DNS Servers not accessible

Posted on 2006-05-16
Last Modified: 2010-04-09
I had an old Symantec Enterprise firewall That is working currently.  It is also acting as our current dns server using sprints dns numbers for the internet dns lookup.  I am trying to switch over to a sonicwall.  This does not act as a dns server.

Under the old configuration I have a win2K server that our pc's point to as the primary dns which forwards to the ip of the firewall.

I tried setting up the new Sonicwall 4100 firewall and one issue was that the dns servers that sprint gives us do not work configured on the firewall interface , but when I put in a public dns server It does work.  

Another issue is that internet access is slow under the new firewall, unless the ipconfig of the client has the gateway configured as the internal firewall address and the dns of an external dns server like not the win2k dns server.

The current gateway configured on the clients, points to the internal router which then forwards it to the firewall. With the old configuration I had the w2k dns server forwarding to the ip of the firewall under the new I have it forwarding (ideally to my sprint dns numbers that don't work) to

I want to get the sprint dns numbers working under the new firewall, I know they work under the old system ( or At least they are defined on the External nic card) I also want to know why it is slow with the new firewall.

Any help would be appreciated

Question by:pmathis
    LVL 4

    Accepted Solution

    If you pull out the forwarder on the Win2k server DNS and your domain does not end in '.', the DNS server should then send requests to the true DNS root servers directly and bypass sprints possibly overload DNS server entirely.

    Ensure though that your root hints are updated and show up in the root hints tab in DNS properties.

    Author Comment

    Thanks for the reply,Since My last message I had been able to get the slow internet access down to a slight delay.  There is still a small slowdown.  Unfortunately I can only test it after hours since I have to keep the old (working) one in place during regular hours.
    I will try your suggestion of pulling the fowarders out.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Looking for New Ways to Advertise?

    Engage with tech pros in our community with native advertising, as a Vendor Expert, and more.

    To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
    The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
    Excel styles will make formatting consistent and let you apply and change formatting faster. In this tutorial, you'll learn how to use Excel's built-in styles, how to modify styles, and how to create your own. You'll also learn how to use your custo…
    In this seventh video of the Xpdf series, we discuss and demonstrate the PDFfonts utility, which lists all the fonts used in a PDF file. It does this via a command line interface, making it suitable for use in programs, scripts, batch files — any pl…

    761 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    15 Experts available now in Live!

    Get 1:1 Help Now