Comprehensive Guide to pfSense 2.3 Part 7: DNS Resolver and Benchmarking

แชร์
ฝัง
  • เผยแพร่เมื่อ 5 ก.ย. 2024
  • In this video I go over DNS, the resolver 'unbound', and configuring it in pfSense.
    Part 1: • Comprehensive Guide to...
    Part 2: • Comprehensive Guide to...
    Part 3: • Comprehensive Guide to...
    Part 4: • Comprehensive Guide to...
    Part 5.1: • Comprehensive Guide to...
    Part 5.2: • Comprehensive Guide to...
    Part 5.2-2: • Comprehensive Guide to...
    Part 5.3: • Comprehensive Guide to...
    Part 5.4: • Comprehensive Guide to...
    Part 6: • Comprehensive Guide to...
    Part 8: • Comprehensive Guide to...
    Part 9: • Comprehensive Guide to...
    I have a second channel:
    / @markfurneaux2659

ความคิดเห็น • 142

  • @phugoid2829
    @phugoid2829 7 ปีที่แล้ว +7

    More-More-More. Mark, don't stop now. Great series and I hope you are planning on continuing more videos on pfSense.

  • @pfiltz
    @pfiltz 7 ปีที่แล้ว

    I'm new to PFSense... and hoping to incorporate it into our business network, and plan on removing our old LinkSys router. I've watched all your vids... Just pure excellence... Thanks for all your time. Subscribed... !

  • @bb1987
    @bb1987 8 ปีที่แล้ว

    Please oh please, do a video on traffic shaper like you mentioned. These are by far the best pfsense guides on TH-cam and the more you can do for pfsense the better! I love your channel! Keep it up!

  • @will16320
    @will16320 7 ปีที่แล้ว +13

    Idea's for future videos:
    Traffic shaping, FreeRADIUS, squid3, HA via CARP, Content filtering.
    Enjoyed this series!

  • @JensAndersson
    @JensAndersson 8 ปีที่แล้ว +1

    Just finished watching all your PFSENSE videos, Great work, looking forward to new videos.

  • @darryllawler2777
    @darryllawler2777 8 ปีที่แล้ว

    Video series is fantastic. Thank you for taking the time. Please! don't stop. *Very* anxious for any upcoming new videos.
    Great work!!

  • @SteveMasonCanada
    @SteveMasonCanada 8 ปีที่แล้ว

    Great video, thanks for sharing! I just switched back to PFSense now that it has better support for Hyper-V virtual nics. I'm pretty familiar with PFSense, but didn't realize how good and configurable the DNS was. Have fine-tuned the configuration after seeing this video and it's really performing now.
    Thanks again from a fellow Canadian computer geek and electronics tinkerer.

  • @DaHaiZhu
    @DaHaiZhu 7 ปีที่แล้ว

    Just wanted to say that I really enjoyed and appreciated all these videos on pfSense! I have learned quite a lot - even on topics I thought I already understood. I have a server on order (J1900 4 port) that should be arriving soon and selected it based a lot on your videos. I'm really excited to get it up and running and configured with all the help and information you provided. I sincerely hope you continue these videos as you had originally planned and look forward to learning even more. Thank you, again, for these awesome videos!

  • @miketeo4627
    @miketeo4627 8 ปีที่แล้ว

    Thanks for the Awesome informative and indepth videos Mark!! There aren't a lot of pfsense informational videos (that don't bore people to death).

  • @JoeKingstonS
    @JoeKingstonS 8 ปีที่แล้ว +1

    Excellent video on DNS! I learned a lot from this video. Would love to see a video on captive portal & traffic shaper.

  • @AseemKishore
    @AseemKishore 7 ปีที่แล้ว +1

    Great videos! I just got a pfSense box and your videos have been very helpful. Obviously you are busy these days with other stuff, but if you do get back to pfSense videos, please think about doing one on VLANS! Thanks.

