I have RT-AC86U on merlin 384.19.
LAN DHCP server DNS empty.
WAN DNS set to 8.8.8.8 (only for router itself)
WAN DoT set to quad9 and cloudflare.
Everything works fine. My device only show DNS from DoT using this link:
Then I setup VPN client 1 to only route my phone. With accept DNS configuration set to disabled. I also setup VPN client 2 for guest only set to accept DNS exclusive. DNS still working as expected.
Problem happen after I setup VPN client 3 with accept DNS configuration relaxed. Forced Internet traffic through tunnel is set to Policy Rule (strict). Block routed client if tunnel go down set to no. Actually at this stage no rules for client is set yet so nothing is routed here. Somehow my pc which is routed through WAN and my phone that is routed to VPN client 1 both shows DNS from VPN client 3 provider on top of DoT DNS from WAN setting. The VPN provider DNS went away after I bring down VPN client 3.
I suppose only device route to VPN client 3 will have DNS from DoT and VPN provider. Is this expected behaviour or consider a DNS leak?
LAN DHCP server DNS empty.
WAN DNS set to 8.8.8.8 (only for router itself)
WAN DoT set to quad9 and cloudflare.
Everything works fine. My device only show DNS from DoT using this link:
My IP Address
The main tools for checking IP address privacy. Showing Your IP Address, Reverse IP Lookup, Hostname, and HTTP Request Headers, Your Country, State, City, ISP/ASN, and Local Lime, Whois Lookup, TCP/IP OS fingerprinting, WebRTC Leak Test, DNS Leak Test, and IPv6 Leak Test.
browserleaks.com
Then I setup VPN client 1 to only route my phone. With accept DNS configuration set to disabled. I also setup VPN client 2 for guest only set to accept DNS exclusive. DNS still working as expected.
Problem happen after I setup VPN client 3 with accept DNS configuration relaxed. Forced Internet traffic through tunnel is set to Policy Rule (strict). Block routed client if tunnel go down set to no. Actually at this stage no rules for client is set yet so nothing is routed here. Somehow my pc which is routed through WAN and my phone that is routed to VPN client 1 both shows DNS from VPN client 3 provider on top of DoT DNS from WAN setting. The VPN provider DNS went away after I bring down VPN client 3.
I suppose only device route to VPN client 3 will have DNS from DoT and VPN provider. Is this expected behaviour or consider a DNS leak?