Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

asa transparent and dns problem

I'm having a strange issue with an ASA 5520 in transparent mode. DNS inspection drops all requests from my internal dns server to the external dns servers. I also have an ASA5520 in routed mode with DNS inspection enabled in the network and dns inspection on that one allows all the packets that the transparent one drops. The software version is the same.

1 REPLY
Cisco Employee

Re: asa transparent and dns problem

Hi Sergiu,

If you do a 'clear asp drop' on the transparent ASA and then 'show asp drop' several times, which counters appear to be increasing? There should be some listed related to DNS inspection.

You can also check 'show service-policy inspect dns' and enable 'debug inspect dns error' and 'debug inspect dns event' to see if that offers any insight.

-Mike

268
Views
0
Helpful
1
Replies
CreatePlease login to create content