Clients can not resolve DNS names Behind Firewall

Hi,

I have a problem joining a server in my DMZ zone to the domain . my configuration is as follows:

LAN : has windows 2008R2 DC with DNS service up and running
DMZ : has windows 2008R2 server configured to point to Windows 2008 R2 DC as it's DNS server
the firewall between them is Cisco ASA , I opened all ports from DMZ to Internal (for testing)
I can ping the DNS , but I can not resolve any DNS names .
I attached a schematic diagram illustrate my scenario
any suggestion ??
DNS-Issue.pdf
emiahmadAsked:
Who is Participating?

[Webinar] Streamline your web hosting managementRegister Today

x
 
Prashant ShrivastavaConnect With a Mentor Solutions ArchitectCommented:
Have you allowed port number 53 (TCP UDP both) between servers (client to server)?
0
 
Craig BeckCommented:
You'll need to open those ports both ways.  The traffic is UDP, so you have to allow traffic back from the server to the DMZ too.
0
All Courses

From novice to tech pro — start learning today.