Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. VPN
  3. OpenVPN DNS leaks?

OpenVPN DNS leaks?

Scheduled Pinned Locked Moved VPN
openvpndns leakssecurity
7 Posts 4 Posters 1.4k Views 6 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • L Offline
    L Offline
    LoudLemur
    wrote on last edited by
    #1

    I just tried testing an OpenVPN connection setup on Cloudron. It looked like there were DNS leaks.

    What additional steps might be necessary inorder to eliminate the DNS leaks?

    1 Reply Last reply
    0
    • girishG Offline
      girishG Offline
      girish
      Staff
      wrote on last edited by
      #2

      How did you determine there are DNS leaks? Which OS/device are you using? In OpenVPN, the device must respect the DNS configuration pushed by the OpenVPN server. The DNS will leak if it ignore this.

      L 1 Reply Last reply
      0
      • girishG girish

        How did you determine there are DNS leaks? Which OS/device are you using? In OpenVPN, the device must respect the DNS configuration pushed by the OpenVPN server. The DNS will leak if it ignore this.

        L Offline
        L Offline
        LoudLemur
        wrote on last edited by
        #3

        @girish The tool was visiting:
        https://dnsleaktests.com
        which is apparently the tool banks use.

        The Operating System was Windows 10 on a PC.

        girishG 1 Reply Last reply
        0
        • nebulonN Offline
          nebulonN Offline
          nebulon
          Staff
          wrote on last edited by
          #4

          That link seems a bit wrong, did you mean https://dnsleaktest.com/ ?

          But more generally, what exactly is this DNS leak in the context of the OpenVPN app? If DNS queries leave your system without using the VPN and thus creating some query leak, then this is more likely a client issue, however I am just purely guessing what DNS leak might refer to in this context 🙂

          1 Reply Last reply
          0
          • L LoudLemur

            @girish The tool was visiting:
            https://dnsleaktests.com
            which is apparently the tool banks use.

            The Operating System was Windows 10 on a PC.

            girishG Offline
            girishG Offline
            girish
            Staff
            wrote on last edited by
            #5

            @LoudLemur Just to double check are you able to test this on another device/OS as well?

            Z 1 Reply Last reply
            0
            • girishG girish

              @LoudLemur Just to double check are you able to test this on another device/OS as well?

              Z Offline
              Z Offline
              ZeZaung
              wrote on last edited by
              #6

              @girish I am having this issue also using openwrt and am unable to discern how to solve this.

              The lines of code added to the ovpn file generated via cloudron goes like this

              script-security 2
              up /etc/openvpn/update-resolv-conf
              down /etc/openvpn/update-resolv-conf
              

              This seems to work to fix the dns leak issue on mac os or microsoft clients. However, when I try the same config with openwrt (a router), it doesn't work.

              I have opened a support ticket on OpenWrt about this. Strange, since other VPN services which provide ovpn files do not have this dns leak and did not require the above block of code to be added beneath 'script-security-2'

              1 Reply Last reply
              0
              • girishG Offline
                girishG Offline
                girish
                Staff
                wrote on last edited by
                #7

                Maybe @mehdi has some ideas here since he wrote the initial app.

                If I understand correctly, you are trying to put the OpenVPN certs into openwrt and this somehow leaks DNS. How are you testing this?

                1 Reply Last reply
                0
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                • Login

                • Don't have an account? Register

                • Login or register to search.
                • First post
                  Last post
                0
                • Categories
                • Recent
                • Tags
                • Popular
                • Bookmarks
                • Search