On my interface settings for LAN, WAN and WiFi, I uncheck "Use DNS server advertised by peer" because I don't want to use DNS servers belonging to ISP.
But then I leave "Use custom DNS servers" section empty because I've already done this setting on dnsmasq (forwarding to 94.140.14.14). Things are working fine but I'm wondering if I'm doing it wrong. Check the screenshots attached. Is it ok to leave it like this or better to put the same address on interface settings?
Thank you.
For the system DNS forwards (3rd screenshot), that looks good (although it is usually best to have a backup DNS server listed).
On the wan, it is generally recommended to also have DNS (can be the same as what you set in the DNS forwards within dnsmasq).
On the lan, it doesn't actually matter, so that's fine to leave empty.
Why is it recommended to set the same DNS server on WAN?
The DNS that you configure on an interface is not the DNS that the devices on that interface will use, is the DNS available through that interface, that the router will use. By default, the DHCP clients will use the router as a DNS.
2 Likes