NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW-1] DNS not working


  • To: [email protected]
  • Subject: Re: [FW-1] DNS not working
  • From: Marcelo Ribeiro <[email protected]>
  • Date: Thu, 18 Sep 2003 08:55:36 -0300
  • Reply-to: Mailing list for discussion of Firewall-1 <[email protected]>
  • Sender: Mailing list for discussion of Firewall-1 <[email protected]>
  • Thread-index: AcN92s1lD4dGg8+ISQqqWLeblvTIDQAAJjbQ
  • Thread-topic: [FW-1] DNS not working

You can enable the "accept domain name over udp" and check which implied rules will be added on rulebase.

 This can help you to solve the problem.

-----Original Message-----
From: siva prasad [mailto:[email protected]]
Sent: Thursday, September 18, 2003 08:37 AM
To: [email protected]
Subject: [FW-1] DNS not working


Hi there,

We are facing a peculiar problem.

We are running NG FP3 on solaris and running an internal DNS server and any
quiries which not resolved by this will forward to the ISP DNS.

The problem is that, if we uncheck the option of "Accept domain name over
UDP (quiries)" and if we add a rule above the my internet surfing rule,
it's not resolving. The rule like this.

Internal_DNS            any     domainudp       accept log
lan_segment             any     domainudp       accpet log


if we check the option "accept domain name over UDP" then some unwanted
sites also it's resolving based on rule 0.

How to prevent this.


----------
Siva Prasad K.
Network Consultant
Micro United Network Pte Ltd
Ph: +65-65470560
Fax: +65-65470561
HP: +65-98507956

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.