Skip to content

MacOS: "no response" for all queries with VPNΒ #10

@thomasmerz

Description

@thomasmerz

On MacOS in home office I'm getting no response for all queries. For example:

🍎 ✘ [58%] ⚑ πŸŒ±πŸƒπŸ£πŸŒΈ Thomas.Merz@dm-C02CGH01MD6M:~/Downloads [ttys003/2865]
10:19 $ s dnspeep | grep outlook.office365.com
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
AAAA  outlook.office365.com          172.23.104.73        <no response>
A     outlook.office365.com          172.23.104.73        <no response>
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
^C

But both host and nslookup are responding with an IP adress:

🍎 ✘ [58%] ⚑ πŸŒ±πŸƒπŸ£πŸŒΈ Thomas.Merz@dm-C02CGH01MD6M:~/Downloads [ttys003/2866]
10:20 $ host outlook.office365.com
outlook.office365.com is an alias for outlook.ha.office365.com.
outlook.ha.office365.com is an alias for outlook.ms-acdc.office.com.
outlook.ms-acdc.office.com is an alias for FRA-efz.ms-acdc.office.com.
FRA-efz.ms-acdc.office.com has address 52.97.201.114
FRA-efz.ms-acdc.office.com has address 52.97.179.194
FRA-efz.ms-acdc.office.com has address 40.101.121.2
FRA-efz.ms-acdc.office.com has IPv6 address 2603:1026:204::2
FRA-efz.ms-acdc.office.com has IPv6 address 2603:1026:207:14::2
FRA-efz.ms-acdc.office.com has IPv6 address 2603:1026:207:cd::2
🍏 βœ” [58%] ⚑ πŸŒ±πŸƒπŸ£πŸŒΈ Thomas.Merz@dm-C02CGH01MD6M:~/Downloads [ttys003/2867]
10:20 $ nslookup outlook.office365.com
Server:         172.23.104.73
Address:        172.23.104.73#53

Non-authoritative answer:
outlook.office365.com   canonical name = outlook.ha.office365.com.
outlook.ha.office365.com        canonical name = outlook.ms-acdc.office.com.
outlook.ms-acdc.office.com      canonical name = FRA-efz.ms-acdc.office.com.
Name:   FRA-efz.ms-acdc.office.com
Address: 52.97.179.194
Name:   FRA-efz.ms-acdc.office.com
Address: 40.101.121.2
Name:   FRA-efz.ms-acdc.office.com
Address: 52.97.201.114

🍏 βœ” [58%] ⚑ πŸŒ±πŸƒπŸ£πŸŒΈ Thomas.Merz@dm-C02CGH01MD6M:~/Downloads [ttys003/2868]
10:20 $

On my linux client (192.168.42.241) at home I see a good response:

A     outlook.office365.com          192.168.42.241       CNAME: outlook.ha.office365.com, A: 52.98.41.162, A: 52.98.66.210, A: 40.101.146.178, A: 52.98.37.98, A: 40.101.147.114, A: 52.98.89.34, A: 40.101.146.194, A: 52.98.82.210
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
Error parsing DNS packet: Failed to parse DNS packet: query type 65 is invalid
AAAA  outlook.office365.com          192.168.42.241       CNAME: outlook.ha.office365.com, AAAA: 2603:1046:404:15::2, AAAA: 2603:1046:c09:1003::2, AAAA: 2603:1046:c09:1802::2, AAAA: 2603:1046:404:a::2, AAAA: 2603:1046:403::2, AAAA: 2603:1046:c09:1120::2, AAAA: 2603:1046:402:1::2, AAAA: 2603:1046:c09:1804::2

172.23.104.73 is DNS resolver in my home office VPN (Cisco AnyConnect) for my MacOS.

On a linux server at my work I also see a good response with 172.23.104.73 as DNS resolver:

🐧  admin-f6l@tst-thomas-83.lxdev:~$ s ./dnspeep
query name                           server IP            response
A     lxos-monitoring-probe.dm-drogeriemarkt.com 127.0.0.1            A: 172.23.75.243
A     web.de                         172.23.104.73        A: 82.165.230.17, A: 82.165.229.138
AAAA  web.de                         172.23.104.73        NOERROR

Without VPN my local DNS resolvers 192.168.0.1 or 192.168.42.241 (in different home-Wifis) are used on MacOS and responses are good:

CNAME: outlook.office365.com, CNAME: outlook.ha.office365.com, CNAME: outlook.ms-acdc.office.com, CNAME: FRA-efz.ms-acdc.office.com, A: 52.97.135.114, A: 40.101.121.2, A: 40.101.12.34

❓ Is this a general problem related to VPNs?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions