Link to home
Start Free TrialLog in
Avatar of kumarsundaram
kumarsundaramFlag for Canada

asked on

DNS between DMZ and local network

hi all,

I have a AD integrated DNS for my private network (192.168.x.x). Additionally I have a web server on my DMZ with ip 10.x.x.x. I have setup a staic host "A" record on my DNS pointing to the web server. So, I have no problem accessing the web server by it's name from my 192.168.x.x network.
However, from my web server I am not able to access any computer by its name that's on the 192.168.x.x network.

Having said that, on my web server the IP is configured as 10.x.x.x (with appropriate subnet and gateway). The primary DNS server is my ISP's address and there is no secondary defined. Of course, I tried pointing  the secondary DNS server address to my DNS server on 192.168.x.x and it did not help me to access any computers by its name.

Can someone please help me on how I can go about to accomplish the above task?

FYI: I am able to ping between two network without any problems. The routing is all setup and working fine.
Avatar of Chris Dent
Chris Dent
Flag of United Kingdom of Great Britain and Northern Ireland image


You'd have to point it at the internal DNS server (as Preferred).

Then to resolve by name along you would need to add either a Primary DNS Suffix or a DNS Suffix Search List to the web server. Otherwise, you're limited to getting names in the form host.domain.com.

Chris
Avatar of kumarsundaram

ASKER

I have tried pointing to the internal DNS as I mentioned before. On the web server, The preferred is currently set to ISP's DNS and for the alternate I tried putting in 192.168.x.x (the internal DNS server IP).

However, it did not solve my problem. Are you saying that I should set the preferred DNS to my local DNS and use ISP's DNS as the alternate?
ASKER CERTIFIED SOLUTION
Avatar of Chris Dent
Chris Dent
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial