This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DNS Request Route

My destination is, that all hosts in the domain domain.net is known by my UTM.....

I do not understand the "DNS Request Route". My follwing problem is, that my UTM can not resolve the DNS name, while my Client do. Whats wrong?

 

192.168.x.x is the DNS Server Outside

DNS-Server-T is the DNS Sever Outside (defined Name in Sophos UTM)

172.28.7.x is my UTM

zaiport.domain.net is the name which IP adress i want to resolve

 

It Works!

 

Then I create DNS Request Route in UTM:

domain.net -> 192.168.x.x

 

Now I ask my UTM on my client.

I do not work!!!

 

When I create a static DNS entry in my Sophos

It works!

Whats my Fault??

My destination is, that all hosts in the domain domain.net is known by my UTM.....

Anyone an idea?

 

 

 

 



This thread was automatically locked due to age.
Parents
  • Hallo Michael and welcome to the UTM Community!

    Do the suggestions in DNS best practice work for you?  In addition to the recommended rDNS entry in that document, Request Routes are used for split DNS where devices inside the UTM should get should get different results for domain.com than the outside world.

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi,

    i solved the problem. It causes in a NAT rule ;-)

    I do not consider that the DNS Server i ask for stand in a network with a NAT rule (That shows me a tcpdump tracing). After creating a SNAT Rule for DNS with the interface that route to the network with the DNS Server it works.

    Thank to all.....

Reply
  • Hi,

    i solved the problem. It causes in a NAT rule ;-)

    I do not consider that the DNS Server i ask for stand in a network with a NAT rule (That shows me a tcpdump tracing). After creating a SNAT Rule for DNS with the interface that route to the network with the DNS Server it works.

    Thank to all.....

Children
No Data