<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>DNS Forwarders</title><link>https://community.sophos.com/utm-firewall/f/management-networking-logging-and-reporting/33525/dns-forwarders</link><description>I am currently having slow internet connectivity going through the Astaro 320 device, I have tested it not passing through the device and it is much faster set with a specific DNS server used in DNS settings on the pc.  Can I put my internal DNS servers</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113184?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 14:26:32 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:2538fefb-6fcf-4c6c-a773-265f0b943bb9</guid><dc:creator>William Warren</dc:creator><description>it&amp;nbsp;isn&amp;#39;t&amp;nbsp;a&amp;nbsp;law&amp;nbsp;it&amp;nbsp;is&amp;nbsp;a&amp;nbsp;decision&amp;nbsp;by&amp;nbsp;anti-spam&amp;nbsp;providers.&lt;br /&gt;&lt;br /&gt;here&amp;nbsp;is&amp;nbsp;how&amp;nbsp;to&amp;nbsp;get&amp;nbsp;around&amp;nbsp;it&amp;nbsp;and&amp;nbsp;nOT&amp;nbsp;screw&amp;nbsp;up&amp;nbsp;your&amp;nbsp;anti-spam:&lt;br /&gt;&lt;br /&gt;leave&amp;nbsp;everything&amp;nbsp;be&amp;nbsp;in&amp;nbsp;the&amp;nbsp;astaro&amp;nbsp;as&amp;nbsp;i&amp;nbsp;noted&amp;nbsp;above.&lt;br /&gt;inside&amp;nbsp;AD&amp;nbsp;dns&amp;nbsp;change&amp;nbsp;the&amp;nbsp;forwarders&amp;nbsp;to&amp;nbsp;the&amp;nbsp;following:&lt;br /&gt;forwarder&amp;nbsp;number&amp;nbsp;1&amp;nbsp;is&amp;nbsp;faster&amp;nbsp;public&amp;nbsp;dns&amp;nbsp;server&lt;br /&gt;forwarder&amp;nbsp;number&amp;nbsp;2&amp;nbsp;is&amp;nbsp;secdondary&amp;nbsp;faster&amp;nbsp;public&amp;nbsp;dns&amp;nbsp;server&lt;br /&gt;&lt;br /&gt;now&amp;nbsp;you&amp;nbsp;have&amp;nbsp;faster&amp;nbsp;dns&amp;nbsp;for&amp;nbsp;internal&amp;nbsp;and&amp;nbsp;you&amp;nbsp;don&amp;#39;t&amp;nbsp;break&amp;nbsp;anti-spam..[:)]&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113183?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 14:22:48 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:0dbd9ddb-d55a-4eed-bd0d-f2f194885ed4</guid><dc:creator>drahthaar</dc:creator><description>Thank&amp;nbsp;you&amp;nbsp;for&amp;nbsp;the&amp;nbsp;info,&amp;nbsp;&amp;nbsp;I&amp;nbsp;am&amp;nbsp;aware&amp;nbsp;all&amp;nbsp;internal&amp;nbsp;dns&amp;nbsp;should&amp;nbsp;go&amp;nbsp;through&amp;nbsp;AD&amp;nbsp;or&amp;nbsp;I&amp;nbsp;won&amp;#39;t&amp;nbsp;have&amp;nbsp;any&amp;nbsp;network&amp;nbsp;browsing,&amp;nbsp;printers,&amp;nbsp;etc.&lt;br /&gt;&lt;br /&gt;I&amp;nbsp;did&amp;nbsp;not&amp;nbsp;however&amp;nbsp;know&amp;nbsp;that&amp;nbsp;I&amp;nbsp;would&amp;nbsp;be&amp;nbsp;breaking&amp;nbsp;any&amp;nbsp;laws&amp;nbsp;by&amp;nbsp;using&amp;nbsp;a&amp;nbsp;public&amp;nbsp;dns&amp;nbsp;server&amp;nbsp;in&amp;nbsp;place&amp;nbsp;of&amp;nbsp;my&amp;nbsp;ISP&amp;nbsp;dns&amp;nbsp;server.&lt;br /&gt;&lt;br /&gt;I&amp;nbsp;will&amp;nbsp;probably&amp;nbsp;leave&amp;nbsp;well&amp;nbsp;enough&amp;nbsp;alone.&amp;nbsp;&amp;nbsp;The&amp;nbsp;ISP&amp;nbsp;are&amp;nbsp;just&amp;nbsp;slow&amp;nbsp;and&amp;nbsp;I&amp;nbsp;will&amp;nbsp;live&amp;nbsp;with&amp;nbsp;it.&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113182?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 14:13:17 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:4dab4faa-904e-4fa0-aa3e-18a96d2d3e37</guid><dc:creator>William Warren</dc:creator><description>if&amp;nbsp;you&amp;nbsp;AD&amp;nbsp;is&amp;nbsp;doing&amp;nbsp;dns&amp;nbsp;slower&amp;nbsp;then&amp;nbsp;EVERYTHING&amp;nbsp;is&amp;nbsp;going&amp;nbsp;to&amp;nbsp;slow&amp;nbsp;down&amp;nbsp;not&amp;nbsp;just&amp;nbsp;external.&amp;nbsp;&amp;nbsp;Is&amp;nbsp;your&amp;nbsp;AD&amp;nbsp;server&amp;nbsp;overloaded?&lt;br /&gt;&lt;br /&gt;as&amp;nbsp;to&amp;nbsp;your&amp;nbsp;AD&amp;nbsp;dns&amp;nbsp;configuration....that&amp;nbsp;solution&amp;nbsp;works&amp;nbsp;as&amp;nbsp;long&amp;nbsp;as&amp;nbsp;you&amp;nbsp;do&amp;nbsp;NOT&amp;nbsp;use&amp;nbsp;public&amp;nbsp;dns&amp;nbsp;in&amp;nbsp;the&amp;nbsp;astaro&amp;nbsp;dns&amp;nbsp;forwarder&amp;nbsp;section..use&amp;nbsp;your&amp;nbsp;isp&amp;nbsp;dns&amp;nbsp;there...otherwsie&amp;nbsp;you&amp;nbsp;break&amp;nbsp;anti-spam.&amp;nbsp;&amp;nbsp;allow&amp;nbsp;me&amp;nbsp;to&amp;nbsp;detail:&lt;br /&gt;network&amp;nbsp;services---dns&lt;br /&gt;global&amp;nbsp;tab...have&amp;nbsp;the&amp;nbsp;internal&amp;nbsp;(network)&amp;nbsp;in&amp;nbsp;there&amp;nbsp;save&amp;nbsp;changes&lt;br /&gt;forwarders&amp;nbsp;tab:&amp;nbsp;put&amp;nbsp;your&amp;nbsp;isp&amp;nbsp;dns&amp;nbsp;servers&amp;nbsp;in&amp;nbsp;here&amp;nbsp;save&amp;nbsp;changes&lt;br /&gt;Request&amp;nbsp;routing&amp;nbsp;tab:&amp;nbsp;new&amp;nbsp;dns&amp;nbsp;request&amp;nbsp;route&amp;nbsp;button....domain:&amp;nbsp;AD&amp;nbsp;internal&amp;nbsp;name&amp;nbsp;here(mine&amp;nbsp;is&amp;nbsp;ecc.local)&amp;nbsp;&amp;nbsp;in&amp;nbsp;target&amp;nbsp;server&amp;nbsp;create&amp;nbsp;a&amp;nbsp;network&amp;nbsp;host&amp;nbsp;definition&amp;nbsp;for&amp;nbsp;your&amp;nbsp;ad&amp;nbsp;server&amp;nbsp;in&amp;nbsp;here(if&amp;nbsp;you&amp;nbsp;have&amp;nbsp;not&amp;nbsp;already&amp;nbsp;done&amp;nbsp;so)&amp;nbsp;click&amp;nbsp;save.&lt;br /&gt;&lt;br /&gt;Done..[:)]&lt;br /&gt;&lt;br /&gt;&amp;nbsp;if&amp;nbsp;your&amp;nbsp;AD&amp;nbsp;is&amp;nbsp;really&amp;nbsp;slowing&amp;nbsp;you&amp;nbsp;down&amp;nbsp;you&amp;nbsp;really&amp;nbsp;should&amp;nbsp;figure&amp;nbsp;out&amp;nbsp;why&amp;nbsp;that&amp;nbsp;is&amp;nbsp;happening.