/r/dns

Photograph via snooOG

/r/dns

14,548 Subscribers

1

Private dns detected

I'm using private dns to block adds in my phone (Samsung) but when using some apps it detects the dns and ask me to trun it off. So is there a way to hide that from the app? Or even patch the app (lucky patcher)to make it not detect the dns.

0 Comments
2024/12/18
21:57 UTC

1

Round Robin/Shuffle Disable ON BIND9

Is this any option available to disable shuffle/round robin in bind9?

2 Comments
2024/12/18
17:49 UTC

7

What does this DNSSEC warning mean?

I updated my DNS records to match what I was provided by "SendGrid" which I believe will be sending emails for a booking software. I was not able to validate. After some googling, found a similar issue and it was pointed out the issue was with DNSSEC, so I enabled it in namecheap.

Ran this test: https://i.imgur.com/ymplWbh.png

But getting a warning... what does this warning mean?

Thanks for the help

3 Comments
2024/12/18
04:41 UTC

2

Issue with SPF and outgoing mail from roundcube

So im working with a company using office365 and roundcube webmail for their email servers. Some users are on roundcube only and others are on office only. Office 365 is working perfectly but users using the website are unable to send emails to google and office as SPF is not being accepted. I have no ability to change the setup for roundcube and full access to office and DNS. Ive setup the SPF record to include their mailing ip range which didnt work and the mailing ip address(es) on separate occasions neither of which worked. On office 365 ive setup routing rules that send inbound emails to the roundcube users and that is working.

Is there anyway to route outgoing messages from roundcube via dns to office 365 to get handled from there?

7 Comments
2024/12/17
22:05 UTC

4

Quad9 DNS over TLS not working anymore

Hope someone can help, overnight, quad9 dns stopped working and i cant get why. If i change to cloudflare dns, everythings working again. I didnt change anything on my OPNsense FW.

this is the current setting on OPNsense Unbound DNS:

https://preview.redd.it/7ng1s2f7o77e1.png?width=2085&format=png&auto=webp&s=33cf5ff0bdc186e1105b80ab7919306c997f0b74

anyone else got this issue?

4 Comments
2024/12/16
13:18 UTC

0

Setting up a domain company - need help!

Hey everyone,

I am thinking of setting up a domain company that helps small British businesses setup a business domain and email for free. We will take care of the registration cost for first year and costs associated for first 3 months. Then we will commence a monthly charge of a couple £ a month.

Some questions:

- Needs to be lightweight & simple, best to build something custom to manage DNS & registration or use something of the shelf? If off the shelf, any recommendations?
- Best providers for cheap, reliable email hosting for our customers?

- Any thing I have missed? not thought about etc?

4 Comments
2024/12/16
12:04 UTC

13

A simple solution to test website before changing DNS

Hello everyone!

I have created a simple solution to test websites before changing DNS and I would love feedbacks!

https://hosts.click

This tool allows developers and website administrators to instantly test their website without editing the hosts file on their computer or waiting for DNS propagation.

How does it work?

Enter your IP address and domain name.

Receive a temporary URL pointing to the new IP address.

Instantly preview your website as it will appear after the DNS change.

Advantages:

No need to modify the hosts file.

Completely free to use.

Works with any browser and device.

Ideal for development environments or site setup to test changes before propagating DNS to all users.

Simple, free, and instant – start testing now!

I would love feedbacks!

9 Comments
2024/12/14
17:33 UTC

1

Please suggest dns for buffering issue which blocks ads too.

If any suggestions for dns which solves buffering issue, like the video pauses after a while when loaded content gets over (facing a lot in recent days, buffering 😮‍💨), also it should block ads too. Have used adguard and control d, not solving the issue!

8 Comments
2024/12/14
17:30 UTC

2

Migrate NS zones

Hello! I have a server that manages an "old" architecture that I want to dissolve. It operates with WHM/Cpanel and manages the DNS zones for all clients.

For example, there's main.com where ns1 and ns2 point to the server's IP. Clients point their domains, like yourmain.com, to ns1.main.com and ns2.main.com.

My intention is to migrate the zones of main.com to Cloudflare and point the sites to different servers without asking clients to delegate anything. Is this possible with Cloudflare, or should I set up something to manage the zones?

3 Comments
2024/12/13
16:34 UTC

1

Migrate NS zones

Hello! I have a server that manages an "old" architecture that I want to dissolve. It operates with WHM/Cpanel and manages the DNS zones for all clients.

For example, there's main.com where ns1 and ns2 point to the server's IP. Clients point their domains, like yourmain.com, to ns1.main.com and ns2.main.com.

My intention is to migrate the zones of main.com to Cloudflare and point the sites to different servers without asking clients to delegate anything. Is this possible with Cloudflare, or should I set up something to manage the zones?

