This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
advanced-dhcpdns [2024/11/27 00:23] – [DHCP Client (WAN)] -Formatting, condense hogwild | advanced-dhcpdns [2025/03/29 20:57] (current) – [DHCP Client (WAN)] -Formatting hogwild | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== DHCP/ | ====== DHCP/ | ||
- | This menu let you configure advanced settings for the DHCP, DNS and TFTP services for both the LAN and WAN. Most of this functionality is provided by [[https:// | + | Here, you can configure advanced settings for the DHCP, DNS and TFTP services for both LAN and WAN. Most of this functionality is provided by [[https:// |
Line 30: | Line 30: | ||
* Ephemeral Keys - if checked, a new key pair is generated for each \\ DNS query. Use this with care, as it's very cpu-intensive, | * Ephemeral Keys - if checked, a new key pair is generated for each \\ DNS query. Use this with care, as it's very cpu-intensive, | ||
- | * Manual Entry - if enabled, 3 more fields | + | * Manual Entry - if enabled, 3 more fields |
- | * Resolver Address - the IP address | + | * Resolver Address - the IP of the dnscrypt-enabled DNS server. |
- | * Provider Name - the name of the DNS provider, | + | * Provider Name - the DNS provider |
- | * Provider Public Key - the public key given by the DNSCRYPT-enabled \\ DNS provider | + | * Provider Public Key - the public key from the DNSCRYPT-enabled \\ DNS provider (to generate a key pair) |
- | * Resolver - a dropdown list currently containung | + | * Resolver - a dropdown list of about 200 DNS servers. |
* Some support DNSSEC. | * Some support DNSSEC. | ||
* Some don't log queries. | * Some don't log queries. | ||
* Some are filtered. | * Some are filtered. | ||
- | * Priority - should be left at // | + | * Priority - should be left at // |
- | * Local Port - the port on which dnscrypt-proxy | + | * Local Port - the port on which dnscrypt-proxy |
| | ||
Line 111: | Line 111: | ||
{{: | {{: | ||
- | **Use internal DNS: | + | **Use internal DNS: |
DHCP clients receive the router' | DHCP clients receive the router' | ||
Line 145: | Line 145: | ||
\\ | \\ | ||
- | **Generate a name for DHCP clients which do not otherwise have one**: if FreshTomato can't find a hostname for a client' | + | **Generate a name for DHCP clients which do not otherwise have one**: if FreshTomato can't find a hostname for a client' |
\\ | \\ | ||
Line 221: | Line 221: | ||
\\ | \\ | ||
- | **Enable DNS Rebind protection: | + | **Enable DNS Rebind protection: |
Using this may have side effects. (Default: Enabled). | Using this may have side effects. (Default: Enabled). | ||
Line 269: | Line 269: | ||
===== DHCP/ | ===== DHCP/ | ||
- | * Do not use results from Cloudflare' | + | Do not use results from Cloudflare' |
- | * DNSSEC and DNSCrypt / Stubby complement each other. | + | |
- | * DNSSEC provides authentication. | + | |
- | * DNSCrypt provides encryption. | + | * DNSCrypt provides encryption. |