New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
FS#4154 - procd-ujail: makes dnsmasq refuse to answer dns queries #9139
Comments
wwortel: additional info: withhout procd-ujail: In both cases the unit does reach itself fqdn ddresses on the internet. |
Just happened to me on a fresh OpenWrt 23.05.0-rc3 install on x86/64: NAME="OpenWrt" And as observed above, commenting out the |
wwortel:
22/11/2021 compile for ramips device Ubiquiti EdgeRouter X sfp ; snapshot: r18166-e2c4998f6d
Choosing TARGET_ramips_mt7621_DEVICE_ubnt_edgerouter-x-sfp selects default the inclusion of procd-ujail .
This has the effect of dnsmasq being put in a jail.
The device can still make dns queries to upstream. But, depite dnsmasq listening on all interfaces, any incoming queries get the reply 'REFUSED'. Easily tested on the device itself e.g. with the command 'nslookup localhost'
This leaves any devices downstream in the dark that via dhcp got the news to fetch their dns information from this jailed dnsmasq.
Exactly same configuration compile, but with procd-ujail manually removed, restores complete functionality of dnsmasq.
The text was updated successfully, but these errors were encountered: