Joined: 16 Mar 2019 Posts: 383 Location: Szczecin, Poland EU
Posted: Sun Feb 09, 2025 18:56 Post subject: Smartdns as main dns server on newest Broadcom build
My currently device is Linksys EA6400. For a long time I use rather standard configuration of DD-WRT device with Dnsmasq as domain and IP translator. Yesterday when device is based on r59468 I'm decide to start Smartdns service as DNS resolver.
My configuration is: Resolver enabled, other options is turned off and I have "use only additional servers". I'm use both Google public dns servers in my configuration. My options are:
server 8.8.8.8
server 8.8.4.4
cache-size 16384
cache-file /tmp/smartdns.cache
force-AAAA-SOA yes
That settings works, but here I'm describe issues:
- I can't restart service via command line. Result is: open config file '/etc/smartdns/smartdns.conf' failed, No such file or directory
load config failed.
That file isn't exist. Config is in /tmp/smartdns.conf
That file contain:
- I don't know why is /tmp/dnsmasq.leases. I haven't dnsmasq started on my DD-WRT.
- Log file dosen't exist and it's not configure anywhere
- bind :53 is unsecure, but when I add bind <router IP>:53 to individual config service stop working. When I'm edit /tmp/smardns.conf file and I try restart service for apply changes I have default config file again. I must reboot router then Smartdns start operating again.
Generally smartdns service is working for me. That's good alternative for Dnsmasq - that old packet and like to eat device sources. I'm glad of this smartdns, I have plan to secure dns traffic. I'm wait to fix issues.
My question - "cache-size 16384" - It's big or enough value ? It refers to MB, KB or other units ?
not good idea to disable DNSmasq...as both can work together and for some services DNSmasq is a must...! _________________ Atheros
TP-Link WR740Nv1 ---DD-WRT 58184 WAP
TP-Link WR1043NDv2 -DD-WRT 61264 Gateway/DoT,Forced DNS,Ad-Block,Firewall,x4VLAN,VPN
TP-Link WR1043NDv2 -Gargoyle OS 1.15.x AP,DNS,QoS,Quotas
Qualcomm-Atheros
Netgear XR500 --DD-WRT 61264 Gateway/DoT,Forced DNS,AP Isolation,2VLAN,Ad-Block,Firewall,Vanilla
Netgear R7800 --DD-WRT 61264 Gateway/DNSCryptv2,AD-Block,Forced DNS,AP&Net Isolation,x3VLAN,Firewall,Vanilla
Netgear R9000 --DD-WRT 60791 Gateway/DoT,AD-Block,AP Isolation,Firewall,Forced DNS,x2VLAN,Vanilla
Dynalink DL-WRX36-DDWRT 60791
Broadcom
Netgear R7000 --DD-WRT 61337 Gateway/DNScrypt-proxy2/AD-Block,IPset Firewall,Forced DNS,x4VLAN,VPN
NOT USING 5Ghz ANYWHERE
------------------------------------------------------
Stubby DNS over TLS I DNSCrypt v2 by mac913
- I can't restart service via command line. Result is: open config file '/etc/smartdns/smartdns.conf' failed, No such file or directory
load config failed.
Then you're doing it wrong.
thommy181 wrote:
Another isues:
- I don't know why is /tmp/dnsmasq.leases. I haven't dnsmasq started on my DD-WRT
SmartDNS is a DNS server and not a DHCP server.
Dnsmasq is still the DHCP server and provides the clients with addresses.
The file is also required by SmartDNS so that local hostnames can be resolved.
thommy181 wrote:
- Log file dosen't exist and it's not configure anywhere
Then you have to configure a log file and maybe read the dd-wrt smartdns thread.
thommy181 wrote:
DD-WRT have "bind :53". When I try to set specific IP and try to reload config it's inpossible, cause file in /etc/ dosen't exist. Value "Bind :53" is totally unsecure. Smartdns service can attacked from world wide web.
lol... if i'm not mistaken the router has a firewall _________________ Quickstart guides: