[kwlug-disc] Remote access to machine behind CG-NAT

Paul Nijjar paul_nijjar at yahoo.ca
Thu Jun 26 11:28:10 EDT 2025


On Thu, Jun 26, 2025 at 09:54:25AM -0400, Khalid Baheyeldin wrote:
> On Thu, Jun 26, 2025 at 1:02 AM Paul Nijjar <paul_nijjar at yahoo.ca> wrote:
> 
> > On Wed, Jun 25, 2025 at 03:32:44PM -0400, Khalid Baheyeldin wrote:
> > > I feel like using the BIND server is overkill for this.
> > >
> > > Any suggestions of a small easy to manage DNS server?
> >
> > If Lori was here he might suggest dnsmasq.
> >
> >
> > https://kwlug.org/node/1214
> > https://kwlug.org/node/1200
> >
> > - Paul
> >
> 
> That is exactly what I am leaning towards.
> 
> It already runs on my OpenWRT router, and if it is sufficient enough
> for that environment, then it has to be small and uncomplicated.
> 
> The part that I am not sure of, is that it is also a DHCP server, and
> I want to disable that feature, since Wireguard has each peer using
> a static IP address that is assigned in Wireguard's configuration files
> anyway. Also, I don't want to mess the gateway's internet setup.
> 
> Thanks for the links ...
> 
> I will watch Lori's presentation.

I have used dnsmasq in a limited way via the pfSense interface. I
am pretty sure I could add static DNS entries there without enabling
DHCP on each interface. I know for certain I could enable/disable DHCP
on different networks. But I do not know the details of how to do this.

- Paul


More information about the kwlug-disc mailing list