That AP has no routable IPs (v4 or v6) on anything but a management VLAN, everything else is just bridged/switched to the WiFi and switched ports... but of course it has v6 link-local. So my PC was seeing 3 DNS resolvers: 2 real ones (v4/v6 for my real router) and this rogue one.
-
-
Show this thread
-
So global DNS worked fine, but my internal stuff (LAN domain and some stuff I forward for staging/testing environments) would randomly fail to resolve or resolve to the wrong IP via public nameservers (for some it's split DNS) when the query got sent to the OpenWRT box.
Show this thread -
And of course, since positive replies get cached by the local dnsmasq (managed by NetworkManager), it would usually work on the second try and stick for a while so it wasn't *too* obvious.
Show this thread -
I think this started when I turned that feature on (needed for split DNS with VPNs), because IIRC by default dnsmasq has different behavior from the system resolver (round robin / random instead of trying in order) - previously rogue would probably wind up third and get no hits.
Show this thread -
I should document my home networking setup sometime. Physically it's super simple (VDSL modem, Netgear router/AP, extra switch, 4 computers and some game consoles) but logically there's 9 VLANs, 7 SSIDs, 3 network namespaces, multiple VPNs, IPSec between some hosts, ...
Show this thread
End of conversation
New conversation -
-
-
they call them daemons for a reason
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
I wonder if I suffer the same
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.