Solved

NetgearFVS and Comcast SMC - DNS forwarding

Posted on 2014-10-19
3
300 Views
Last Modified: 2014-11-26
I recently fixed an incompatibility between a Netgear router and a Comcast modem. My question is in regards to DNS forwarding. Did the protocol for DNS forwarding change? Or did Comcast recently change the way their business modems handle DNS forwards from internal networks?

The network in question is using a Netgear FVS model router bridged to a Comcast SMC business gateway.

The Netgear also handles DHCP on the LAN. For a year or more the Netgear ran "DNS Proxy" for its local DHCP clients. In other words, the router handed-out  its own address for DNS.

It worked for months. In the last few days, somewhere between the Netgear and the SMC I found that DNS forwarding was dying and not recovering.

I applied a minor firmware version upgrade to the Netgear with no change in behavior. Comcast told me that their device had a good status with no pending updates. I still couldn't count on DNS proxy (aka forwarding).  

The Netgear actually has a DHCP log, but not a DNS log. (These devices offer emailed logging, which didn't produce enough details for me in the past).

I kiled the DNS Proxy and everything works. Fortunately, there are few local resources on the LAN, and they can all be addressed by IP address instead of name resolution. The DNS Proxy isn't essential.

Summary: Now the Netgear provides DHCP clients with the public DNS server 75.75.75.75 and everything works.

Question: Why did DNS Proxy fail after many months of service?
Thanks!
0
Comment
Question by:kengreg
  • 2
3 Comments
 
LVL 12

Accepted Solution

by:
DarinTCH earned 500 total points
ID: 40391296
so yes probably COMCAST
no DNS protocol has not changed
allow there is a newer DNSv6
comcast has changed there modems and are even contacting customers and offering a free modem upgrade
the new modems have a wireless router builtin - and many 'PRESETS"
you can turn off - into bridge mode with their help ONLY
I had several similar small issues - but we worked thru most
i set up the DHCP to provide DNS with an internal DNS and their external DNS
0
 

Author Closing Comment

by:kengreg
ID: 40412425
DarinTCH,
Thanks for the comment!
0
 

Author Comment

by:kengreg
ID: 40467823
Here's a follow-up.

After four weeks DNS stopped (again) out of the blue. Okay, that's odd. The new settings should have been foolproof. I was explicitly assigning 75.75.75.75 and 75.75.76.76 to the DHCP clients.

The Netgear FVS was/is still on the same (latest) firmware.

The Comcast SMC modem was/is still on the same (latest) firmware:

Vendor Name       SMC Networks
Hardware Version       1.01
Serial Number       XXXXXXXXXXXX
Firmware Version       3.1.6.56
Operating Mode       RG

I spoke to a Comcast rep and the modem was easily accessible with a good status and proper DNS settings. It wasn't their issue. I agreed.

So, I was curious to know if the DNS Proxy on the Netgear would start working again. Yes, it did.

Changes to Netgear router:
1. I checked  box for DNS Proxy.
2. I pointed the Netgear's DNS to the LAN IP of the SMC.

This worked. DNS resolution is fast.

DNS requests on the LAN are forwarding twice, first to the Netgear, and second to the SMC. It's not my preferred solution, but it's working.

I'll be monitoring for any problems.
0

Featured Post

Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

Join & Write a Comment

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
Managing 24/7 IT Operations is a hands-on job and indeed a difficult one. Over the years I have found some simple tips and techniques to increase the efficiency of the overall operations. The core concept has always been on continuous improvement; a…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

757 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now