I've set up reverse DNS for our network, and Sophos (being the primary DNS) has the correct forwarding to our network DC (which holds the reverse records).
Now most of the time the UTM logs (be it actual logs, information in the flow monitor or the iftop command) show the clients using their DNS names. However... not always. Some keep showing up as IPs, but there are reverse DNS records for these IPs (I can run a manual nslookup command for them to get the names without any issues).
What could be the issue?
PS. Running a HOST <IP> command from the CLI also works fine, so I know the UTM can resolve those IPs!
This thread was automatically locked due to age.