Page 1 of 1

DNS queries are leaking!

Posted: Mon Dec 23, 2013 3:24 pm
by fbb_3213
Hi all,

I just tried testing the GUI software provided by VPNGate.net and found that the DNS queries leak to my ISP's DNS.

You can go to https://www.dnsleaktest.com/ to test where your DNS queries go.

My results showed that my DNS queries went to Google's DNS, which was set by myself at the VPNGate.net interface settings, and my ISP's DNS.

I'm not sure if anybody cares about this, but I think this is an issue that should be fixed.

Thanks.

Best regards,
fbb_3213


Edit:
My computer's configuration:
Windows 7 Professional 64-bit
vpngate-client-2013.12.21-build-9387.128480

Screenshot:
[attachment=0]dnsleaktest.jpg[/attachment]
The first box is the DNS from the VPN server which I connected to.
The second box is the DNS of my ISP, which is not what I wanted (and maybe not every other user who wants more privacy desires.)

Re: DNS queries are leaking!

Posted: Mon Dec 23, 2013 6:44 pm
by mesa57
If you are concerned you can set the dns server on you're local lan to 127.0.0.1 and connect to the vpngate server via it's IP address.
Suc6

Re: DNS queries are leaking!

Posted: Tue Dec 24, 2013 12:55 am
by fbb_3213
mesa57 wrote:
> If you are concerned you can set the dns server on you're local lan to
> 127.0.0.1 and connect to the vpngate server via it's IP address.
> Suc6

Hi,

You're right. Although I could fix this by setting the DNS server manually, I feel that this is a software problem. (I might be wrong!)

Re: DNS queries are leaking!

Posted: Tue Dec 24, 2013 1:44 pm
by mesa57
As I understand, Softether's goal is not hiding you're credentials, so I doubt it will be included in the software. But you never know ....

Re: DNS queries are leaking!

Posted: Tue Dec 24, 2013 8:30 pm
by dragon2611
It's a windows problem, it doesn't restrict it's DNS queries to the VPN interface but rather sends them out on the physical interface as well.

The only way I can think of to stop it is to set the DNS server on the other network interfaces to 127.0.0.1

It's not unique to softether, other VPN solutions have the same problem, I think some of the commercial providers clients run a script to change the DNS automatically on connect.

Re: DNS queries are leaking!

Posted: Thu Dec 26, 2013 3:29 pm
by kh_tsang
mesa57 wrote:
> If you are concerned you can set the dns server on you're local lan to
> 127.0.0.1 and connect to the vpngate server via it's IP address.
> Suc6
Then the server name will stop working.