1 Comment
2024/12/13
16:34 UTC

4

DNS & Sub Domains

Okay so I have one domain example.com and it's registered under Dynadot. So what I want to do is use a sub domain example.example.com on Netlify Server and the main domain example.com on nameSilo Server. Is this even possible if so how do I go about making this possible?

6 Comments
2024/12/13
04:37 UTC

5

Blocking specific websites using dns

I'm trying to get rid of my social media addiction and I would like to block certain websites like facebook.com and instagram.com from my phone altogether.

However I don’t want to use apps that use VPN to block these websites like BlockSite because using a VPN causes some of my banking apps to not work.

I have am iphone and don’t want to use iPhones screen time restrictions because it’s very easy to visit a blocked site after entering the password.

I have read that we can use AdGuard DNS IP addresses to essentially block ads and also adult websites.

Can I use these DNS settings to block specific social media websites on my phone? If so, how?

6 Comments
2024/12/13
01:42 UTC

1

FTP redirecting to some random site

I have set up a website and domain www.seagers.co.za. I noticed a "public FTP" folder so I tried putting ftp.seagers.co.za into my browser (yeah, yeah, I know that's not how it works) and it first of all gives me a warning that the site is not secure but then takes me to a site for the "Veterinary Defence Association America". What's up with this? Surely if I own seagers.co.za then it shouldn't be redirecting or anything. I have a LOT of records in the zone manager on CPanel, including one with the name ftp.seagers.co.za, type A, and a record of "41.185.8.132", but that doesn't take me to that site. I am not sure where that links to.

Sorry for the stupid questions. I am really only learning how all of this works, so don't judge me. Educate me.

8 Comments
2024/12/12
13:11 UTC

5

Getting an "invalid dns" when I'm trying to connect my squarespace domain to google workspace sites?

Firstly, thanks to anyone for helping.

I'm trying to help a friend publish their website. I think I'm getting tripped up because he has a google workspace account and is using google sites with squarespace domain registration. It's a bit more complicated than the non-google workspace DNS setup.

But I believe we've done the following successfully and I'll post an imgur album with screenshots. I think maybe my website isn't connected to squarespace or something? I just deleted it out of the website in squarespace and tried to reconnect it somehow?

  1. published the google sites

  2. verified the domain with google and connected the domain

  3. added the dns record in squarespace

Imgur album

8 Comments
2024/12/12
03:57 UTC

3

DNS Override

Hey guys, technical question here. Let's say i'm using a VPN and it has its own DNS, if i'm setting up also Cloudfare, Google or whatever DNS in Windows WiFi's properties, wich ones i'm using and wich ones are being override?

5 Comments
2024/12/11
17:11 UTC

2

Slow Update for Name Server (NS) Records

We recently updated the Name Server (NS) records for a new subdomain, and we’ve observed that the propagation speed varies significantly by region.

Specifically, DNS services in the US, such as OpenDNS and Google Public DNS, seem to update more slowly compared to DNS servers in regions like Africa and South America.

Is it normal for certain regions or DNS providers to experience slower propagation times for NS record updates?

15 Comments
2024/12/11
14:00 UTC

1

How to Setup This Website

So I very rarely have to setup DNS in the course of my job duties. I'm currently in the midst of one of those once in a blue moon times.

We have a new internal system we setup. The main portion of it, https://name.domain\[.\]com needs to be accessible internally only. We currently have an Host (A) record for that setup on our internal DNS.

A portion of it, however, https://name.domain\[.com\]/directory/application needs to be accessible externally.

The way the system is built it does not use IIS for hosting the different parts of it.

Normally I'd just add a 1:1 nat mapping for the server it runs off of, and then just create an A Record for that external IP address, but we don't want the entire site accessible externally.

The company that sold us the product said that setting it up for being internet facing isn't within scope of their duties, so they gave us some info such as IIS redirection and all, but it was all very broad.

Any advice on how to accomplish this?

UPDATE: Thank you everyone for advice. I thought to go the DNS route first as it was how I knew to get things published. Not a DNS issue, looking into the shared solutions to resolve my issue. Thank you again!

8 Comments
2024/12/11
13:37 UTC

1

Dns forward internal

Is it possible to Forward a dns name to an external (Running server 2022)

Under forward lookup zones im having

  • internal domain zone (.local)
  • external domain zone (.com)in That zone i want to publish a record to an external site which looks like this Https://domain.server.com/app/play. So i need to forward it.

In my public dns That working with a forward but internal it does not work!

Is there any (simple) way to reach That?

1 Comment
2024/12/10
15:19 UTC

2

_dmarc email

Hi guys,
I'm curious what email do you use for client's dmarc records, do you centralize it with one of your emails or do something like:
rua=mailto:dmarc@%domain%; for every user domain?

10 Comments
2024/12/09
19:36 UTC

4

Can A Domain Have More Than 1 DMARC Record ?

