DNS rewrite on multiple interfaces

Unanswered Question
Apr 4th, 2007

I am using DNS rewrite to access my web server:

static (Web,Outside) 63.77.38.7 10.30.10.10 netmask 255.255.255.255 dns

ping testweb.3abn.org

This works on my web interface. How do I access the same web server with DNS rewrite from the other four interfaces?

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
David White Wed, 04/04/2007 - 20:09

What version of code? I believe in 7.x we fixed it so it doesn't matter which interface the client is located off of, the DNS reply will still get fixed up.

In 6.x that is not the case. Therefore, you would have to use the 'alias' command on each interface to resolve the issue.

Sincerely,

David.

franktclark Thu, 04/05/2007 - 09:42

The ASA 5520 is using 7.0(6) so apparently this should work correctly. I am only just completing my initial install so I am not sure if things are set up correctly. In particular I was wondering if I should be running DNS inspection for this to work?

franktclark Thu, 04/05/2007 - 10:37

My guess was correct. DNS inspection does have to be running for this to work. It would be nice if this was documented.

Actions

This Discussion