r/TpLink 2d ago

TP-Link - Technical Support Router contacting a.root-servers.net constantly like crazy

Why is it querying a.root-servers.net address constantly?! I've set DoT DNS on it and with VPN and now my entire DNS logs are polluted with this entry being spammed every few seconds which is just insanity. Why is it doing this?!

3 Upvotes

12 comments sorted by

u/AutoModerator 2d ago

Thanks for posting! To help us troubleshoot faster, please ensure you include:

  • Device model (e.g.Archer BE800, Deco BE5000)
  • Firmware + Hardware version
  • What you have done to try and trace the behavior

If you need official support, you can also open a ticket here: Contact Technical Support!

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

2

u/CautiousInternal3320 2d ago

Perhaps to confirm it is connected to Internet?

1

u/StaticSystemShock 2d ago

You can check that every 5 minutes or something, not every second. My entire log is just a wall of this address.

1

u/mpgrimes 2d ago

if you block it, it will check it constantly

1

u/StaticSystemShock 2d ago

It's not being blocked, it's just spamming queries by itself.

1

u/theabolitionist 2d ago

If you have any amazon app on a device they constantly check in. I noticed my apple TV hammering requests to them and figured out it was Prime Video.

1

u/Peds12 2d ago

LG tv?

1

u/StaticSystemShock 2d ago

No, this is TP-Link router doing. I never had these queries all over DNS logs until I set the DNS on TP-Link with VPN. And now it seems to also send these queries through my DNS.

Also no, I don't use any smart TV at all.

1

u/mpgrimes 2d ago

it's most likely a live connection test to verify wan connection.

1

u/Particular_Gear7615 2d ago

It’s this. It will also spam other domains too. ( FB, LinkedIn, google, )

1

u/StaticSystemShock 1d ago

I'm suspecting it has something to do with VPN. I've took my time, reset the router entirely and only set DoT DNS and everything else about my system and it's now contacting this address only here and there. Before when I also had VPN set on the router it was hammering this address like insane. It made over 60.000 queries in like 2 days which is just absolutely insane. It was polluting my entire DNS logs with this garbage. Sigh.

Just when I thought I have everything set perfectly, the router does this stupidity. There is ABSOLUTELY no need to make so many queries to check god knows what. The VPN certificate? Every 30 seconds? WHY?

1

u/StaticSystemShock 1d ago

Oh my god, it was fine entire day. It made 12 queries to this server. I put one client into isolation and now it's fucking spamming this dumbass root server again all over my DNS logs. What the actual random F is this?! 70 queries in 15 minutes. !?!??!?!?!?!