Make a PayPal Donation


  KB 0000029
  Dated 08/04/09
  Revision 0.01
   
Enable DNS Lookup on the Cisco PIX\ASA
 
Problem

 

You need the ASA to be able to resolve external hostname's.

 

Solution

Note: In this example I'm using 122.122.122.199 and 122.122.122.198 (yes, they cannot exist!)as the external DNS addresses, substitute your own.

1. Whilst in enable mode > enter configure terminal mode, then enable DNS Lookups.

CiscoASA#conf t
CiscoASA(config)# dns domain-lookup Outside

2. Then specify the external DNS Servers (Change IP addresses appropriately).

CiscoASA(config)# dns server-group DefaultDNS
CiscoASA(config-dns-server-group)# name-server 122.122.122.199
CiscoASA(config-dns-server-group)# name-server 122.122.122.198
CiscoASA(config-dns-server-group)# exit

3. Test it by pinging a name/URL.

CiscoASA(config)# ping www.petenetlive.com
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 123.123.123.123, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 70/84/110 ms
CiscoASA(config)#


 

If this post helped you, PLEASE take the time to +1 it.

Please be aware, all information is provided free, but it does cost me to have this site hosted, if I've helped you in any way, or saved you some time/cost please take time to make a donation.

If you have anything to add to an article, or have an article you would like us to publish please feel free to contact PeteNetLive. (Please be aware I get a LOT of email, I cannot assist and fix everyone's problems, please do not be offended if you do not get a response).

References - Credits - Or External Links
NA

 


powered by
Socialbar