Boston Linux & Unix (BLU) Home | Calendar | Mail Lists | List Archives | Desktop SIG | Hardware Hacking SIG
Wiki | Flickr | PicasaWeb | Video | Maps & Directions | Installfests | Keysignings
Linux Cafe | Meeting Notes | Blog | Linux Links | Bling | About BLU

BLU Discuss list archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

OpenVPN and DNS



Are you using a routed or bridged VPN?  How are you determining that
these packets are never reaching the DNS server?

Since pings work, it is unlikely this is an OpenVPN issue or a
networking issue.  If OpenVPN is using a different subnet, you want to
verify the nameserver will respond to queries from the new subnet. 
Check the service for IP restrictions, as well as any firewall rules
on the nameserver and OpenVPN server.

On 11/1/05, John Abreau <jabr at blu.org> wrote:
> Has anyone gotten OpenVPN fully working? I've been trying to get it set
> up, and I can't seem to get DNS to work through the VPN tunnel.
>
> Everything else seems to be working fine. When I ssh or point firefox to
> an IP address on the other side of the tunnel, it works okay, and when I
> put hosts on the other end into my client's /etc/hosts file it works
> fine. But when I try to point resolv.conf at the DNS server across the
> tunnel, lookups just fail.
>
> I tried probing with nslookup and dig:
>
>      nslookup azrael.us.zuken.com 10.1.4.29
>      dig @10.1.4.29 azrael.us.zuken.com
>
> and both just hang there and eventually timeout; they never reach the
> DNS server at 10.1.4.29. I can ping 10.1.4.29 just fine, and I can ssh
> to it; I just can't get DNS to respond from it. And if I ssh to a host
> on the other side of the tunnel, I get DNS from 10.1.4.29 just fine.
>
> Any ideas what I might be missing?
>
> --
> John Abreau / Executive Director, Boston Linux & Unix
> ICQ 28611923 / AIM abreauj / JABBER jabr at jabber.org / YAHOO abreauj
> Email jabr at blu.org / WWW http://www.abreau.net / PGP-Key-ID 0xD5C7B5D9
> PGP-Key-Fingerprint 72 FB 39 4F 3C 3B D6 5B E0 C8 5A 6E F1 2C BE 99
>
>
> _______________________________________________
> Discuss mailing list
> Discuss at blu.org
> http://olduvai.blu.org/mailman/listinfo/discuss
>
>
>
>




BLU is a member of BostonUserGroups
BLU is a member of BostonUserGroups
We also thank MIT for the use of their facilities.

Valid HTML 4.01! Valid CSS!



Boston Linux & Unix / webmaster@blu.org