Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

RV042 -am I ready for DNSSEC changes on 5/5/10?

I stumbled across this article about changes in DNS resolution that are effective on 5/5/10 here: http://www.theregister.co.uk/2010/04/13/dnssec/

I then the java tool found on this website here: http://labs.ripe.net/content/testing-your-resolver-dns-reply-size-issues

Sure enough the test fails for me with this error:

"Your resolver was only able to get packets SMALLER than 512 bytes"

The recommended action is adjust my hardware firewall to allow large UDP packets through. My RV042 is my hardware firewall and I cannot see where/how to do that.

Can anyone help please?

3 REPLIES
Cisco Employee

Re: RV042 -am I ready for DNSSEC changes on 5/5/10?

Do you have the MTU size set to 512?  You can adjust this value in the "Firewall" settings such as identified in the attached graphic.

New Member

Re: RV042 -am I ready for DNSSEC changes on 5/5/10?

No. The MTU is set to Auto.

I do not have the MTU option as you had in the screen shot.

I am on the current firmware 1.3.12.19 and I am using both WAN's. Both are set to auto (setup/network).

Cisco Employee

Re: RV042 -am I ready for DNSSEC changes on 5/5/10?

If you have an option in your GUI to set the MTU higher, try setting it to a larger value, say "1500" and see if that makes any difference for you.

690
Views
0
Helpful
3
Replies