Hey folks, hope everyone is having a good day
I currently have a fibre network, and a CIDR address range of 8. Let’s say 10.0.0.5/29
I’m running pfsense, with the WAN setup on Static IPv4. The current configuration is setup as:
WAN GATEWAY:
Interface: WAN
Name: WANGW
Gateway: 10.0.0.5
WAN:
IPv4 Configuration Type: IPv4
IPv4 Address: 10.0.0.6/29
IPv4 Upstream gateway: WANGW - 10.0.0.5
I can then register virtual IPs and route each virtual IP’s traffic to different internal IPs (this enables me to accept multiple connections of port 80, 443 etc.)
So I have one virtual IP accepting connections on 443 for my vpn, then another virtual IP accepting connections for my home lab apps again on 443.
Issue that I’m having is that when on the internal network I cannot access any of my home lab apps without changing the hosts file to point to the internal IP.
I have setup the DNS Resolver, but this doesn’t work with a nested DHCP server I have attached to the main pfsense network.
For example:
pfsense DHCP / Network range:
192.168.0.1 → 192.168.0.200
The home lab docker server gets an IP address from here
The TP-Link router below also gets an IP address from this range
TP-Link router connected to the pfsense (for local devices):
172.0.0.1 → 172.0.0.50
All desktop and wireless devices sit on this network
So the external IP address on all networks reports back as 10.0.0.6, even from the devices on the TP-Link network (typing ‘what is my IP address’ into google for example)
Is there a way to utilize the Virtual IPs in a way so that the external IP address of the TP-Link devices are on a different virtual IP, with the aim of removing the need for the DNS resolver, or changing the hosts file?
Thanks in advanced
Edit:
The message I see when trying to view a domain name on anything on the TP-Link network is:
“Potential DNS Rebind attack detected, see DNS rebinding - Wikipedia
Try accessing the router by IP address instead of by hostname.”