&amp;nbsp;&amp;nbsp;ALL&amp;nbsp;internal&amp;nbsp;dns&amp;nbsp;needs&amp;nbsp;to&amp;nbsp;go&amp;nbsp;through&amp;nbsp;the&amp;nbsp;AD&amp;nbsp;server&amp;nbsp;or&amp;nbsp;the&amp;nbsp;workstations&amp;nbsp;are&amp;nbsp;going&amp;nbsp;to&amp;nbsp;have&amp;nbsp;all&amp;nbsp;kinds&amp;nbsp;of&amp;nbsp;&amp;quot;interesting&amp;quot;&amp;nbsp;problems.&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113181?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 13:53:07 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:fe5eda09-4a32-4550-ab81-d84f844bab5e</guid><dc:creator>drahthaar</dc:creator><description>I&amp;nbsp;think&amp;nbsp;the&amp;nbsp;issue&amp;nbsp;is&amp;nbsp;that&amp;nbsp;my&amp;nbsp;internal&amp;nbsp;DC&amp;nbsp;is&amp;nbsp;slower&amp;nbsp;than&amp;nbsp;the&amp;nbsp;astaro&amp;nbsp;at&amp;nbsp;routing&amp;nbsp;dns.&lt;br /&gt;&lt;br /&gt;I&amp;nbsp;would&amp;nbsp;like&amp;nbsp;my&amp;nbsp;DC&amp;nbsp;to&amp;nbsp;still&amp;nbsp;route&amp;nbsp;internal,&amp;nbsp;but&amp;nbsp;I&amp;nbsp;don&amp;#39;t&amp;nbsp;want&amp;nbsp;it&amp;nbsp;routing&amp;nbsp;external&amp;nbsp;dns&amp;nbsp;request.&amp;nbsp;&amp;nbsp;I&amp;nbsp;think&amp;nbsp;the&amp;nbsp;ASG&amp;nbsp;320&amp;nbsp;would&amp;nbsp;handle&amp;nbsp;that&amp;nbsp;better.&lt;br /&gt;&lt;br /&gt;So&amp;nbsp;if&amp;nbsp;I&amp;nbsp;read&amp;nbsp;your&amp;nbsp;solution&amp;nbsp;correctly,&amp;nbsp;&amp;nbsp;I&amp;nbsp;would&amp;nbsp;set&amp;nbsp;the&amp;nbsp;dns&amp;nbsp;forwarder&amp;nbsp;on&amp;nbsp;the&amp;nbsp;AD&amp;nbsp;server&amp;nbsp;to&amp;nbsp;point&amp;nbsp;to&amp;nbsp;the&amp;nbsp;Astaro,&amp;nbsp;&amp;nbsp;then&amp;nbsp;I&amp;nbsp;would&amp;nbsp;let&amp;nbsp;the&amp;nbsp;Astaro&amp;nbsp;route&amp;nbsp;external&amp;nbsp;dns&amp;nbsp;traffic,&amp;nbsp;based&amp;nbsp;on&amp;nbsp;dns&amp;nbsp;servers&amp;nbsp;I&amp;nbsp;specify&amp;nbsp;in&amp;nbsp;the&amp;nbsp;forwarders&amp;nbsp;tab.&amp;nbsp;&lt;br /&gt;&lt;br /&gt;I&amp;nbsp;would&amp;nbsp;accomplish&amp;nbsp;this&amp;nbsp;by&amp;nbsp;routing&amp;nbsp;in&amp;nbsp;the&amp;nbsp;Astaro?&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113180?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 13:44:07 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:d264bf0d-bbab-47e9-82d9-2a1aac3e9476</guid><dc:creator>William Warren</dc:creator><description>ok&amp;nbsp;then&amp;nbsp;here&amp;#39;s&amp;nbsp;how&amp;nbsp;it&amp;nbsp;is&amp;nbsp;best&amp;nbsp;to&amp;nbsp;set&amp;nbsp;it&amp;nbsp;up&lt;br /&gt;&lt;br /&gt;set&amp;nbsp;astaro&amp;nbsp;dns&amp;nbsp;forwarders&amp;nbsp;to&amp;nbsp;isp&amp;nbsp;dns...then&amp;nbsp;use&amp;nbsp;dns&amp;nbsp;routing&amp;nbsp;tab&amp;nbsp;to&amp;nbsp;reroute&amp;nbsp;ad&amp;nbsp;requests&amp;nbsp;BACK&amp;nbsp;to&amp;nbsp;the&amp;nbsp;AD&amp;nbsp;server.