Skip to content

DNS not working on ubuntu artful 17.10

DNS resolution is blocked after I connect to demo.bm VPN:


--- ~ » host ix.de
../../../../lib/isc/unix/net.c:581: sendmsg() failed: Operation not permitted
Host ix.de not found: 5(REFUSED)

--- ~ » host ix.de 4.2.2.2
../../../../lib/isc/unix/net.c:581: sendmsg() failed: Operation not permitted
Using domain server:
Name: 4.2.2.2
Address: 4.2.2.2#53
Aliases: 

ix.de has address 193.99.144.80
ix.de has IPv6 address 2a02:2e0:3fe:1001:302::
ix.de mail is handled by 10 relay.heise.de.
ix.de mail is handled by 50 secondarymx.heise.de.

--- ~ » sudo iptables -nL
[sudo] password for varac: 
Chain INPUT (policy ACCEPT)
target     prot opt source               destination         

Chain FORWARD (policy ACCEPT)
target     prot opt source               destination         
DOCKER-ISOLATION  all  --  0.0.0.0/0            0.0.0.0/0           
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0            ctstate RELATED,ESTABLISHED
DOCKER     all  --  0.0.0.0/0            0.0.0.0/0           
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0           
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0           

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination         
bitmask    all  --  0.0.0.0/0            0.0.0.0/0           

Chain DOCKER (1 references)
target     prot opt source               destination         

Chain DOCKER-ISOLATION (1 references)
target     prot opt source               destination         
RETURN     all  --  0.0.0.0/0            0.0.0.0/0           

Chain bitmask (1 references)
target     prot opt source               destination         
ACCEPT     all  --  0.0.0.0/0            10.1.1.0/24         
ACCEPT     udp  --  10.1.1.0/24          0.0.0.0/0            udp dpt:53
ACCEPT     tcp  --  10.1.1.0/24          0.0.0.0/0            tcp dpt:53
RETURN     udp  --  0.0.0.0/0            239.255.255.250      udp dpt:1900
RETURN     udp  --  0.0.0.0/0            224.0.0.251          udp dpt:5353
ACCEPT     all  --  0.0.0.0/0            46.165.242.169      
ACCEPT     all  --  0.0.0.0/0            198.252.153.84      
REJECT     all  --  0.0.0.0/0            0.0.0.0/0            reject-with icmp-port-unreachable

I'm using latest artful packages which are the same commit as the 0.10.2 release:

--- ~ » dpkg -l|grep bitmask
ii  bitmask                                                     0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Metapackage to install bitmask desktop client
ii  bitmask-chromium                                            0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Bitmask chromium launcher
ii  bitmask-core                                                0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Provides the core daemon for bitmask
ii  bitmask-js                                                  0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          bitmask javascript library
ii  bitmask-mail                                                0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Bitmask mail components
ii  bitmask-mua                                                 0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Pixelated MUA for LEAP bitmask mail
ii  bitmask-qt                                                  0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Bitmask desktop client (qt5) to access LEAP Services
ii  bitmask-vpn                                                 0.10.0+0~20171102172742.25354+master+artful~43.g4e7f9081   all          Bitmask core VPN daemon

Log: bitmaskd.log

Edited by Varac