Hi,

My site's email is hosted on the root domain through Google Workspace. I am using amazon ses on a subdomain to send newsletters. These two have different MX, SPF & DKIM records. I am confused about DMARC. Can someone please explain if I need DMARC records for both root domain and subdomain because they are using different mail providers. Any help would be immensely appreciated.

15 Comments
2024/12/09
18:32 UTC

3

Give Me Your Uncommon DNS Records

Hi Everyone

I'm in the process of setting up a WordPress site, and my DNS is managed by Cloudflare while my domain is registered at Porkbun. I am hosting this on Hetzner if that matters. I've already configured several DNS records, but I'm curious if there are any uncommon records I might be missing that could strengthen my DNS setup.

Here are the records I currently have:

  • A Record for the host server domain
  • CNAME for WWW pointing to a shortlink service
  • MX for root domain Google Workspace
  • SPF for root domain Google Workspace
  • DKIM for root domain Google Workspace
  • DMARC for root domain Google Workspace
  • DNSSEC enabled at Porkbun
  • MX for amazon SES for subdomain for email marketing
  • SPF for amazon SES for subdomain for email marketing
  • DKIM amazon SES for subdomain for email marketing
  • DMARC amazon SES for subdomain for email marketing

If you have any suggestions or insights on additional records that aren't mandatory but would enhance my DNS foundation, I would greatly appreciate it!

Thanks in advance!

13 Comments
2024/12/09
18:08 UTC

0

DNS Resolver At Singapore , but Clients are in Delhi

Hey You All.
I am a student from India. And Yesterday On DigitalOcean , I configured PiHole on Singapore Server (as it was cheap as compared to servers in India)
I implemented DoT using Nignx and I am happy to see the Results.

But Problem is that That Pihole uses Cloudflare's Singapore Server for Resolving the DNS Queries , But I want the queries to be resolved using Indian DNS Servers .

can you tell me how to do that ?

3 Comments
2024/12/09
07:57 UTC

2

Licks from one dnscheck website

HI,

I use open wrt on my router and since a while with my setup I thought I was ok about dns leak, I used always that website to check : dnsleaktest.com and it was ok, only my dns from dnscrypt-proxy were there or from my dnsproxy setup but now I use that website to check, and I always see my isp dns now at the top: https://browserleaks.com/dns . At the top we can see ISP, the only way I found to avoid it, it is to configure wireguard, now I see the wireguard server as ISP..... IDEA why I can not hide my isp with my dns settup?

thanks

https://preview.redd.it/1mk81mg2tn5e1.png?width=884&format=png&auto=webp&s=24bda7fe717b87653a968db98d948f7845e04938

0 Comments
2024/12/08
17:26 UTC

2

Licks from one dnscheck website

HI,

I use open wrt on my router and since a while with my setup I thought I was ok about dns leak, I used always that website to check : dnsleaktest.com and it was ok, only my dns from dnscrypt-proxy were there or from my dnsproxy setup but now I use that website to check, and I always see my isp dns now at the top: https://browserleaks.com/dns . At the top we can see ISP, the only way I found to avoid it, it is to configure wireguard, now I see the wireguard server as ISP..... IDEA why I can not hide my isp with my dns settup?

thanks

https://preview.redd.it/1mk81mg2tn5e1.png?width=884&format=png&auto=webp&s=24bda7fe717b87653a968db98d948f7845e04938

2 Comments
2024/12/08
17:26 UTC

12

Best public DNS resolver for content blocking?

From my experience, ControlD performs better than most out of the box but I'm curious to know if there's something better out there.

37 Comments
2024/12/08
13:07 UTC

1

Knot resolver

Hey there,

im trying to set-up knot resolver - https://www.knot-resolver.cz/ in my lab. My goal is to set-up blocking rule when resolving example.com client gets NXDOMAIN response and URL will not be resolved.

I've set up docker image and created file /etc/knot-resolver/kresd.conf with following config:

modules.load('policy')

policy.add(policy.suffix(policy.DENY, {todname('example.com.')}))

net.listen('0.0.0.0', 53, { kind='dns' })

After running - kdig @ 127.0.0.1 example.com I still get correct response:

;; ->>HEADER<<- opcode: QUERY; status: NOERROR; id: 12851 ;; Flags: qr rd ra; QUERY: 1; ANSWER: 1; AUTHORITY: 0; ADDITIONAL: 0

After change I used kresd -c /etc/knot-resolver/kresd.conf -s and restarted entire container but still response is still not blocked.

Thanks for any help.

1 Comment
2024/12/07
11:55 UTC

0

What's wrong with OpenDNS?

I do everything in private browsing mode, and when I tried to search something (default search engine Google) I got the "Your connection is not private" msg on Brave; it was sending me to the non https site. At first I thought it might be a network provider thing, but switching the DNS from OpenDNS to Cloudflare fixed the issue even with the same network provider. Is something wrong with OpenDNS?

7 Comments
2024/12/05
12:01 UTC

Back To Top