  • @jf7308
    @jf7308 7 ปีที่แล้ว

    Just finished all your Pfsense videos.They are awesome. Please make one on Squid etc.
    Thank you

  • @sveinbjornkari
    @sveinbjornkari 8 ปีที่แล้ว +1

    Love your videos. They are helping me a lot building and understanding my pfsense box. I am looking forward to the next video.

  • @lmannyr1
    @lmannyr1 7 ปีที่แล้ว

    I binged watched all the pfSense videos. Thank you for sharing the knowledge. Look forward to the next set of videos to finish it off ;-)

  • @Rudi12399
    @Rudi12399 8 ปีที่แล้ว

    Very nice series Mark! Ive watched all your videos and I believe I have a pretty good sense at how things run. I want to build captive portal for my restaurant and manage guests in such way that they get a free 1 'pass-through credit' for say 30 mins then I drop them from my network. In case they buy something I would give them a voucher for another hour or so (possibly print through pos printer). In your videos you didn't mention going through this service any time soon and I couldn't find any comprehensive tutorial on the web so if you could help me answer some questions I would be really happy.
    1. I enabled Captive Portal for LAN
    2. Set Idle timeout to 20 mins
    3. Hardtimeout 30 mins
    4. Pass-throough credit per MAC address: 1
    5. Authentication: local user manger/voucher and press SAVE
    it gives me this error 'The waiting period to restore pass-through credit must be above 0 hours.' I don't see a field to input the waiting period or reset time for these credits. I would set that to 12 hours or so. Also when I put only minimal configuration the portal rarely shows up meaning my connection times out and I have no internet access. However If I disable portal the internet connection restores immediately.
    Can you or anyone else please give me some help here.

  • @davidelsliger2819
    @davidelsliger2819 7 ปีที่แล้ว +1

    There were a few mentions of how you did not enable the forwarder, hence the DNS servers configured in the general setup would not be used. The resolver will query the root DNS servers.

  • @trevormcmillan8775
    @trevormcmillan8775 8 ปีที่แล้ว +1

    brilliant... been looking for something like this for ages! Thanks.

  • @raymondfb
    @raymondfb 8 ปีที่แล้ว

    thanks Mark your post is very helpful and I am very grateful. You really helped me with DNS on pfsense!

  • @tizschnitz1869
    @tizschnitz1869 8 ปีที่แล้ว

    I wish people actually listened to you in the videos. You say what your plans are. .. really looking forward to QoS it something I ve never managed to setup correctly.
    also I hope you plan to reconsider some of the areas you previously left out at the end of your main audience tutorials
    thanks again

  • @dman2007
    @dman2007 7 ปีที่แล้ว +2

    New to pfsense and im glad i stumbled by your videos for noobs like myself. Ive watched all of your PFsense tutorials and a couple of your other ones (im a subscriber). When are you doing snort and squid videos? Id also like some VLAN and openVPN videos too! Love your videos keep up the good work.
    Ps, sorry about your server fire, but im pretty sure you saved me from one as I had a garbage connector in my system!

  • @sebsefyu
    @sebsefyu 6 ปีที่แล้ว

    I wish you would covered Dns Resolver vs Dns forwarder. I think that video deserves it's entire video. I'm using now Dns resolver and it's slower 900ms on avr then when i was using dns forwarder 33-60ms on avr. HUGE difference. All in default settings. I can't seem to make it faster. I'm not using squid or any caching. Thoughts guys

  • @abdraoufx
    @abdraoufx 7 ปีที่แล้ว +4

    excellent presentation dude 👍
    I can't thank you enough

  • @dustinjorden6594
    @dustinjorden6594 8 ปีที่แล้ว +1

    Thank you somuchfor these videos. they have helped me set up my home network and understand more. i look forward to more!!!

  • @ammini999
    @ammini999 7 ปีที่แล้ว

    Why did you stop? If you put them on Udemy and carry on I would buy them. I was waiting something on rules and Firewall management, IPS IDS and staff like that. You are very clear when you explain, keep going.

