troubleshooting dns resolution

Newbie892100 Posted 18 May 2020 19:34


On an already configuring fw, today I got problems resolving url, It seems port 53 is blocked and LAN clients are not able to resolve URLs.

In order to debug the issue If I configured a SNAT permitting all protocols from LAN to WAN zone and I'm trying to verify directly form the firewall

However, When I go to System > Troubleshooting > Tools and issue a traceroute command,
the command is successfull when I use an ip adress (which means connection is up)

if I use an url the command fails

Sangfor_Brando Posted 19 May 2020 10:11
Hi sir, if you have created a case in community regarding this issue, you can follow up with Sangfor Technical Support via email and they will assist you on this issue. Thanks!
addimasqi Posted 20 May 2020 22:39
on the side of your LAN in what DNS IP settings did you enter?
public DNS or private DNS?
if public DNS maybe you must check the role on application control, is there any blocked/denied rule for DNS?

