I have the same issue with DNS server Status broken. Below is the summary with what I have done:
I have a main router pfsense that is connected to the optical modem. If I connect the ipfire to the pfsense the ipfire can browse the internet without any issue. However, if I connect the ipfire directly to the modem, any devices connected to the ipfire can not browse the internet. Checking the ipfire it did get the public ip address, gateway, and dns from the isp provider. However pinging the assigned gateway and the dns by the isp, it failed. I tried using the google dns 8.8.8.8 for testing still it failed. “rDNS = Reverse lookup failed” I tried re-installing it and still the same issue. I am using ipfire 2.27 core update 162.
I found this error in the log: “Jan 18 11:24:49 ipfire unbound: [13479:0] error: SERVFAIL <localdomain.localdomain. A IN>: all the configured stub or forward servers failed, at zone . no server to query nameserver addresses not usable have no nameserver names”
This the hardware:
PC engine APU
3 NIC Realtek
mSata drive
2G RAM
It says" can’t connect to 9.9.9.9@853(TCP);
It looks like the firewall is not letting any outbound. the ipfire itself can not ping the gateway, dns nameservers, host unreachable.
I tried both of the DNS servers and they did not work for me. Maybe because I am located in the US. The error is: connection timed out; no servers could be reached
MBP:~ jcm$ dig @75.153.176.1 ipfire.org
; <<>> DiG 9.16.12 <<>> @75.153.176.1 ipfire.org
; (1 server found)
;; global options: +cmd
;; connection timed out; no servers could be reached
MBP:~ jcm$ dig @75.153.176.9 ipfire.org
; <<>> DiG 9.16.12 <<>> @75.153.176.9 ipfire.org
; (1 server found)
;; global options: +cmd
;; connection timed out; no servers could be reached
MBP:~ jcm$ dig @8.8.8.8 ipfire.org
; <<>> DiG 9.16.12 <<>> @8.8.8.8 ipfire.org
; (1 server found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 43346
;; flags: qr rd ra ad; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;ipfire.org. IN A
;; ANSWER SECTION:
ipfire.org. 21600 IN A 81.3.27.38
;; Query time: 434 msec
;; SERVER: 8.8.8.8#53(8.8.8.8)
;; WHEN: Tue Jan 18 20:44:45 CST 2022
;; MSG SIZE rcvd: 55
I dont think you will be able to use the provided dns by my isp, it is only those who are subscribe to them. Those ip addresses that belongs to their public ip address allotment are the only ones that can use those dns nameserver.
My modem (a Arris Cable Modem) must be unplugged and restarted when connecting to a new device (like a different firewall). If I connect without the power-down & up, then I cannot connect to the Internet.