Comment on [deleted]

stratself@lemdro.id ⁨2⁩ ⁨weeks⁩ ago

In your Tailscale DNS panel, disable “Use with exit node” option for your nameservers.

When turned on, that option actually allows you to talk directly to nameservers without tunneling DNS queries through the exit node. Since Quad9 in fact has a worldwide CDN, this would leak your (general) DNS query location.

I believe Tailscale send the queries in parallel and fetch the faster response, which is Quad9 in this case. Ideally for your use case, all your queries should be able to reach and show up in Pi-hole’s logs. Use tailscale dns commands for further debugging

source
Sort:hotnewtop