03-01-2007 01:28 PM - edited 03-11-2019 02:40 AM
I have a pix firewall (515e) and a windows computer on the DMZ that has it's default DNS pointing to a server on the inside allowing connection to key computers on the inside. I need to connect to the internet from this DMZ computer as well on the outside but unfortunately I can't resolve any URL's. Any ideas? thanks!
03-02-2007 11:42 AM
...I'm at 7
03-02-2007 11:46 AM
So, everything works fine but you can't get to the internet? Are these windows machines? Do you know how to do an nslookup?
03-02-2007 11:50 AM
Yes, I've run nslookup. When my dns is set for the outside I can resolve any url. when my dns is set for the inside nslookup can't find url (which makes sense).
03-02-2007 11:52 AM
Why would that make sense, you are pointing to an inside dns server?
03-16-2007 10:44 AM
A couple of things.
While not nessicarily secure (as the above list is not) you can add this and it should fix your problem...
access-list dmz_access_in extended permit tcp any any eq domain
access-list dmz_access_in extended permit udp any any eq domain
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide