• November 01, 2024, 02:37:19 AM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: DIR-655 DNS Relay Question  (Read 6295 times)

thekochs

  • Level 2 Member
  • **
  • Posts: 27
DIR-655 DNS Relay Question
« on: January 12, 2015, 04:44:02 PM »

I have question on DIR-655's "DNS Relay" check box.
Below is an excerpt from this link.........
https://www.grc.com/dns/configuring.htm
.........of which I want to know if the "DNS Relay" function what turns ON/OFF the DIR-655 being the proxy between the LAN PCs & the DNS IP Addresses listed in the router ?  If I uncheck the box would the PCs go direct to the public DNS resolver ?  You can see from the excerpt that the writers do not like this proxy function of routers.

Some routers pass the two public DNS IPs obtained from the ISP through to the machines located on the LAN, whereas other routers provide their own private IP on the LAN, the so-called “gateway IP,” as the IP to be used for DNS resolution by the LAN's computers. In the case of public DNS resolver IPs, the machines on the LAN send their queries directly to the publicly located DNS resolvers for resolution. In the case of having received the router's own private LAN IP for DNS resolution, machines on the LAN behind the router will send their DNS queries to the router, believing it to be a DNS resolver when, in fact, the router operates as a “proxy” for the actual public DNS resolvers. The router forwards any received DNS queries to the actual DNS resolvers on the public Internet and returns their results to the machine that originally issued the DNS query.

Pros & Cons of Router-based DNS:
If your computer(s) is/are not behind a router, then router-based DNS is not an option. But assuming that you do have a router, the greatest benefit offered by router-based DNS is that the DNS servers within your entire network can be “centrally managed” and completely changed at a single location (within the router.) It has been our experience that the best approach, if it is available from the router's configuration interface, is to have the router distribute public DNS resolver IPs to the machines on its network — as opposed to giving them its own private IP for DNS resolution. When that is done, the network's computers directly query their public DNS servers, rather than querying the router. But, as was explained above, by default many routers now issue their own local IP as the DNS server for the network, then “proxy” the DNS queries from the local network's computers.
But the larger concern is that the error-handling and retrying logic used by inexpensive routers for unanswered DNS queries is unknown and likely to be poor. Modern computers have a mature, time-tested and sophisticated system for retrying unanswered or too-long-delayed DNS queries. We like the idea of allowing that mature technology to function. But if the router is “proxying” the computer's DNS query our DNS handling is at the router's mercy. That seems wrong and less than optimal. Therefore, if you prefer to have your network's router centrally manage DNS for your computers, you might wish to see whether it's possible to have the router distribute the public DNS resolver IPs that you specify, rather than having it providing its own gateway IP as the network's DNS. That just seems a lot better, cleaner, and simpler.

Logged

FurryNutz

  • Poweruser
  •   ▲
    ▲ ▲
  • *****
  • Posts: 49923
  • D-Link Global Forum Moderator
    • Router Troubleshooting
Re: DIR-655 DNS Relay Question
« Reply #1 on: January 13, 2015, 06:37:34 AM »

DNS relay can be used depend upon certain confiurations needed. If there are some management and controls set up on the router for controlling certain things, then DNS relay maybe needed, along with Advanced DNS Services. If users need more advanced configurations or seek DNS resolution configurations, then DNS relay can be disabled. DNS Relay enabled works for most users. I've used it in both ways.

I tend to recommend this as well:
 DNS Relay
Logged
Cable: 1Gb/50Mb>NetGear CM1200>DIR-882>HP 24pt Gb Switch. COVR-1202/2202/3902,DIR-2660/80,3xDGL-4500s,DIR-LX1870,857,835,827,815,890L,880L,868L,836L,810L,685,657,3x655s,645,628,601,DNR-202L,DNS-345,DCS-933L,936L,960L and 8000LH.

thekochs

  • Level 2 Member
  • **
  • Posts: 27
Re: DIR-655 DNS Relay Question
« Reply #2 on: January 13, 2015, 07:52:43 AM »

I tend to recommend this:
 DNS Relay

The thread makes a very valid point about having DNS Relay "on" (checked)....as opposed to "off" (unchecked) as the article above outlines....basically the error handling concern.  I think weighing the two pros/cons having this "on" (checked) is best.  The decision on where/what to put as the DNS addresses is whole different topic but I think using the DNS tool to benchmark and then apply the best DNS in the DIR-655 Internet Settings (with DNS Relay on) is best, IMHO.
https://www.grc.com/dns/benchmark.htm

Thx for the response !
« Last Edit: January 13, 2015, 07:58:21 AM by thekochs »
Logged

FurryNutz

  • Poweruser
  •   ▲
    ▲ ▲
  • *****
  • Posts: 49923
  • D-Link Global Forum Moderator
    • Router Troubleshooting
Re: DIR-655 DNS Relay Question
« Reply #3 on: January 13, 2015, 08:25:39 AM »

You can input custom DNS addresses into Setup/Internet/Manual or leave it blank. If blank, the router will use what is detected at the ISP modem.
Logged
Cable: 1Gb/50Mb>NetGear CM1200>DIR-882>HP 24pt Gb Switch. COVR-1202/2202/3902,DIR-2660/80,3xDGL-4500s,DIR-LX1870,857,835,827,815,890L,880L,868L,836L,810L,685,657,3x655s,645,628,601,DNR-202L,DNS-345,DCS-933L,936L,960L and 8000LH.