05-27-2008 12:00 PM - edited 03-11-2019 05:50 AM
I can ping, but not resolve names of hosts inside the firewall. I have the following settings:
10.0.0.0/16 Internal
172.16.110.0/24 DMX
static (Internal,DMZ) 10.0.0.0 10.0.0.0 netmask 255.255.0.0
access-list DMZ extended permit tcp host 172.16.110.10 host 10.0.22.205 object-group DNS
access-list DMZ extended permit tcp host 172.16.110.10 host 10.0.22.206 object-group DNS
Can someone please point me into the right direction?
Thanks
05-27-2008 03:13 PM
Did you add udp as well?
Is the acl applied access-group DMZ in interface DMZ?
05-28-2008 04:12 AM
Yes. For some reason, I made a tcp group with port 53 tcp/udp and when I took the tcp out of the group, it works.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide