Core 203: DNS Firewall blocks auth.docker.io by default

As the heading says, auth.docker.io appears to be blocked by the DNS Firewall preventing logging into the docker hub (through the docker login command). If you add auth.docker.io to “Allowed domains” of the DNS Firewall everything works.

The issue is the DNS Firewall user interface does not indicate it is blocked.

Hi @sbeaman welcome to the IPFire community.

The whitelisting on the DNS page could be allowing something that is being blocked from other parts of the IPFire system.

The DNS Firewall only has the entries in the various zone files for each of the categories.

Disable all the DNS categories and remove the whitelisting entry and save the status on that page.

Then try again. If it is still being blocked then it is not being blocked by the DNS Firewall.

I would then suggest disabling the IPS, if you have that enabled and again trying it.

If still occurring then disable the fast flux and selectively announced networks in the web proxy, if you have those enabled.

Basically disable each of the parts that could be filtering it out until it works. Then you know the part that is causing the problem.

If, for instance, it is the IPS then look in the IPS logs to see the message, which should indicate which ruleset is dropping the traffic.

Hello,

you can use the search on the IPFire DBL website and check if a domain is blocked on any category. It looks like auth.docker.io has never been blocked on any of them: