- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
11-29-2023 03:04 PM
Hello all, I think I have pretty easy setup, just having issues getting DNS Proxy to work 100%. My goal is to have all users client device DNS primary to point to the firewall and all queries go to the firewall, then the firewall will send all requests to the primary (192.168.10.10) when online and to secondary (192.168.11.10) when primary is down.
I have a sub interface (example ae1.1 with IP 192.168.1.1/24) on the firewall that users gateway to. I don't have any DNS Proxy Rules or Static Entries configured, and under Advanced, I just have UDP Queries Retries set to 1 second and 1 attempt, and Cache turned off as request from my DNS admin. Then the ae1.1 in the interface list.
The issue I am having is trying to get nslookup to work. If I use the firewall for the nslookup, it just times out. But if I specify the primary DNS server IP in the nslookup (for example: nslookup www.msn.com 192.168.10.10) it works. So the issue is just when trying on the firewall.
Has anyone else experienced this type of behavior?
Any help would be appreciated!
11-30-2023 03:30 PM
Hi @Samtec-Matt ,
Could you explain a little more about how you are trying from the firewall? Are you testing from the CLI? or are you testing from a host that has your ae1.1 as its gateway?
11-30-2023 03:36 PM
Hello @JayGolf , I am testing from a Windows 10 client PC using ae1.1 for the gateway and primary DNS server.
Thanks!
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!