I’ve got an assortment of Google devices on my IoT vlan, Avahi setup to limit/allow primary vlan to communicate with those devices, and a firewall rule set to block DNS queries for the IoT interface to anything other than the pfsense firewall. All of this is working as expected and all of my devices have no issues with internet access.
The problem is that ever since Unifi Controller introduced Wi-Fi Experience, my Google Home, Hub and Chromecast devices have all had 0% scores due to “DNS timeouts”, despite having no issues resolving anything. If I turn off the Block DNS fw rule, then all of them immediately get a 100% score. I’m sure that these devices are attempting to use Google DNS servers, but they’re also set to use my pfsense DNS server via the DHCP scope settings for the IoT interface. I know I can just ignore the 0% scores, but I still find it mildly triggering and would appreciate knowing if anyone knows a way I can fix this.