Why I can't receive DNS responses from Firewall?

Zyxel_James
Posts: 788
Guru Member





in Networking
Question
I have created an address record on firewall such as "host.domain.com, IP address=x.x.x.x". However, I can't receive any response from Firewall when I query yahoo.com.
Answer
This is a design limitation on current ZLD design.
For example, host is a part of the hostname, and domain.com is a part of the domain name.
When you create an address record such as "host.domain.com", Firewall would consider itself to own the domain zone "domain.com", so when the host queries "domain.com", Firewall won't ask for the extender DNS server, therefore, Firewall won't respond to the query.
The solution is that you can create an additional address record for domain.com, for example, "domain.com, IP = 2.2.2.2"
0
Categories
- All Categories
- 439 Beta Program
- 2.7K Nebula
- 191 Nebula Ideas
- 121 Nebula Status and Incidents
- 6.2K Security
- 468 USG FLEX H Series
- 308 Security Ideas
- 1.6K Switch
- 82 Switch Ideas
- 1.3K Wireless
- 44 Wireless Ideas
- 6.8K Consumer Product
- 281 Service & License
- 440 News and Release
- 88 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 93 Security Highlight