Correction #9394
closedFeedback on Services — DNS — Configuring the DNS Resolver
100%
Description
Page: https://docs.netgate.com/pfsense/en/latest/services/dns/resolver.html
Feedback:
Does not explain how DNS resolver "resolves". When I run DNS tests in pfsense, it returns metrics for DNS servers I have configured. But I also saw a pfsense developer presentation talking about the Resolver (2018), and the statement there is that the resolver does random queries to Root servers, with no explanation of how it finds these Root servers or if it is customize able short of a multi-wan configuration consideration. It is important to know the basics of how the Resolver works (before options are picked which modify behavior). I have noticed latency issues when using it, but I have no information to determine what the possible issues could be because of lack of information on the basic operation of unbound.
Updated by Jim Pingle over 2 years ago
- Status changed from New to In Progress
- % Done changed from 0 to 70
There are multiple items here that aren't directly related:
1. The DNS test page reports times for configured servers which doesn't care about resolver or forwarding mode. I'll add some notes about that to https://docs.netgate.com/pfsense/en/latest/diagnostics/dns.html but haven't done so yet.
2. There is no document explaining the process of DNS resolution in general -- This is now covered by the new document at https://docs.netgate.com/pfsense/en/latest/services/dns/resolution-process.html -- but it is not specific to the DNS resolver so it wasn't in the DNS resolver documentation before, and still isn't now. It's in the DNS documentation.
3. Issues with resolver mode and multi-wan -- This is already noted in a few places around the documentation, such as under Multi-WAN at https://docs.netgate.com/pfsense/en/latest/multiwan/interfaces-and-dns.html and is mentioned in the DNS resolver configuration as well. I've updated this a little and it's now under https://docs.netgate.com/pfsense/en/latest/services/dns/resolver-modes.html but it was previously on the main page of the DNS Resolver documentation.
https://gitlab.netgate.com/docs/pfSense-docs/-/commit/c69d6febe939abf005d1d3f8afbd23954bacb504
Updated by Jim Pingle over 2 years ago
- Status changed from In Progress to Feedback
- % Done changed from 70 to 100
Additional updates:
1. Added a new section to the DNS Lookup page which describes how it selects servers to test.
https://docs.netgate.com/pfsense/en/latest/diagnostics/dns.html
3. Cleaned up and expanded the Multi-WAN DNS information on
https://docs.netgate.com/pfsense/en/latest/multiwan/interfaces-and-dns.html
Also as a dependency to the above, I updated the documentation for System > General as it also influenced the content of the other updates.
https://docs.netgate.com/pfsense/en/latest/config/general.html