What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Using public domains local only

jackdlail

Occasional Visitor
I want to use a public domain name with some docker containers on a NAS with nginx proxy manager so they can have SSL, too,

I got a domain at Cloudflare, and created subdomains for my Docker apps, all pointing to the internal IP of my NAS (instead of the public IP of the router). While a hack, with ports 80 and 443 closed, it hopefully limits the domains to internal use only.

My issue is nothing inside my local LAN resolves those domains even though I can see they have propogated worldwide with websites that check that. Why doesn't the 192.168.50.165.xxx address resolve to my subdomain names that use that IP in their A records?

If I add the addresses to my hosts file, they resolve for that machine, but that's not what I want.

Is this expected behavior or is there some setting I need to change?

I am using a ZenWiFi XT 8 router system running stock ASUS software on the latest firmware.
The NAS is a QNAP.

The A records for the subdomains are not proxied by Cloudflare.
 
Your LAN's resolver might refuse to resolve a private IP because it's often used in rebind attacks. This is an option that can be enabled in dnsmasq, for instance.

Test by directly querying a remote DNS server instead of whatever handles DNS queries within your LAN.
 
Thank you. I ended up doing a Cloudflare tunnel, which was a lot easier to implement. I did all the reserve proxing on the Cloudflare side and it just worked. Didn't have ot open any ports on the router.
 

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top