Local DNS when connected via the Wireguard VPN server

Comments

5 comments

  • Avatar
    David Koppenhofer

    Make sure "block IMCP" is off for the network you're pinging, and make sure the Wireguard network/device has access to the ping destination/network.

    0
    Comment actions Permalink
  • Avatar
    FirewallaSupportDesk

    Could you try to ping the IP first to make sure the traffic is allowed? 

    As well as David's advice to check "block IMCP" is off on the LAN and WireGuard Interface: Box Main page -> Network -> LAN/WireGuard interface

    0
    Comment actions Permalink
  • Avatar
    Didier Malenfant

    Sorry I should have been more precise.

    Yes. Pinging the device's address directly does work and the device is otherwise totally accessible using it's IP address.

    In Unix if the pinging itself was the issue I would see something like:

    `PING <device name>.lan (192.168.x.x) 56(84) bytes of data.`

    and no more data after this. The fact that I don't see this indicates that something is going wrong with the name resolving BEFORE the ping is even attempted.

    For completion-sake, this issue is for any device on my local network but as I said only when I connected to the network via the VPN. When I'm physically on the local network at home the local DNS works fine.

    0
    Comment actions Permalink
  • Avatar
    Didier Malenfant

    Any ideas?

    0
    Comment actions Permalink
  • Avatar
    Firewalla CM

    Can you try an nslookup to see if your host is overriding the DNS server? And when you're on WireGuard, do you have any privacy-related DNS settings enabled? (Some settings can be SSID-specific)

    If you're using a modified WireGuard config file, you could also try to create a new client with a fresh config file.

    Let me know if any of these tips help. We can also open a case for you so our engineers can take a closer look.

    0
    Comment actions Permalink

Please sign in to leave a comment.