Why I can't receive DNS responses from Firewall?

Options
Zyxel_James
Zyxel_James Posts: 624  Zyxel Employee
First Anniversary 10 Comments Friend Collector First Answer

Question
I have created an address record on firewall such as "host.domain.com, IP address=x.x.x.x". However, I can't receive any response from Firewall when I query yahoo.com.

Answer
This is a design limitation on current ZLD design.
For example, host is a part of the hostname, and domain.com is a part of the domain name.
When you create an address record such as "host.domain.com", Firewall would consider itself to own the domain zone "domain.com", so when the host queries "domain.com", Firewall won't ask for the extender DNS server, therefore, Firewall won't respond to the query.

The solution is that you can create an additional address record for domain.com, for example, "domain.com, IP = 2.2.2.2"