Skip to main content
Accessibility Resource Center Skip to main content
Have a phone you love? Get up to $500 when you bring your phone. OR get iPhone 13, on us for a limited time. With Select 5G Unlimited plans. Buy now
end of navigation menu
G3100 - VPN DNS-rebind issue
a_rodge
Enthusiast - Level 2

I just upgraded to the G3100 router (from a custom setup using Nighthawk router & AP) and am now getting the following errors in the router logs when trying to connect to my company VPN:

 [SYS.4][SYS] possible DNS-rebind attack detected

I do not see where this is actually being blocked; however, the site is unreachable.

Is there a specific way to bypass?

0 Likes
1 Solution

Correct answers
Re: G3100 - VPN DNS-rebind issue
a_rodge
Enthusiast - Level 2

I was able to resolve this by changing the DNS server on the local machine (Google Public DNS).

I would still like to change the DNS at the router level, but that is not an urgent issue.

View solution in original post

0 Likes
Re: G3100 - VPN DNS-rebind issue
a_rodge
Enthusiast - Level 2

I was able to resolve this by changing the DNS server on the local machine (Google Public DNS).

I would still like to change the DNS at the router level, but that is not an urgent issue.

0 Likes
Re: G3100 - VPN DNS-rebind issue
AngryEngineer
Newbie

Without getting into the technical details of public and private/corporate name resolution functions, the real root cause is due to Verizon’s DNS Assistance service configured by default on their residential modems/gateways.

To resolve the problem effectively [while still considering other related factors such as additional cost, configuration complexity, corporate supportability, and user flexibility], the best prioritized options are to:

(1) modify the DNS servers on the VZ modem/gateway to use free DNS services (e.g., Google DNS, OpenDNS),

(2) install a home WiFi router in front of the VZ modem/gateway AND configure that new home WiFi router to use free DNS services,

(3) change the DNS server entries on your computer(s) and mobile devices to use free DNS services,
or lastly (4) consider alternative Internet Service Providers.

0 Likes