NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
Retired_Member
Dec 09, 2020Orbi Pro SRR60 - DNS Server via DHCP
Hi,
i am using a SRR60 with 2 Satellites. (First question, why cann't I choose this System in the drop-down menue as my Model (which is a recommended field).
Question : Why is the IP-address of the DNS Server not correctly forwarded via DHCP to the clients?
Why is the DNS IP address the same as the routers address? I bought a PRO Equipment, not a customer one. It makes no sense for me.
No admin needs this super feature "www.orbilogin.com", so this is not the reason.
Sorry for the bad english, i am really disappointed.
regards
3 Replies
- schumakuGuru - Experienced User
Retired_Member wrote:i am using a SRR60 with 2 Satellites. (First question, why cann't I choose this System in the drop-down menue as my Model (which is a recommended field).
Only the kits (SRK60Bnn) are listed why ever, not the individual devices.
Retired_Member wrote:Why is the IP-address of the DNS Server not correctly forwarded via DHCP to the clients?
Because it's designed that way, using the DNS relay on the router.
Even as a business product, not a secret its a derivative from the consumer Orbi, so this part of the design is retained.
Does this cause any issues in the real world or in your environment?
There are several similar related requests for enhancing nd customizing specifically the DHCP service, e.g. for adding custom IP addresses (different from the ones received from the ISP or configured for the plain Internet access), for adding options, for adding DNS search paths, ..
Retired_Member wrote:Why is the DNS IP address the same as the routers address?
Because there is a workable DNS relay in place - simplification for everyone.
Retired_Member wrote:No admin needs this super feature "www.orbilogin.com", so this is not the reason.
No, any non-encrypted orbilogin.com/.net query that hits or passing the router will return the LAN IP, regardless. Not super feature, just commodity again. Oh in the past it allowed Netgear to put up a valid (!!!) certificate for the https connection on the LAN - disliked because of the obvious shared private key - so this was removed. I loved the idea - much less hassle.
Regards,
-Kurt
- Retired_Member
Does this cause any issues in the real world or in your environment?
Yes, because every DNS request is from the routers IP and therefore a statistic/log is not possible. (pihole)
- schumakuGuru - Experienced User
Retired_Member wrote:Does this cause any issues in the real world or in your environment?
Yes, because every DNS request is from the routers IP and therefore a statistic/log is not possible. (pihole)
And what are you doing with systems using secured DNS? There is less and less evidence for pihole & Co....
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!