This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Using internal DNS (AD) for RED connected clients.

Greetings:

  I have a RED 15 connected to an SG135w.  Most everything seems to be working ok.

Remote client can surf internet.  Connect to Remote Desktops.  Avaya IP 1608-I phone connects with no modifications from "internal" config. required.

The missing component is DNS.  I can ping our internal hosts but cannot resolve their hostnames.  I can connect to Intranet webpages via entering an IP

address but  not via the server's hostname (so links won't work).

Config as follows:

RED:

Uplink Mode: DHCP Client

Operation Mode: Standard Unified
--------------------------------------------

DHCP:

Interface: dany-QC    

Range start:         192.168.2.128            
Range end:         192.168.2.254    
DNS server 1:        192.168.2.99    
DNS server 2:            
Default gateway:    192.168.2.99        
Domain:            
Lease time:        86400        
Comment:        Auto-created by RED    
Advanced        
--------------------------------------------

I have the "dany-QC" & "Internal" networks listed in the Network Services > DNS > Allowed Networks > Global window.  Would clearing either (or both) of these solve the problem?

Also have a masq. rule allowing dany-QC -> External.

Tried adding our AD server's IP as both "DNS Server 1"  & "DNS Server 2" and an "ipconfig" on the remote client showed that the config had been accepted.

But still can't resolve internal hostnames.  I've read many posts and they all seem to suggest different approaches (bridging, etc).  I've also noticed that many of the

Sophos docs tell you to "Do this thingy...." but don't go into detail or point to another doc where that is covered, and that some of the terminology is outdated (referring to the "Network Security" option in WebAdmin - Network Protection?)

Is there yet another firewall / NAT rule I need to enter for DNS to work?

Tks...



This thread was automatically locked due to age.
  • Please tell us how your configurations compare to DNS best practice.  Also, insert a picture of the settings on the 'Advanced' tab of Remote Access.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA