NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

billie_a's avatar
billie_a
Aspirant
Oct 04, 2023

RBRE960: DNS problems

I'm having periodic issues with DNS. This issue has occurred twice this year. The symptom is that multiple iOS apps would hang, fail, or say they need upgrading. App store would simply fail to connect. In addition, https access to any host name would result in a warning about an insecure connection , and a possible man in the middle attack. Examining the certificate shows a dummy example certificate. However, an https access to a specific host address was fine. I discovered that all DNS responses pointed to the router IP address (in my case, 192.168.64.1). The DNS server is the same. My guess is that the DNS server in the Orbi is failing and returning a bogus result. Perhaps there is a resource leak that eventually causes the application to misbehave. Rebooting the Orbi clears up the problem. Has anyone experienced similar issues?

8 Replies

  • FURRYe38's avatar
    FURRYe38
    Guru - Experienced User

    What Firmware version is currently loaded?
    What is the Mfr and model# of the Internet Service Providers modem/ONT the NG router is connected too?
    Be sure your using a good quality LAN cable between the modem and router. CAT6A STP is recommended. 

     

    Are you using Auto Detected DNS on the RBR or a custom DNS configuration?

     

    Are you using the RBR DHCP IP address default of 192.168.1.1 or something different. Default DNS on any device connected to the system should be 192.168.1.1. 

     

     

    • billie_a's avatar
      billie_a
      Aspirant

      Firmware V6.3.7.10

      It's connected to a Starlink router Model: Gen 2 running 2023.43.0.

       

      There isn't a cable issue.  

       

      When this problem occurs, anything behind the Orbi is affected.  Anything directly using the Starlink is unaffected.

       

      The internet port DNS server is 192.168.1.1 (which is the Starlink), as the gateway IP address is 192.168.1.1 and the external IP address (the Orbi address) is 192.168.1.2.

       

      The DNS address given out by the Orbi is 192.168.64.1 as expected.  That is the internal IP address of the Orbi router (192.168.64.1/26, mask is 255.255.192.0).  Note that the Orbi software isn't smart enough concerning the net mask and only gives out addresses as I it were a /24 net mask (192.168.64.start through 192.168.64.end)

       

      When the problem occurs, any DNS request results in an answer of 192.168.64.1, which results in Safari popping up a dialogue about site impersonation (the certificate in question is always the Orbi certificate default.example.com which is a self-signed certificate, just as is returned when connecting directly to the router through safari).  For apps, they simply fail to connect to the sites they are requesting.  For example, App Store will ask you to Retry connection (and never succeed), News will say there is a problem with the feed, etc.