<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Problem with DNS, it seems that FW is blocked from output by PDC</title><link>https://community.sophos.com/sophos-xg-firewall/f/discussions/130467/problem-with-dns-it-seems-that-fw-is-blocked-from-output-by-pdc</link><description>Hello, I have the following scenario replace my firewall (pfsense) by sophos xg firewall and I have the following problem in the DNS part. I use as PDC+BDC Zentyal + Sophos XG as firewall and DHCP Server, after migration my machines only browse if I leave</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Problem with DNS, it seems that FW is blocked from output by PDC</title><link>https://community.sophos.com/thread/479489?ContentTypeID=1</link><pubDate>Wed, 06 Oct 2021 17:52:27 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:8b4edf0a-178f-43c5-8d30-e6597a09cd3a</guid><dc:creator>JulioCP</dc:creator><description>&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;Not in both, neither the PDC and the BDC forward DNS requests to the Firewall, neither in the configuration of the network card nor as forwarders.&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt; &lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;Firewall for PDC and BDC only receives requests as a gateway.&lt;/span&gt;&lt;/span&gt; &lt;span&gt;&lt;span&gt;The only firewall reference in them is to be the gateway to the network itself.&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt; &lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;For the functionality of Active Directory in Samba the DNS has to be that of the PDC.&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt; &lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;And I think the Firewall is blocking DNS requests that come from the PDC or DBC (internal network)&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem with DNS, it seems that FW is blocked from output by PDC</title><link>https://community.sophos.com/thread/479306?ContentTypeID=1</link><pubDate>Mon, 04 Oct 2021 20:19:06 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:b16ed3ea-46fd-4798-9dd6-f51733ed057f</guid><dc:creator>JulioCP</dc:creator><description>&lt;p&gt;Ok, yes my english is from google in some cases. Follow the dashboard in english. I from Brazil - rsrsrsrsr&lt;/p&gt;
&lt;p&gt;Using &lt;span style="color:#3592d2;"&gt;SFOS 18.0.5 MR-5-Build586&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;img alt=" " src="/resized-image/__size/640x480/__key/communityserver-discussions-components-files/126/pastedimage1633378741713v1.png" /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem with DNS, it seems that FW is blocked from output by PDC</title><link>https://community.sophos.com/thread/479288?ContentTypeID=1</link><pubDate>Mon, 04 Oct 2021 18:08:26 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:9a467eac-6600-469c-975f-b29d09380e65</guid><dc:creator>PhilippRusch</dc:creator><description>&lt;p&gt;Julio,&lt;/p&gt;
&lt;p&gt;my spanish (or is this portugese=?) is a bit rusty: encaminhadores does mean &amp;quot;router&amp;quot; in english.&lt;/p&gt;
&lt;p&gt;So you are defining a gateway here. That&amp;#39;s not what you want, when defining DNS.&lt;br /&gt;You need DNS-Forwarders (redirecionamento) to tell your internal DNS, when and how to connect to a public DNS.&lt;/p&gt;
&lt;p&gt;Can you switch your Zentyal GUI to english for a moment?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem with DNS, it seems that FW is blocked from output by PDC</title><link>https://community.sophos.com/thread/479281?ContentTypeID=1</link><pubDate>Mon, 04 Oct 2021 16:38:04 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:2e09dee8-92f3-410e-90ef-7039dab20c24</guid><dc:creator>JulioCP</dc:creator><description>&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;Dear Philipp the DNS in the forwarders I&amp;#39;m using external (google, cloudfire, etc) .&lt;/span&gt;&lt;/span&gt; &lt;span&gt;&lt;span&gt;My FW Sophos is another IP address (192.168.1.254)&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;img src="/resized-image/__size/640x480/__key/communityserver-discussions-components-files/126/pastedimage1633365447832v1.png" alt=" " /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem with DNS, it seems that FW is blocked from output by PDC</title><link>https://community.sophos.com/thread/479276?ContentTypeID=1</link><pubDate>Mon, 04 Oct 2021 15:00:41 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:4921064e-e6d3-4fb1-8f27-9e7b2245955b</guid><dc:creator>PhilippRusch</dc:creator><description>&lt;p&gt;Ola Julio,&lt;/p&gt;
&lt;p&gt;are you forwarding DNS-Requests from your PDC or BDC to the firewall?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>