  • @bteentalk
    @bteentalk 6 ปีที่แล้ว

    Thank you so much for your kindly shared.

  • @letsgetsteve
    @letsgetsteve 8 ปีที่แล้ว

    Hey Mark! Another great video! Are more on the way? I can't seem to get enough of them and I love learning more about my network. Hope to see a bunch more pfsense vids soon!

  • @epd807
    @epd807 8 ปีที่แล้ว +1

    Excellent video once again! Thank you!

  • @zafarasyed
    @zafarasyed 8 ปีที่แล้ว

    Excellent video series. Can you try to include "Traffic shaper" feature on you next firewall video? Possibly how to control the speed of internet (download/upload speeds) to a specific mac address/s to limit some computer on the local network to a limited down/up speed.

  • @yashnram6023
    @yashnram6023 7 ปีที่แล้ว

    Hello Mark! You are doing gods work. Would you please make a video or series of videos about firewalls in pfsense? I remember in the fifth part that you had mentioned that you would.

  • @21Lettere
    @21Lettere 8 ปีที่แล้ว

    Great work, very well explained. Could you please add a detailed part on how to configure an additional LAN (e.g. LAN2 for connecting surveillance cameras), how to separate this network from the Default LAN and how to access this LAN2 from the Internet using an OpenVPN? Many thanks!

  • @Lothyde
    @Lothyde 2 ปีที่แล้ว +1

    According to Netgate Docs, if using DNS Resolver Mode, manually setting DNS Servers or enabling DNS Server Override has no effect. So all the steps with namebench can be skipped.

    • @AG-no8zq
      @AG-no8zq 2 ปีที่แล้ว +1

      Right. You'd need to enable the forwarder mode in Unbound to make your pfSense use the DNS servers you set up unter System > General Setup.

  • @oskarhammarstrom5075
    @oskarhammarstrom5075 8 ปีที่แล้ว +1

    hey Mark, awesome stuff, keep it going please. I'm looking forward to your videos of squidguard and the like :)

  • @carpii
    @carpii 6 ปีที่แล้ว +1

    When you specify what interfaces you want the DNS server to listen on, I'm having a hard time understanding why you would include the WAN interface. Could anyone explain plz? (Im talking about a situation where pfsense is acting as your primary edge router for a home LAN)

    • @carpii
      @carpii 6 ปีที่แล้ว

      Thanks, I will change mine to listen just on LAN interface then. Although I have no firewall rules to allow external DNS, so I guess it would have been safe anyway Cheers

  • @prudentialpropertiesl.l.c2778
    @prudentialpropertiesl.l.c2778 4 ปีที่แล้ว

    Excellent Briefing so lovely

  • @johnance17
    @johnance17 8 ปีที่แล้ว +3

    Hi Mark,
    Your videos are great reference specially for pfsense 2.3, Hope you could make a video too for Squid3, Traffic Shaping and Captive Portal.

    • @RGuinn829
      @RGuinn829 8 ปีที่แล้ว +1

      ditto

    • @ogedeikhan4706
      @ogedeikhan4706 8 ปีที่แล้ว

      ditto . .basically yeah ..we want you to show us everything you know. HAHA ..thanks man. Great series.

  • @ibr0wse
    @ibr0wse 8 ปีที่แล้ว

    Hey Mark,
    Thanks so much for your comprehensive guides. Been setting up a small company router from these videos and it's been working great. Played around with a lot of it, experimented like you said. I was hoping you could soon talk or go over packages, and possibly how to set it up to block ads to help with bandwidth, or point me in the right direction as I am stumped. Any help would be great, thanks!

  • @dhettinger80
    @dhettinger80 7 ปีที่แล้ว

    Thanks for all the hard work you put into this!

  • @troyhector
    @troyhector 7 ปีที่แล้ว

    Hi Mark, will you be continuing with the pfSense video series? Looking forward to part 8.

  • @jebi1099
    @jebi1099 7 ปีที่แล้ว +9

    Why do you not enable the Forwarding Mode? If it's not enabled always DNS Root servers will be used. So the configured DNS Servers in the General Setup are not used at all...
    Correct?

