Network manager and split DNS for a VPN?

Chris Green cl at isbd.net
Wed Apr 12 09:45:02 UTC 2017


On Wed, Apr 12, 2017 at 09:13:49AM +0200, Xen wrote:
> Karl Auer schreef op 12-04-2017 1:03:
> 
> > It *should* work, and dnsmasq it even *looks* as if it is doing it, but
> > it isn't actually working. Here is a sample bit of dnsmasq log file
> > after the VPN comes up:
> 
> Question: can you query the dnsmasq contents while it is running?
> 
> I never really liked the fact that dnsmasq (as a local nameserver) is used
> by default by NetworkManager,
> 
> although I guess it moves the inflexibility (?) of /etc/resolv.conf to
> something more developed.
> 
> For a user seeing /etc/resolv.conf output something like:
> 
> 127.0.1.1 localhost
> 
> and then not being able to verify the contents of that nameserver is a bit
> disheartening.
> 
> Particularly as I think the commands are updated over dbus and the user has
> no control over that at all.
> 
I absolutely agree, it's a pain not being able to easily see where
one's DNS is *actually* being resolved.  

The way that dnsmasq is used 'automatically' by Network Manager is
very inflexible.

There should be:-

    A well documented way to configure the dnsmasq used by Network
    Manager as a full/proper dnsmasq, or a way to unhook it from
    Network Manager.

    Somewhere easy to find the actual upstream DNS servers (i.e.  the
    ones recommended by your ISP or whatever) that are being used. 

-- 
Chris Green




More information about the ubuntu-users mailing list