Why I can't receive DNS responses from Firewall?

Zyxel_James
Posts: 759
Zyxel Employee





in Networking
Question
I have created an address record on firewall such as "host.domain.com, IP address=x.x.x.x". However, I can't receive any response from Firewall when I query yahoo.com.
Answer
This is a design limitation on current ZLD design.
For example, host is a part of the hostname, and domain.com is a part of the domain name.
When you create an address record such as "host.domain.com", Firewall would consider itself to own the domain zone "domain.com", so when the host queries "domain.com", Firewall won't ask for the extender DNS server, therefore, Firewall won't respond to the query.
The solution is that you can create an additional address record for domain.com, for example, "domain.com, IP = 2.2.2.2"
0
Categories
- All Categories
- 431 Beta Program
- 2.6K Nebula
- 170 Nebula Ideas
- 114 Nebula Status and Incidents
- 6K Security
- 385 USG FLEX H Series
- 294 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.7K Consumer Product
- 267 Service & License
- 412 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.9K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 83 Security Highlight