# Many requests to "lb.\_dns-sd.\_udp.0.1.168.192.in-addr.arpa"

**URL:** <https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241>\
**Category:** Help\
**Created:** [March 11, 2019, 1:00am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241 "2019-03-11T01:00:43Z")\
**Posts on this page:** 13\
**Page:** 1

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 11, 2019, 1:00am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/1 "2019-03-11T01:00:43Z")

</div>

#### Please follow the below template, it will help us to help you!

## Expected Behaviour:

I should not be seeing requests to lb.\_dns-sd.\_udp.0.1.168.192.in-addr.arpa

## Actual Behaviour:

I'm seeing lots of requests to lb.\_dns-sd.\_udp.0.1.168.192.in-addr.arpa

This is running on a DD-WRT Router. My setup is as follows:

 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/6/66c5d995dda99e32fe21ba85dd7371ddf3849bb2.png)  
 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/4/438ebf50914876701615b4ecf4d5bd09f84d28cb.png)  
I have DHCP Option 6 set so that I can see which clients are querying what...  
 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/f/fd9c375f95a38d401a7ff35a64e0a11535723644.png)

 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/6/60f6e10988f1488efcaf3ee76f7d5ae432348116.png)

 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/2/264d0c9ccbd42465e1a04dea77ac9b81cadbaf47.png)

I'm pretty sure this has to do with my iptables forced dns redirection. As you can probably see:  
Router IP: 192.168.1.1  
Subnet: 255.255.255.0  
Pi-hole IP: 192.168.1.4

Other Networks  
192.168.10.0/24 (No Pi-hole as DNS)

What can I do in the GUI or iptables to stop these requests? I assume they should be going to the router, not from the router to Pi-hole.

Any Help Would be Appreciated!

---

<div class="post-metadata">

**Author:** ![jfb](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jfb/32/4332_2.png) [@jfb](https://discourse.pi-hole.net/u/jfb)\
**Post date:** [March 11, 2019, 1:10am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/2 "2019-03-11T01:10:35Z")

</div>

If you have conditional forwarding enabled in Pi-Hole, then de-select this option and see if that reduces the frequency of requests.

The requests are for DNS Discovery Service, commonly associated with the Bonjour network protocol.

---

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 11, 2019, 1:21am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/3 "2019-03-11T01:21:52Z")

</div>

Thanks, I'll try that!

---

<div class="post-metadata">

**Author:** ![jfb](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jfb/32/4332_2.png) [@jfb](https://discourse.pi-hole.net/u/jfb)\
**Post date:** [March 11, 2019, 1:30am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/4 "2019-03-11T01:30:10Z")

</div>

> [@jaykepeters](#):
>
> I should not be seeing requests to lb.\_dns-sd.\_udp.0.1.168.192.in-addr.arpa

Note that this is normal network traffic. Example from a Pi-Hole running on my network (127 is a Mac Mini, 130 is a MacBook Air, 140 is a Win7 PC, 126 is an iPhone 6S, 125 is an iPad Pro).

```
sudo grep lb._dns-sd._udp.0 /var/log/pihole.log | grep query | tail -n20
Mar 10 13:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 13:49:16 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.130
Mar 10 14:40:03 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.140
Mar 10 14:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 15:40:03 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.140
Mar 10 15:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 15:50:06 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.130
Mar 10 16:23:58 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.126
Mar 10 16:39:57 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.140
Mar 10 16:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 17:21:29 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.125
Mar 10 17:39:46 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.140
Mar 10 17:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 17:50:56 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.130
Mar 10 18:38:54 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.140
Mar 10 18:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 19:38:54 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.140
Mar 10 19:49:13 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127
Mar 10 19:51:46 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.130
Mar 10 20:28:38 dnsmasq[500]: query[PTR] lb._dns-sd._udp.0.0.168.192.in-addr.arpa from 192.168.0.127

```

---

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 11, 2019, 1:34am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/5 "2019-03-11T01:34:36Z")

</div>

I would assume, but why is it flooding Pi-hole?

---

<div class="post-metadata">

**Author:** ![jfb](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jfb/32/4332_2.png) [@jfb](https://discourse.pi-hole.net/u/jfb)\
**Post date:** [March 11, 2019, 1:36am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/6 "2019-03-11T01:36:08Z")

</div>

It's flooding Pi-Hole because you likely have a loop between Pi-Hole and your router. This is commonly caused by having conditional forwarding enabled.

---

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 11, 2019, 1:51am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/7 "2019-03-11T01:51:27Z")

</div>

> [@jfb](#):
>
> It’s flooding Pi-Hole because you likely have a loop between Pi-Hole and your router. This is commonly caused by having conditional forwarding enabled.

Is there a way in iptables to fix this?

---

<div class="post-metadata">

**Author:** ![jfb](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jfb/32/4332_2.png) [@jfb](https://discourse.pi-hole.net/u/jfb)\
**Post date:** [March 11, 2019, 1:52am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/8 "2019-03-11T01:52:24Z")

</div>

I don't know. I don't use iptables to re-direct traffic.

---

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 11, 2019, 2:08am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/9 "2019-03-11T02:08:56Z")

</div>

Is there an alternate method to do this?

---

<div class="post-metadata">

**Author:** ![jfb](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jfb/32/4332_2.png) [@jfb](https://discourse.pi-hole.net/u/jfb)\
**Post date:** [March 11, 2019, 2:15am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/10 "2019-03-11T02:15:55Z")

</div>

Do you have conditional forwarding enabled?

---

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 11, 2019, 2:58am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/11 "2019-03-11T02:58:17Z")

</div>

Not anymore. I disabled it and reanabled it, flushed the logs and not seeing it again...

---

<div class="post-metadata">

**Author:** ![jaykepeters](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/jaykepeters/32/8960_2.png) [@jaykepeters](https://discourse.pi-hole.net/u/jaykepeters)\
**Post date:** [March 12, 2019, 4:08am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/12 "2019-03-12T04:08:20Z")

</div>

First, I specified my Upstream servers in the router, kept the IPTables rules and then I did this:

 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/7/751c445e0b473b92a8291103ec21e3cadbe7e1bf.png)  
 ![image](https://discourse.pi-hole.net/uploads/default/original/2X/4/4295d891a5f983c5111dae419adeb75ab4a3231e.png)

No more requests!

I am happy now 😉

---

<div class="post-metadata">

**Author:** ![system](https://discourse.pi-hole.net/uploads/default/original/3X/7/c/7c8792f649eeb921c5d2b4c41564ffa873d9a2b8.png) [@system](https://discourse.pi-hole.net/u/system)\
**Post date:** [April 2, 2019, 4:08am UTC](https://discourse.pi-hole.net/t/many-requests-to-lb-dns-sd-udp-0-1-168-192-in-addr-arpa/18241/13 "2019-04-02T04:08:21Z")

</div>

This topic was automatically closed 21 days after the last reply. New replies are no longer allowed.