    • @craiguk1973
      @craiguk1973 7 ปีที่แล้ว +2

      I don't understand this either. Surely only when forwarding mode is enabled will any of the benchmarked servers be called upon?

    • @link470
      @link470 6 ปีที่แล้ว +2

      I'm also wondering the same thing; why he went to the trouble to configure DNS servers based on response time, configure them in General setup as DNS servers, and then say "screw it, use root hints".

    • @FlagstaffslowTV
      @FlagstaffslowTV 6 ปีที่แล้ว

      But aren't those servers listed in General Setup used if your pfsense can't resolve this request from cache? I took this checkbox as meaning the request gets forwarded straight out to the DNS servers (like a DNS forwarder?) I am a noob to this, but that's how I understood it.

  • @theaddies
    @theaddies 5 ปีที่แล้ว

    Simply fantastic. Thank you, thank you, thank you!!!

  • @brianhaverty4160
    @brianhaverty4160 4 ปีที่แล้ว

    Fantastic video. Thank you!

  • @andireiff
    @andireiff 7 ปีที่แล้ว

    Thank you for whole series!

  • @CyberCam1969
    @CyberCam1969 8 ปีที่แล้ว +25

    Do you plan on doing an OpenVPN Guide as well?

    • @RGuinn829
      @RGuinn829 8 ปีที่แล้ว +3

      Ditto

    • @ogedeikhan4706
      @ogedeikhan4706 8 ปีที่แล้ว +2

      ditto

    • @ryan810cows
      @ryan810cows 7 ปีที่แล้ว +1

      Cam Alliance
      +1

    • @jf7308
      @jf7308 7 ปีที่แล้ว +1

      +1

    • @Predator2025
      @Predator2025 7 ปีที่แล้ว +3

      This is what I am looking for from Mark. He explains things very well.

  • @leonardopinheiro6693
    @leonardopinheiro6693 7 ปีที่แล้ว

    Great videos!
    Are you going to talk about the integration with Windows Server and Active Directory ?
    That would be very useful for lots of people.

  • @leonardopinheiro6693
    @leonardopinheiro6693 6 ปีที่แล้ว

    Mark, thank you for your excelent video.
    You helped me a lot.

  • @nooruzzaman5358
    @nooruzzaman5358 8 ปีที่แล้ว

    Great Tutorial which you have presented keep it up.

  • @topgunm
    @topgunm 8 ปีที่แล้ว

    Subbed! Your videos are so awesome. Quality stuff and you explain the technical bits amazingly well. Thank you for this. I got IGMP working (on 2.2.6), but TBO I'd like to understand it better. Do you have plans on making a video in regards to this topic? Unfortunately IGMP is not working on 2.3 (known bug), so I had to downgrade to 2.2.6 to get it working with VLANs, but it would be nice with a video on how to set it up/how it works (technically) regardless - Upsteam/downsteam etc.

  • @jlaroche0
    @jlaroche0 7 ปีที่แล้ว

    This is awesome. Thanksfor all your hard work on this. Could you please, please, please make videos about setting up Squid with pfSense and also using upnp (with a bittorrent client).

  • @mikepayne377
    @mikepayne377 8 ปีที่แล้ว

    Good tutorial Mark. Personally, I think DNS, Nameservers, etc are the most complicated thing in any network.
    Checking them to see if they are working is akin to asking if God is real. (and yes, I'm being serious)
    I am "trying" to build a pfSence rig, but right now, am running two Smoothwall systems. It goes modem,
    S.W.1, routers, S.W.2.. The lan is 192.168.15.xxx and 192.168.0.xxx Yes, two firewalls back to back. Now,
    my routers are actually managed switches, and I could hook one to the modem and VLAN to the two S.W.
    units. (same would hold true with pfS) Namebench passed my two S.W. units, but failed my stand alone
    DNS server on a computer. (not what I wanted to see) Why do I want a bulletproof DNS? My ISP tends to
    have DNS failures quite often. The connection is still there, but its dumb as a post. So, in my mind, if my
    system knows where things are, I should be fat, dumb, and happy; and be able to use the Internet. Back
    in the days of JNOS I spent hours hand typing a lookup table, verifying, and so forth. Today, that's just
    total insanity. So the pfS project is still moving forward and watching your videos help. Thank you.

