Page 1 of 1

Feature request: DNS per group permission

Posted: Fri Nov 26, 2021 9:37 am
by sliddjur
Hello, we're an MSP that use OpenVPN AS.

We crate group per customer. But I would like to push seperate DNS servers to each customer.

Can we please get an option to be able to push DNS per group?

Re: Feature request: DNS per group permission

Posted: Fri Nov 26, 2021 12:02 pm
by openvpn_inc
Hello sliddjur,

It's on the feature request list.

Kind regards,
Johan

Re: Feature request: DNS per group permission

Posted: Sat Nov 27, 2021 5:16 pm
by sliddjur
When is it going to be implemented? Its been on that list for years....

Re: Feature request: DNS per group permission

Posted: Sat Nov 27, 2021 6:45 pm
by openvpn_inc
sliddjur wrote:
Sat Nov 27, 2021 5:16 pm
When is it going to be implemented? Its been on that list for years....
Johan can answer that better than I can, but I can suggest possible workarounds.

If you have group IP addresses in your AS, you can use named(8)'s view feature to provide possibly different query replies to different networks. You would point all clients at the same nameserver, but change how the nameserver replies. It depends what your high-level goal is.

Split DNS in named

HTH, regards, rob0

Re: Feature request: DNS per group permission

Posted: Fri Dec 03, 2021 9:16 am
by sliddjur
openvpn_inc wrote:
Sat Nov 27, 2021 6:45 pm
sliddjur wrote:
Sat Nov 27, 2021 5:16 pm
When is it going to be implemented? Its been on that list for years....
Johan can answer that better than I can, but I can suggest possible workarounds.

If you have group IP addresses in your AS, you can use named(8)'s view feature to provide possibly different query replies to different networks. You would point all clients at the same nameserver, but change how the nameserver replies. It depends what your high-level goal is.

Split DNS in named

HTH, regards, rob0
Thanks, we already use named with views. That is what we want to avoid, because it just adds another layer to manage.