DNS leak after upgrade to 16.10
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
openvpn (Ubuntu) |
Expired
|
Undecided
|
Unassigned |
Bug Description
Two different openvpn servers I have tried now have a DNS leak with an Ubuntu 16.10 client. This worked fine for both of these servers with Ubuntu 16.04 clients.
I've edited this to reflect better understanding of the bug. I initially believed it was not redirecting the gateway at all. It turns out that it is correctly redirecting the gateway, and is using the pushed DNS ip. But the DNS being pushed is secondary to the ISP's DNS, which results in a DNS leak. This was not the behavior of openvpn with Ubuntu 16.04.
This may be related to the bug described in this comment: (He describes a "fix" applied to 16.10, which might be the source of the problem.)
https:/
That comment leads to the package below, which may also be the source of the problem:
https:/
edit2: The problem also exists when running openvpn from the command line, so the network manager is not part of the problem.
information type: | Private Security → Public Security |
information type: | Public Security → Public |
description: | updated |
summary: |
- redirect-gateway not working after upgrade to 16.10 + DNS leak after upgrade to 16.10 |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
It might be redirecting the gateway, but not dns queries. In any case, there is a dns leak which could allow a potential dns redirect.