Link to home
Start Free TrialLog in
Avatar of emiahmad
emiahmadFlag for Saudi Arabia

asked on

Clients can not resolve DNS names Behind Firewall

Hi,

I have a problem joining a server in my DMZ zone to the domain . my configuration is as follows:

LAN : has windows 2008R2 DC with DNS service up and running
DMZ : has windows 2008R2 server configured to point to Windows 2008 R2 DC as it's DNS server
the firewall between them is Cisco ASA , I opened all ports from DMZ to Internal (for testing)
I can ping the DNS , but I can not resolve any DNS names .
I attached a schematic diagram illustrate my scenario
any suggestion ??
DNS-Issue.pdf
ASKER CERTIFIED SOLUTION
Avatar of Prashant Shrivastava
Prashant Shrivastava
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
You'll need to open those ports both ways.  The traffic is UDP, so you have to allow traffic back from the server to the DMZ too.