Comments

  • 192.168.156.1 ist not an ip address of a WG interface, but a local DNS Server. For this branch not ...1 should answer DNS queris, ...2 should do this job. There are no real technical reasons devices at the end of the MPLS can't use ...2 directly, rather political.
  • No, this MPLS interface has a different IP address on a different subnet. The DNS query just passes this interface but has the destination 192.168.156.1 and should be forwarded to 192.168.156.2.
  • I tried this but it has no effect, is there any pitfall? Firebox is not DHCP for this interface.