There’s still the problem that if you have Active Directory systems and they need to access DNS, the DNS servers must be accessible to everyone. If you restrict access via groups, it’s no longer accessible.
Has anyone heard anything about this being fixed in the self-hosted version?
What if you create a group for ALL with the DNS servers inside of them? That way anyone who has a client to connect with NetBird also has the DNS server.
I’ll test that. But wouldn’t that mean all the clients would be able to reach each other?
Not if you set a rule, ALL → DNS (53). Instead of allowing EVERYONE to contact EVERYONE. You should only allow EVERYONE to reach the DNS server.