&amp;nbsp;&amp;nbsp;Have&amp;nbsp;the&amp;nbsp;AD&amp;nbsp;server&amp;nbsp;use&amp;nbsp;the&amp;nbsp;faster&amp;nbsp;dns&amp;nbsp;as&amp;nbsp;it&amp;#39;s&amp;nbsp;primary&amp;nbsp;and&amp;nbsp;secondary&amp;nbsp;dns&amp;nbsp;and&amp;nbsp;have&amp;nbsp;it&amp;nbsp;use&amp;nbsp;the&amp;nbsp;astaro&amp;nbsp;as&amp;nbsp;the&amp;nbsp;third&amp;nbsp;dns.&amp;nbsp;&amp;nbsp;This&amp;nbsp;way&amp;nbsp;AD&amp;nbsp;will&amp;nbsp;route&amp;nbsp;internal&amp;nbsp;dns&amp;nbsp;correctly&amp;nbsp;and&amp;nbsp;bypass&amp;nbsp;the&amp;nbsp;astaro(and&amp;nbsp;slower&amp;nbsp;isp&amp;nbsp;dns).&amp;nbsp;&amp;nbsp;Only&amp;nbsp;if&amp;nbsp;faster&amp;nbsp;dns&amp;nbsp;fails&amp;nbsp;will&amp;nbsp;it&amp;nbsp;fall&amp;nbsp;back&amp;nbsp;to&amp;nbsp;the&amp;nbsp;asg...[:)]&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113179?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 13:41:08 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:f1a07e13-e1dc-4f1c-aad8-f85351d3719b</guid><dc:creator>drahthaar</dc:creator><description>Sorry,&amp;nbsp;should&amp;nbsp;have&amp;nbsp;stated&amp;nbsp;that&amp;nbsp;up&amp;nbsp;front,&amp;nbsp;&amp;nbsp;yes&amp;nbsp;this&amp;nbsp;is&amp;nbsp;an&amp;nbsp;AD&amp;nbsp;environment.&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: DNS Forwarders</title><link>https://community.sophos.com/thread/113178?ContentTypeID=1</link><pubDate>Wed, 04 Jan 2012 13:39:09 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:629dae4d-b4af-4af7-a084-fc40763e8c42</guid><dc:creator>William Warren</dc:creator><description>depends...do&amp;nbsp;you&amp;nbsp;ahve&amp;nbsp;an&amp;nbsp;active&amp;nbsp;directory,&amp;nbsp;ldap.&amp;nbsp;or&amp;nbsp;some&amp;nbsp;other&amp;nbsp;kind&amp;nbsp;of&amp;nbsp;network&amp;nbsp;server&amp;nbsp;in&amp;nbsp;your&amp;nbsp;network?&amp;nbsp;&amp;nbsp;if&amp;nbsp;not&amp;nbsp;then&amp;nbsp;here&amp;#39;s&amp;nbsp;another&amp;nbsp;questions:.&amp;nbsp;&amp;nbsp;are&amp;nbsp;you&amp;nbsp;using&amp;nbsp;hte&amp;nbsp;anti&amp;nbsp;spam&amp;nbsp;features&amp;nbsp;of&amp;nbsp;the&amp;nbsp;firewall?&amp;nbsp;&amp;nbsp;if&amp;nbsp;so&amp;nbsp;then&amp;nbsp;no..use&amp;nbsp;the&amp;nbsp;isp&amp;nbsp;dns&amp;nbsp;servers&amp;nbsp;for&amp;nbsp;the&amp;nbsp;firewall.&amp;nbsp;&amp;nbsp;if&amp;nbsp;you&amp;nbsp;have&amp;nbsp;a&amp;nbsp;home&amp;nbsp;network&amp;nbsp;and&amp;nbsp;are&amp;nbsp;only&amp;nbsp;using&amp;nbsp;the&amp;nbsp;firewall&amp;nbsp;for&amp;nbsp;dns&amp;nbsp;AND&amp;nbsp;NOT&amp;nbsp;using&amp;nbsp;antispam&amp;nbsp;on&amp;nbsp;the&amp;nbsp;firewal&amp;nbsp;then&amp;nbsp;you&amp;nbsp;can&amp;nbsp;put&amp;nbsp;public&amp;nbsp;dns&amp;nbsp;into&amp;nbsp;the&amp;nbsp;forwarders.&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>