LW4 0 Posted ... When connecting to an airvpn server, if the tun0 address gets assigned to 10.4.0.179.5, should the nameserver in resolv.conf be 10.4.0.1 or 10.4.179.1? Quote Share this post Link to post
Staff 9972 Posted ... Hello! It's 10.4.0.1. It is reachable from any other subnet, even in Generation 2 servers, where subnets are smaller (/24) and unique for each server, port and protocol (a modification which makes multi-homing much simpler). Alternatively, consider to accept the DNS push from the server, if possible. Accepting the DNS push has a relevant advantage: it makes attacks based on DNS hijacking through route injection impossible, because the default VPN gateway address matches the DNS server address. Kind regards Quote Share this post Link to post