Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Only Sophos DDNS (Dynamic DNS) Issue

After reading a lot of DDNS-posting about a mixture of Sophos and other DDNS-providers, I will focus on ONLY Sophos as default DDNS-Service. If you're satisfied you can also like this discussion.

Imho the manuals and help in XG is not perfect, so here quite a few things which you should know and which hopefully helps you to save some time.

 

1.) Where can I find DDNS?

Section CONFIGURE > Network > Dynamic DNS

2.) What should be entered?

"<HOSTNAME>.myfirewall.co" is the only way that works.

3.) What means "Hostname"?

HOSTNAME ist your device-hostname which you can find under Section SYSTEM > Administration > Admin Settings > Hostname, which is by default your device-ID/SN (for example, looks like: C020024GXBHM5F3)

4.) Can't enter my entry because XG says "DDNS Service in currently unavailable" - And now?

So here it goes a little bit crazy, maybe it's a bug and maybe a Sophos-engineer can fix or explain it.

4.1) Although the manual says "NATed Public IP" which is logical for the most cases with a router in front of your XG, take "Use Port IP" first.

I was also surprised, that the feedback was positive (DDNS account 'xxxxx.myfirewall.co' has been created successfully)

OoooK, IP was updated, DNS lookup for the hostname returns my internal IP "192.168.x.x"... Nice! :D

Btw after some investigations I found out, that the DNS service runs in the AWS cloud, so you can test the DNS lookup with their AWS-DNS like "ns-1407.awsdns-47.org" without a shorter  delay, because it's DNS ;)

4.2) After that you can change the IPv4 address setting back and you get the confirmation "DDNS account 'xxxxx.myfirewall.co' has been updated successfully".

And also the public IP shows the NAT- or public-IP. 

Check it out and reply if it works or not!

 

Notice:

* You can't make a lookup for the domain "myfirewall.co". Their are no A/AAAA-Records.

* If DDNS works generally, the update itself fails several times, as you can see in your logs.

 

Yours,

Chris



This thread was automatically locked due to age.
Parents Reply Children