    • @mikepayne377
      @mikepayne377 8 ปีที่แล้ว

      I feel your pain David. I have a Dell 1750 running 2003r2 and its still screaming; literally. So far, so good. I run a old Optiplex with Win98se and use it for files and NTP. It does a great job. I spent the today "trying" to weed through Bind 9. (what was I thinking?) Well, it managed to crash the 2nd Smoothwall. It was a DDOS issue that Bind created; which surprises me, as it's really not functional at this point. It's sort of running, maybe, kind of... Gotta love IT, huh.

  • @PanosGeorgiadis
    @PanosGeorgiadis 7 ปีที่แล้ว

    Amazing video! Many thanks for your time creating and sharing this;)
    I have two problems in my pfSense:
    My current setup of pfSense has two networks. One LAN (private) and one WAN (which is bridged with my physical router at home)
    1. If I enable DNS unbound, I cannot resolve hostnames out of my LAN (e.g. other laptop which are not hooked up to my pfSense, but they are connected into the home router).
    2. If I disable DNS unbount, I can resolve and ping into those machines, but then all of my LAN machines cannot have FQDN (and it's crucial to me to have FQDN)
    Long story short, is there any way where I can force pfSense to assign FQDN to IPs that are registered via its DHCP?
    and second question is, how can I assign hostnames automatically to these machines? I have a cluster and I woud like to have sth like node1.domain, node2.domain etc.

  • @ManvirSinghP4L
    @ManvirSinghP4L 8 ปีที่แล้ว +2

    Yes yes I need more more!!!

  • @JoeCrowman
    @JoeCrowman 7 ปีที่แล้ว

    very helpful, thanks.... keep up the good work.

  • @jdandcoke
    @jdandcoke 8 ปีที่แล้ว

    Hi +Mark Furneaux. when do you think you'll be covering open vpn. hopefully your video will cover it but have a specific question about open vpn. basically. I need to connect two ip addresses on one subnet to ipvanish. the rest of the subnet will connect to the normal internet.
    great work with the videos so far

  • @jaimedpcaus1
    @jaimedpcaus1 7 ปีที่แล้ว

    I have enabled DHCP and DNS for opt1 that's connected to a d-link switch. However, it does not resolved to anything when I try to use the browse? I've opened ports 80, 443, etc...

  • @snaq1990
    @snaq1990 8 ปีที่แล้ว +3

    Could you do a video on QoS or Traffic Shaping with pfSense? Thinking about making the switch from a standard ASUS router and want to know if I would be able to handle QoS on pfSense.

    • @ryan810cows
      @ryan810cows 7 ปีที่แล้ว

      Shahryar Naqvi
      +1

  • @NPADV2023
    @NPADV2023 7 ปีที่แล้ว

    hi mark are still doing a nat and firewall rules video you just stopped after the dns video. was really enjoying the series

  • @hucqeem89
    @hucqeem89 5 ปีที่แล้ว

    Hi Mark, let say I have multiple DVRs which I connected via DDNS and port forwarding in pfsense box for example cctvdvr.ddns.net:8080. I have no issue when trying to connect from outside network. But when I'm using wifi which from my own internal network, seems like the DDNS can't resolve the cctvdvr.ddns.net:8080. Any idea which DNS services can be done to allow local network to use DDNS hostname?

  • @gamingunderground
    @gamingunderground 7 ปีที่แล้ว

    I noticed that you said DNSSEC encrypts the connection to the DNS server, but it does not. It does not encrypt data, it digitally signs the DNS entrys to prevent man in middles attacks, and allows the dns client to verify that the dns entry has been untouched.

  • @johndeschamps1797
    @johndeschamps1797 7 ปีที่แล้ว

    Question - if you are using DNS Resolver, why do you leave Disable DNS forwarding unchecked in the general settings?

  • @1337cookie
    @1337cookie 7 ปีที่แล้ว

    @31:00 Wouldn't you only want to set your Network Interfaces to just localhost and LAN connections?

  • @raczkri
    @raczkri 8 ปีที่แล้ว

    Hi Mark, thanks very much for the excellent videos, on pfSense! you have inspired me to install it and use it as my router\fw. Will you have a session on traffic shaper setup\best practices? I've set it up using the wizard, but my results are not very good I believe. Anyways, thank you again for doing this!

  • @troyBORG
    @troyBORG 7 ปีที่แล้ว

    I had to reset my router, for some reason I can't get the DNS override for my devices to work
    (Like typing NAS/ instead of 172.16.23.50)

  • @StefanRows
    @StefanRows 8 ปีที่แล้ว

    Thanks a lot!

  • @JULIOCBKB
    @JULIOCBKB 5 ปีที่แล้ว

    hi. Mark, Im trying to work with the pfsense in paralel with Mikrotik , just to wokr with dns resolver, only one ports Lan, How can I use it HOST OVERRIDES

  • @xmicks
    @xmicks 8 ปีที่แล้ว

    How do you setup a host override so that you don't have to specify a domain. I see you have only "pfsense/" in your browser.

  • @teson20
    @teson20 8 ปีที่แล้ว

    Hello Mark. Could you please make a playlist for this tutorial/guide to easy follow the next video.

    • @TheUbuntuGuy
      @TheUbuntuGuy  8 ปีที่แล้ว +2

      +Hector Portillo I already added one th-cam.com/play/PLE726R7YUJTePGvo0Zga2juUBxxFTH4Bk.html

    • @teson20
      @teson20 8 ปีที่แล้ว

      +Mark Furneaux great. I did not notice it. Thank you.

  • @SatyamKumar-ti6hw
    @SatyamKumar-ti6hw 7 ปีที่แล้ว +1

    Please make videos on packages like snort, squid and also on VPN soon.

  • @danoz69
    @danoz69 8 ปีที่แล้ว +1

    love the series cant wait for more vids keep them coming Mark

  • @FJones-es7cy
    @FJones-es7cy 7 ปีที่แล้ว

    Mark thx for the vids , but it seems that you stop. i hope that this not so. Do not leave us hanging like this bro. keep up the good work

  • @xxgg
    @xxgg 8 ปีที่แล้ว

    Hello,
    Instead of using DynamicDNS services to updated public IP address, is there a package or somehow enter a automated command every x set time to check sites like whatsmyip.org and have it send me a email or something like that?

  • @Matthewabramsky
    @Matthewabramsky 7 ปีที่แล้ว

    Hey Mark great series. How long should I wait to run namebench after setting up a new machine?

    • @TheUbuntuGuy
      @TheUbuntuGuy  7 ปีที่แล้ว

      It's less about time, more about how long it takes you and your browser to visit all relevant domains.

  • @troyBORG
    @troyBORG 8 ปีที่แล้ว

    Can you do a video talking about Squid and its "Dynamic and Update Content"
    [Cache Steam Updates/Games. Xbox/Playstation Game Updates ect]
    I tried it with my Xbox One, and it causes the "Multiplayer Connection Test" to fail. And the "Detailed Network Stats" to not report Upload speed, and MTU setting. Whenever I have it go though Squid. But if I add the Xbox's IP into the "Bypass Proxy for These Source IPs" list it will allow it to work because its bypassing the proxy..

  • @nobearclaw7308
    @nobearclaw7308 8 ปีที่แล้ว

    Is there a way you could tell me how to get ubuntu server working while using pfsense? I have pfsense on one pc, and ubuntu server on another. Ubuntu server won't recognize the dhcp

  • @windowfitterwindowfitter8149
    @windowfitterwindowfitter8149 8 ปีที่แล้ว

    Hi Mark, Vids on PFSense are brill when do we get PFS VPN && PFS Firwall

  • @kifuri3
    @kifuri3 7 ปีที่แล้ว

    hello mark i've been following your guide but i just can't get port forwarding to work

  • @JeminoWayde
    @JeminoWayde 8 ปีที่แล้ว

    Keep up the great work!

  • @parallaxggyt
    @parallaxggyt 7 ปีที่แล้ว

    What does dns resolver do rather than use the default servers

  • @aceruelo6601
    @aceruelo6601 8 ปีที่แล้ว

    Sir Mark..can you make tutorial setup for corporate used using pfsense, eg. group user no internet access but can receive email, group of user with internet access but block on facebook and youtube, and user can access all website.

  • @whitexeno
    @whitexeno 8 ปีที่แล้ว

    How did you get your browser to resolve directly to pfsense/ ?

  • @bryanscott2621
    @bryanscott2621 8 ปีที่แล้ว

    What about avoiding the use of ISP DNS servers to keep from having DNS leaking when connecting to a VPN service?

    • @TheUbuntuGuy
      @TheUbuntuGuy  8 ปีที่แล้ว +1

      +Bryan Scott Well, DNS leaks have more to do with a bad VPN configuration over what servers you are using. A DNS leak to ISP servers is just as bad as a leak to public servers. There may be less geographical data there, but I wouldn't hamper non-VPN performance because of it. If your VPN config is solid, it shouldn't matter.

  • @franklinlaxa8326
    @franklinlaxa8326 8 ปีที่แล้ว

    how to configure squideguard blacklist?

  • @Jacobmettler88
    @Jacobmettler88 8 ปีที่แล้ว

    Do you plan to have more pfsense content this summer?

  • @LucasDinormaTI
    @LucasDinormaTI 7 ปีที่แล้ว

    Hei Mark thank's man, helps me a lot !

  • @parallaxggyt
    @parallaxggyt 7 ปีที่แล้ว

    What does dns resolver do different

  • @victorcoss2600
    @victorcoss2600 8 ปีที่แล้ว

    When is your next video about pfSense going to be released? It's been over a month bro. :(

  • @cryptclown
    @cryptclown 5 ปีที่แล้ว

    I use a smartdns service for watching US streaming in canada. Smartdnsproxy.com. and I have a connected unifi AP.
    Do i change the dns on my WAN or WLAN(AP).
    I also see four spaces for to put dns, if put the first to smartdns servers and the others as google dns, or anything else, would streaming still work?
    Would be thankful for the advice.

  • @thomashong7
    @thomashong7 8 ปีที่แล้ว

    I tried using Namebench and my "Mean Response Duration" from my pfSense box (SYS - 192.168.1.1) is always the slowest. In five tests, the numbers are: 182 ms, 229 ms, 236 ms, 238 ms, 357 ms. Compare that to 42 ms in your in the video. The "Fastest Individual Response Duration" is normal at 1 ms. Any ideas why?

    • @TheUbuntuGuy
      @TheUbuntuGuy  8 ปีที่แล้ว

      +Thomas Hong How fast are the next best servers? Are you using WiFi? Those results are very weird indeed.

    • @thomashong7
      @thomashong7 8 ปีที่แล้ว

      +Mark Furneaux They're normal. Fastest to slowest: #1 (DNS of my ISP) is 50 ms, #2 is 55 ms, #3 is 92 ms, etc.

    • @thomashong7
      @thomashong7 8 ปีที่แล้ว

      +Mark Furneaux Wired, not Wi-Fi. Maybe is my funky ISP. I am stuck with an AT&T Uverse 2Wire 3600HGV "gateway" that cannot be set in a "true" bridge mode. See this thread if you're curious: forums.att.com/t5/Third-Party-Devices/U-verse-for-BUSINESS-2Wire-3600HGV-bridge-mode-or-another-AT-amp/td-p/2707013.

