Joined: 04 Mar 2021 Posts: 65 Location: Manchester
Posted: Mon Aug 15, 2022 16:34 Post subject: [SOLVED] No Internet when Ignore WAN DNS is checked
When I enable Ignore WAN DNS I get no internet connection _________________ Netgear R7000
DD-WRT DD-WRT v3.0-r50595 std (10/23/22)
Manchester
Enable dnsmasq- Yes
Encrypt DNS- NO
DNSCrypt Resolver- No Using Smart DNS
Cache DNSSEC Data- Yes
Validate DNS Replies (DNSSEC)- NO
Check Unsigned DNS Replies- NO
No DNS Rebind- Enable
Query DNS in Strict Order- Enable
Add Requestor MAC to DNS Query- Disable
RFC4039 Rapid Commit Support- Enable
Maximum Cached Entries- 1500
Do you have static DNS servers set on the Setup -> Basic Setup tab?
Do you have no-resolv and server= lines entered in the additional dnsmasq config textbox on the Services -> Services tab?
EDIT: I see you are using SmartDNS. Share applicable configuration pages / text. _________________ "The woods are lovely, dark and deep,
But I have promises to keep,
And miles to go before I sleep,
And miles to go before I sleep." - Robert Frost
"I am one of the noticeable ones - notice me" - Dale Frances McKenzie Bozzio
Joined: 04 Mar 2021 Posts: 65 Location: Manchester
Posted: Tue Aug 16, 2022 8:03 Post subject:
Do you have static DNS servers set on the Setup -> Basic Setup tab? - Yes I do
Do you have no-resolv and server= lines entered in the additional dnsmasq config textbox on the Services -> Services tab? - Blank
EDIT: I see you are using SmartDNS. Share applicable configuration pages / text.
Screenshot 2022-08-16 at 10.30.09.png
Description:
Filesize:
2.82 MB
Viewed:
1144 Time(s)
_________________ Netgear R7000
DD-WRT DD-WRT v3.0-r50595 std (10/23/22)
Manchester
Enable dnsmasq- Yes
Encrypt DNS- NO
DNSCrypt Resolver- No Using Smart DNS
Cache DNSSEC Data- Yes
Validate DNS Replies (DNSSEC)- NO
Check Unsigned DNS Replies- NO
No DNS Rebind- Enable
Query DNS in Strict Order- Enable
Add Requestor MAC to DNS Query- Disable
RFC4039 Rapid Commit Support- Enable
Maximum Cached Entries- 1500
Joined: 16 Nov 2015 Posts: 6437 Location: UK, London, just across the river..
Posted: Tue Aug 16, 2022 8:48 Post subject:
for VPN and DNScrypt, NTP time is a must...
if you cannot use your other DNS than this could mean your ISP or VPN
uses a forced DNS policy...but even thou you still can use encrypted DNS as you are using
DNScrypt or try SmartDNS encrypted DNS...via config rules..
to diagnose deeper you need to provide more details on your set up and what you've tried so far...
Just don't use SmartDNS along with Encrypted DNS option..just dont use them both with encryption options...
I'll rather use only SmartDNS, as it offers a better and more flexible config...
and you can have more than one DNS resolver...
as well for more details on DNScrypt or Stubby DNS green & red links in my signature _________________ Atheros
TP-Link WR740Nv1 ---DD-WRT 55630 WAP
TP-Link WR1043NDv2 -DD-WRT 55723 Gateway/DoT,Forced DNS,Ad-Block,Firewall,x4VLAN,VPN
TP-Link WR1043NDv2 -Gargoyle OS 1.15.x AP,DNS,QoS,Quotas
Qualcomm-Atheros
Netgear XR500 --DD-WRT 55779 Gateway/DoH,Forced DNS,AP Isolation,4VLAN,Ad-Block,Firewall,Vanilla
Netgear R7800 --DD-WRT 55819 Gateway/DoT,AD-Block,Forced DNS,AP&Net Isolation,x3VLAN,Firewall,Vanilla
Netgear R9000 --DD-WRT 55779 Gateway/DoT,AD-Block,AP Isolation,Firewall,Forced DNS,x2VLAN,Vanilla
Broadcom
Netgear R7000 --DD-WRT 55460 Gateway/SmartDNS/DoH,AD-Block,Firewall,Forced DNS,x3VLAN,VPN
NOT USING 5Ghz ANYWHERE
------------------------------------------------------
Stubby DNS over TLS I DNSCrypt v2 by mac913
Joined: 04 Mar 2021 Posts: 65 Location: Manchester
Posted: Tue Aug 16, 2022 10:09 Post subject:
Everything works well so no issues here. I updated to the latest DDWRT firmware and that seemed to have resolved all issues I had. Cheers mate. _________________ Netgear R7000
DD-WRT DD-WRT v3.0-r50595 std (10/23/22)
Manchester
Enable dnsmasq- Yes
Encrypt DNS- NO
DNSCrypt Resolver- No Using Smart DNS
Cache DNSSEC Data- Yes
Validate DNS Replies (DNSSEC)- NO
Check Unsigned DNS Replies- NO
No DNS Rebind- Enable
Query DNS in Strict Order- Enable
Add Requestor MAC to DNS Query- Disable
RFC4039 Rapid Commit Support- Enable
Maximum Cached Entries- 1500