Solved

ASA 5510 acting as a DNS proxy

Posted on 2009-04-01
3
2,102 Views
Last Modified: 2012-06-21
We used to havea firewall that acted as a DNS proxy. We replaced it with a Cisco ASA 5510 that does not have this set up. Now, our webserver is having issues sending meail from teh DMZ because it has no DNS server to use.

Is there a way to set up a DNS proxy on the ASA 5510?
0
Comment
Question by:amydnaz
  • 2
3 Comments
 
LVL 12

Expert Comment

by:Alan3285
ID: 24046323
Hi,

This may be missing the point, but why not point the webserver at a DNS server?

You could give it OpenDNS (for example):

208.67.222.222
208.67.220.220

Hope that helps,

Alan.
0
 

Author Comment

by:amydnaz
ID: 24052094
That didn't work. I'm stumped as to why we can't seem to get the webserver to recognize DNS.
0
 
LVL 12

Accepted Solution

by:
Alan3285 earned 500 total points
ID: 24054418
Hi,

I am working on the assumption at this point that the DNS settings in the Webserver are pointing at OpenDNS.

Is the webserver connecting to anything outside at all?

What if you attempt a direct connection to, say, www.cnn.com at:

157.166.224.25

Can you connect from a web browser (if there is one on the webserver), or via telnet:

telnet 157.166.224.25 80

If so, what do you get using, say something like, NSLOOKUP on the webserver?  What is showing as the default resolver, and what is its IP address?

Thanks,

Alan.
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Video by: Mark
This lesson goes over how to construct ordered and unordered lists and how to create hyperlinks.

867 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now