  • @adjbutler
    @adjbutler 6 ปีที่แล้ว

    pfsense - dns setup - walkthrough
    28:09

  • @JensHove
    @JensHove 7 ปีที่แล้ว

    Great series. Sadly it seems this is the final episode :-(

  • @CThienV
    @CThienV 7 ปีที่แล้ว

    My Pfsense Box is always at the bottom of the graphs. could it be because my i7-2600 8GB box has an mechanical HDD?

    • @RaffiT83
      @RaffiT83 7 ปีที่แล้ว +1

      CThienV I had slow DNS query times and some pages would not load at all before doing a bit of digging. Others have commented on this as well, but it turns out the DNS resolver will not use the public servers entered in the general setup page unless forwarding mode is enabled. After enabling that, pages loaded up much faster and I haven't had issues since.

    • @sufyspeed
      @sufyspeed 7 ปีที่แล้ว +1

      Raffi Make sure u disable dnssec as well when enabling forwarding mode.

    • @RaffiT83
      @RaffiT83 7 ปีที่แล้ว

      John Bob thanks for the reply. I ended up putting all the settings back to factory defaults, no forwarding and Dnssec enabled. I wanted the box to act as a resolver which directly queried the root servers. I think my original problem with that setup was that I had enabled the option to register DHCP and static clients with the resolver. While that's a nice feature, I noticed that it caused the resolver service to constantly start and stop. I suspect that was causing the intermittent and slow queries. So my advice is to keep factory settings.

  • @troyBORG
    @troyBORG 8 ปีที่แล้ว

    How do you find out how long it takes to the round trip tip to nearest DNS server?
    Do I traceroute and add up all the times?

    • @TheUbuntuGuy
      @TheUbuntuGuy  8 ปีที่แล้ว

      +troyBORG Just ping it. But that doesn't include the time to actually look something up.

    • @troyBORG
      @troyBORG 8 ปีที่แล้ว

      Mark Furneaux Thanks. I was messing around with the traceroutes last night, and found one the DNS server for my ISP has a really small travel.
      i.imgur.com/CURD97E.png

    • @TheUbuntuGuy
      @TheUbuntuGuy  8 ปีที่แล้ว +1

      +troyBORG .happyfuntime, I love it

  • @Bark777
    @Bark777 8 ปีที่แล้ว

    Why do you have a private ip on your WAN interface? What ISP do you have?

    • @TheUbuntuGuy
      @TheUbuntuGuy  8 ปีที่แล้ว +2

      It's in a VM. The WAN in the example is attached to my real LAN behind another router.

  • @mariembuenaventura1278
    @mariembuenaventura1278 3 ปีที่แล้ว +1

    video speed 1.25x then thank me later... Thank you sir!

  • @SooperBeez
    @SooperBeez 8 ปีที่แล้ว +1

    When's the next video?

  • @maxharrison9918
    @maxharrison9918 7 ปีที่แล้ว

    Anyone have a any idea why this stopped?

  • @greeta4900
    @greeta4900 8 ปีที่แล้ว +1

    part 8 ??

  • @miketeo4627
    @miketeo4627 8 ปีที่แล้ว

    Off topic comment, but u know this guy is Canadian when he says "google.ca".

  • @Angryfuture
    @Angryfuture 8 ปีที่แล้ว

    Do you plan on doing Untangle?

  • @JuddMan03
    @JuddMan03 7 ปีที่แล้ว +3

    Be careful with public dns. Not only are you essentially telling them all of the hosts you access, but some of them will respond to non existing domains with their own servers ip addresses in an attempt to redirect mistyped URLs to their own search pages.

  • @CThienV
    @CThienV 7 ปีที่แล้ว

    n00b here. where can i view the actual cache/dns table?

    • @AG-no8zq
      @AG-no8zq 2 ปีที่แล้ว

      I always wanted to know that too but couldn't find an answer anywhere. It looks like there isn't even a command to execute that lets you inspect the DNS cache.