pfsense:dns:troubleshooting:notice_sendto_failed_permission_denied
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
pfsense:dns:troubleshooting:notice_sendto_failed_permission_denied [2021/01/06 14:10] – peter | pfsense:dns:troubleshooting:notice_sendto_failed_permission_denied [2021/01/06 14:22] (current) – peter | ||
---|---|---|---|
Line 13: | Line 13: | ||
---- | ---- | ||
- | ===== Cause ===== | + | ===== Cause & Fix ===== |
- | The resolver settings are not dynamically checking/ | + | ==== IPv6 could be disabled on the WAN port ==== |
+ | |||
+ | <WRAP info> | ||
+ | **NOTE: | ||
+ | |||
+ | Simply ignore for these messages for now, or allow IPv6 on the WAN. | ||
+ | |||
+ | </ | ||
---- | ---- | ||
- | ===== Fix ===== | + | ==== Suricata may be blocking these addresses |
- | Enable or disable whether ip6 queries are answered or issued. | + | Usually due to **ET DNS Query to a *.pw domain - Likely Hostile**. |
- | If disabled, queries are not answered on IPv6, and queries are not sent on IPv6 to the internet name-servers. | + | ---- |
- | With this option you can disable the ipv6 transport for sending DNS traffic, it does not impact the contents of the DNS traffic, which may have ip4 and ip6 addresses in it. | + | ==== Unbound |
+ | In the past Unbound could crash with a buffer overflow. | ||
+ | |||
+ | But this should have been fixed. | ||
+ | |||
+ | ---- | ||
pfsense/dns/troubleshooting/notice_sendto_failed_permission_denied.1609942232.txt.gz · Last modified: 2021/01/06 14:10 by peter