DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

Vigor Draytek 2927 - ignoring a secondary DNS for DHCP Clients

  • Jonathan
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
15 Mar 2026 10:17 #106146 by Jonathan
Hi all

On my Draytek Vigor 2927 LAN1 I have the DNS set to 1.0.0.1 and 1.1.1.1 - I then have "Force router to use "DNS server IP" settings specified in: LAN1" so the router effectively uses 1.0.0.1 and 1.1.1.1 rather than my ISP DNS.

The problem is I  have my network VLAN'ed.  So LAN 2 clients pick up an IP of 10.7.32.x and a local DNS IP of 10.7.0.150 - this is a virtual IP that points to two Pi's running Keepalived HA

But when I look at clients DNS IPs it reads

Primary DNS: 10.7.0.150
Secondary DNS: 1.0.0.1

Is there a way to solve this?  Or is it a case of setting both DNS's on VLAN Subnet LAN2 to 10.7.0.150?

Screenshots below

[img



Please Log in or Create an account to join the conversation.

More
16 Mar 2026 10:25 - 16 Mar 2026 10:29 #106151 by markhawkin
I’ve a similar multiple VLAN setup and the VLAN2 has nothing in the DNS server IP address box.

However that’s without a local DNS server.

If LAN2 clients should use local DNS then the same settings in both boxes sounds likely.
Last edit: 16 Mar 2026 10:29 by markhawkin.

Please Log in or Create an account to join the conversation.

  • Jonathan
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
16 Mar 2026 20:05 #106157 by Jonathan
Hi

Out of interest, what DNS server IP's are you pulling?  Are they defaulting to your ISP DNS?

Please Log in or Create an account to join the conversation.

More
16 Mar 2026 20:53 #106158 by markhawkin
I use OpenDNS.

I like it for both logging and blocking.

It also seems extremely reliable.

Please Log in or Create an account to join the conversation.

More
18 Mar 2026 10:37 - 18 Mar 2026 10:48 #106167 by Armin

Hi all

On my Draytek Vigor 2927 LAN1 I have the DNS set to 1.0.0.1 and 1.1.1.1 - I then have "Force router to use "DNS server IP" settings specified in: LAN1" so the router effectively uses 1.0.0.1 and 1.1.1.1 rather than my ISP DNS.

The problem is I  have my network VLAN'ed.  So LAN 2 clients pick up an IP of 10.7.32.x and a local DNS IP of 10.7.0.150 - this is a virtual IP that points to two Pi's running Keepalived HA

But when I look at clients DNS IPs it reads

Primary DNS: 10.7.0.150
Secondary DNS: 1.0.0.1

Is there a way to solve this?  Or is it a case of setting both DNS's on VLAN Subnet LAN2 to 10.7.0.150?

Screenshots below

[img


 

Why don´t you set Cloudflare/ OpenDNS  at WAN and Pi-Hole as Primary & Secondary for LAN (check Subnet Mask)?
Anyone encountered the problem that IPv6 DNS-Servers are propagated to DHCP-Clients (even if only IPv4 is used)?  
Last edit: 18 Mar 2026 10:48 by Armin.

Please Log in or Create an account to join the conversation.

  • Jonathan
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
18 Mar 2026 14:51 #106169 by Jonathan

Why don´t you set Cloudflare/ OpenDNS  at WAN and Pi-Hole as Primary & Secondary for LAN (check Subnet Mask)?



 
Hi Armin,

I don't think you can actually set the DNS at WAN level on the 2927 unless I'm doing it wrong?  Hence why I force the router to use Cloudflare on LAN1 and tick "Force router to use "DNS server IP address" settings specified in LAN1" then the WAN side uses the DNS specified in LAN1.

https://ibb.co/F4zgGh3s


 

Please Log in or Create an account to join the conversation.

Moderators: Admin3Christopher