That should be it .. If that doesn't work, then we need to troubleshoot. Can you put a computer on the outside of your firewall with a fixed IP address, and the IP address of the only DNS server set to the IP address on your firewall - the firewall that you have configured to forward port 53? After you do that, try pinging any of the host names in your DNS database and see if a number gets resolved.