Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PIX 506e and DNS forwarding...

Status
Not open for further replies.
May 1, 2001
447
US
I just wanted to make sure that this is supposed to be this way.

I have my 506e PIX configured to PAT from the inside to the outside. They both have static addresses assigned with no DHCP options.

I thought there should be a place to configure DNS for the outside address using the PDM software (my CLI is a little shaky right now since I'm new to Cisco commands), but there isn't.

With my Active Directory environment, I can only get name resolution and let my clients access HTTP and mail when I have my ISP's DNS addresses as a forwarder in DNS on the server. Otherwise there is no resolution for web sites or mail.

Should this be, and is it the correct way to do this? On my last firewall (velociraptor), DNS was entered on the interface and I just had to point a forwarder to the inside interface.

Thanks for any help.

J.R.
 
Your DNS server should be set up to either resolve external hosts using by querying the root DNS servers or by sending recursive DNS requests to a forwarder (ie. your ISP DNS server(s)). Nothing needs to be configured on the Pix to do this.

Chris.

**********************
Chris A.C, CCNA, CCSA
**********************
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top