ER605 Blocking Direct Queries to Root Zone? (DNS)

ER605 Blocking Direct Queries to Root Zone? (DNS)

ER605 Blocking Direct Queries to Root Zone? (DNS)
ER605 Blocking Direct Queries to Root Zone? (DNS)
Sunday - last edited Yesterday
Tags: #DNS
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.6

Hello,

 

I have noticed that my ER605 v2 router might be blocking or interfering with direct DNS queries for the Root Zone (.), as I consistently receive timeout responses, regardless of the client I use or the DNS server query.

 

yes Regular domain queries (e.g. google.com) work fine.

no Queries for the Root Zone ( . ) always time out.

 

I´d like to ask if anybody else is experiencing the same issue. You can reproduce it by running the following command in CMD/Powershell on a Windows client:
nslookup -type=NS . 1.1.1.1

 

Expected behavior: The DNS resolver should return the 13 authoritative root name servers.

 

Here´s my result:

nslookup

 

When querying a domain like google.com, everything works as expected::

nslookup google.com

 

This problem is especially frustrating when running an own Unbound resolver, since it relies on direct queries to the root name servers to function properly.

 

Has anyone else encountered this issue? Is this a known limitation or maybe a bug?

 

Thanks!

  0      
  0      
#1
Options
1 Accepted Solution
Re:ER605 Blocking Direct Queries to Root Zone? (DNS)-Solution
Wednesday - last edited Yesterday

  @knallex 

 

ER8411 router on main site

 

 

ER605 v2 at home (remote site, managed by OC200 on main site)

 

All networks have cloudflare filtered dns 1.1.1.2 / 1.0.0.2 set on both WAN conenctions on the gateway and via DHCP to all clients

 

Also the same on my VPN gateway (ER7206 v2), everything resolved correctly.

 

Recommended Solution
  1  
  1  
#4
Options
3 Reply
Re:ER605 Blocking Direct Queries to Root Zone? (DNS)
Monday

Hi @knallex 

Thanks for posting in our business forum.

I tested one of the models available for me. ER7206 V2 with the latest pre-release firmware.

I also tried one ER605 V1. I can resolve the root servers as well.

Have you tried different computers?

 

(ER7206 V2)

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#2
Options
Re:ER605 Blocking Direct Queries to Root Zone? (DNS)
Tuesday

Hey @Clive_A,

 

Thank you for your reply!

 

Yes, I have already tested tthis on a Linux machine using both the dig and nslookup commands, and the results were unfortunately the same.

To rule out any configuration issues, I also performed a factory reset on the ER605 and connected only one device via LAN cable directly to the router. The issue still persists.

Let me kno if there are any further tests I should try.

 

Thanks.

  0  
  0  
#3
Options
Re:ER605 Blocking Direct Queries to Root Zone? (DNS)-Solution
Wednesday - last edited Yesterday

  @knallex 

 

ER8411 router on main site

 

 

ER605 v2 at home (remote site, managed by OC200 on main site)

 

All networks have cloudflare filtered dns 1.1.1.2 / 1.0.0.2 set on both WAN conenctions on the gateway and via DHCP to all clients

 

Also the same on my VPN gateway (ER7206 v2), everything resolved correctly.

 

Recommended Solution
  1  
  1  
#4
Options

Information

Helpful: 0

Views: 71

Replies: 3

Tags

Related Articles