• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1185
  • Last Modified:

Packet loss and network congestion when running DNSMASQ on PFsense

We are having a strange problem in which when we run dnsmasq on our pfsense box, we experience massive network congestion and packet loss. We have one pfsense box with two network cards and when we enable dnsmasq, our ISP drops 85% of the packets and ping times shoot up near 1000ms. As soon as I stop the dnsmasq service, packet loss is 0% and average ping time is 45ms.

We have a second pfsense box that only has one network card and when dnsmasq is enabled, we lose massive amounts of packets on our local network and our ping times internally shoot up past 4000ms. What in the world could cause this? As soon as dnsmasq is stopped, the problem goes away.
OAC Technology
OAC Technology
1 Solution
Your dnsmasq is not configured correctly.

You will find is that it is trying to resolve host names for any of your network traffic and it takes a long time to do it.

Test this by using nslookup or dig to perform a lookup on a hostname with dnsmasq on and off and compare the difference.

you then need to determine where dnsmasq is forwarding it's lookup queries to and ensure it is a valid dns and that it responds in an appropriate period of time.
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Train for your Pen Testing Engineer Certification

Enroll today in this bundle of courses to gain experience in the logistics of pen testing, Linux fundamentals, vulnerability assessments, detecting live systems, and more! This series, valued at $3,000, is free for Premium members, Team Accounts, and Qualified Experts.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now