Project

General

Profile

Actions

Bug #9296

closed

Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries

Added by Ph. T about 5 years ago. Updated 8 months ago.

Status:
Resolved
Priority:
Normal
Category:
Aliases / Tables
Target version:
Start date:
Due date:
% Done:

100%

Estimated time:
Plus Target Version:
23.01
Release Notes:
Affected Version:
2.5.0
Affected Architecture:
All

Description

If you are using FQDN-Aliases each FQDN can only be used once, if
you use the alias twice, the generated tables are incomplete.

No DNS-Server/Resolver on the firewall is used. External DNS
resolvers are configured.

Example:
alias1 : fqdn1, fqdn2, fqdn3
alias2 : fqdn4, fqdn2, fqdn3

Generated tables are incomplete
alias1 : fqdn1, fqdn2, fqdn3
alias2 : fqdn4 (the others are missing)

alias2 does only contain fqdn4 and fqdn2 and fqdn2 are missing.

This bug seems to arise with 2.4.4_p1 and is still existing in 2.4.4_p2;
I am not sure if this behavior is present within 2.4.4.

I am working on a minimal example which i will provide.


Files

Rule_Set.PNG (37.4 KB) Rule_Set.PNG Ruleset Ph. T, 01/31/2019 05:29 AM
Alias_Configuration.PNG (24.2 KB) Alias_Configuration.PNG Alias-Configuration Ph. T, 01/31/2019 05:29 AM
table_fqdn1.PNG (35.8 KB) table_fqdn1.PNG table fqdn1 Ph. T, 01/31/2019 05:29 AM
table_fqdn2.PNG (49.6 KB) table_fqdn2.PNG table fqdn2 Ph. T, 01/31/2019 05:29 AM
191011_Tnk_config-pfSense.localdomain-20191011143458.xml (15.9 KB) 191011_Tnk_config-pfSense.localdomain-20191011143458.xml Ph. T, 10/11/2019 09:40 AM
pfsense.png (39 KB) pfsense.png Art Manion, 10/31/2019 11:48 PM
filterdns-2.0_3.txz (17.5 KB) filterdns-2.0_3.txz filterdns pkg built by me on a FreeBSD 11.2 VM Eduard Rozenberg, 02/01/2020 10:19 AM
clipboard-202202191221-tmdxs.png (15.7 KB) clipboard-202202191221-tmdxs.png → luckman212, 02/19/2022 11:21 AM
filterdns_verbosity.diff (2.73 KB) filterdns_verbosity.diff Marcos M, 05/24/2022 02:32 PM
clipboard-202208041447-c1pbe.png (10.2 KB) clipboard-202208041447-c1pbe.png File Compare Marco Jäger, 08/04/2022 07:47 AM
clipboard-202208041453-rcv9i.png (86.8 KB) clipboard-202208041453-rcv9i.png Broken Alias Marco Jäger, 08/04/2022 07:53 AM
clipboard-202208041455-mnwun.png (175 KB) clipboard-202208041455-mnwun.png Working Alias Marco Jäger, 08/04/2022 07:55 AM
filterdns (35.9 KB) filterdns New Filterdns file from pfsense version 2.6.0 Marco Jäger, 08/04/2022 08:00 AM
test2_alias.png (73 KB) test2_alias.png Azamat Khakimyanov, 10/10/2022 06:07 AM

Related issues

Related to Bug #12708: Alias with non-resolving FQDN entry breaks underlying PF tableResolvedReid Linnemann

Actions
Related to Bug #13067: Resolve interval for ``filterdns`` may not match the configured valueResolvedReid Linnemann

Actions
Related to Bug #13792: Filterdns assumes sets of resolved addresses for each hostname are nonintersectingNewReid Linnemann

Actions
Related to Bug #13793: filterdns does not reconcile modelled tables with the current state of filter tablesNewReid Linnemann

Actions
Actions

Also available in: Atom PDF