description if needed
Make sure :
you have chosen a interface under Interfaces
to use pfSense to handle your DNS requests
to flush your DNS when needed on the client
(You cannot forward to or from a port number as far as I know)
That’s would be very nice to figure out how to do !
So far I am out of luck. Here are my settings:
I had to use port 54 as 53 suspected to be used by pfBNG or DNS Resolver. Is it OK ?
I do force all clients to use pfSense port 53 for DSN calls as in
Anything jumps at you ?
Thanks for helping !
PS: I suspect my set up of ports 53 and 54 is wrong …
These are my settings. I cannot remember if I ever changed something from default.
I do not have a DNS firewall rule.
Still no love
Maybe somebody has some ideas ?
What’s interesting that I do see my emby.mydomain.lan name registered in /etc/hosts
Do you have DNS Resolver also listening on 53?
FYI
I do not have the DNS Resolver activated.
When I look at the menu options it is almost the same as the DNS forwarder.
I have no clue what the difference between the forwarder and resolver is.
It is more that 3 years ago that I set this (private) box up and do not remember why I choose to use the DNS forwarder instead of the DNS Resolver.
Just FYI same behavior can be done via DSN Resolver/Host Overrides and add a host values there
Okay. That is good to hear.