[Dnsmasq-discuss] dnsmasq stable bug report

dnsmasq at riseup.net dnsmasq at riseup.net
Thu Mar 31 00:00:25 UTC 2022


> The reason it's like this is that if dnsmasq changed to unprivileged 
> action would fail if the port number was less than 1024

Look at the bug report again - its port is above 1024.

Without 'query-port=' your software always open way too many ports
(above 1024), and those conections are always made by dnsmasq user.

With 'query-port' the UDP connection was made by only this port, but
those connections are NOT MADE by dnsmasq user.

How could this is NOT A BUG!?

Using Debian's stable btw



> you lose source-port randomisation,

There is a option and I am using it.



More information about the Dnsmasq-discuss mailing list