09-20-2007 11:54 AM - edited 03-11-2019 04:14 AM
We're having intermittent problems getting to the Internet thru our PIX 515e. I issued the "show conn" command and there are thousands and thousands of DNS connections for our internal DNS server with multiple Internet IP's....should this be the case? Do I need to allow DNS inbound into our network, or should I just need to allow it outbound?
09-20-2007 11:57 AM
if that DNS server is also responsible for your public address space and name resolution, then you need to allow it inbound...otherwise, definitely not. it sounds like the public is using it as their own dns server.
09-20-2007 12:31 PM
Yes, thank you! I had 55,000 connections for my internal DNS server! As soon as I blocked it, all is well! Thanks.
10-23-2007 03:26 PM
can you go into more detail about your dns problem...we are also having DNS issues when thousands of dns translations "clogged" the PIX..and only "clear xlate" solves the issue.
tx
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide