[GH-ISSUE #202] PLUS: site vpn -- ensure devices route dns over gateway #67

Open
opened 2026-03-04 01:34:33 +03:00 by kerem · 1 comment
Owner

Originally created by @lts-rad on GitHub (Oct 5, 2023).
Original GitHub issue: https://github.com/spr-networks/super/issues/202

Originally assigned to: @lts-rad on GitHub.

double check that devices routed over a site VPN will also make dns requests over that site VPN.

Today they use destination routing to use the uplink as a gateway but might still have SPR be the DNS server. In this case, the DNS should be also router through the gateway.

Unlike a traditional vpn setup where the device has a vpn client, and configures its own dns, the device is unaware it is being site forwarded. thats why dns needs to also be pushed out over the site vpn as the dns queries would leak the ip address of SPR

Originally created by @lts-rad on GitHub (Oct 5, 2023). Original GitHub issue: https://github.com/spr-networks/super/issues/202 Originally assigned to: @lts-rad on GitHub. double check that devices routed over a site VPN will also make dns requests over that site VPN. Today they use destination routing to use the uplink as a gateway but might still have SPR be the DNS server. In this case, the DNS should be also router through the gateway. Unlike a traditional vpn setup where the device has a vpn client, and configures its own dns, the device is unaware it is being site forwarded. thats why dns needs to also be pushed out over the site vpn as the dns queries would leak the ip address of SPR
Author
Owner

@lts-rad commented on GitHub (Oct 5, 2023):

ui fi: uplink view should display site vpns.

<!-- gh-comment-id:1749453988 --> @lts-rad commented on GitHub (Oct 5, 2023): ui fi: uplink view should display site vpns.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/super#67
No description provided.