Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Only Sophos DDNS (Dynamic DNS) Issue

After reading a lot of DDNS-posting about a mixture of Sophos and other DDNS-providers, I will focus on ONLY Sophos as default DDNS-Service. If you're satisfied you can also like this discussion.

Imho the manuals and help in XG is not perfect, so here quite a few things which you should know and which hopefully helps you to save some time.

 

1.) Where can I find DDNS?

Section CONFIGURE > Network > Dynamic DNS

2.) What should be entered?

"<HOSTNAME>.myfirewall.co" is the only way that works.

3.) What means "Hostname"?

HOSTNAME ist your device-hostname which you can find under Section SYSTEM > Administration > Admin Settings > Hostname, which is by default your device-ID/SN (for example, looks like: C020024GXBHM5F3)

4.) Can't enter my entry because XG says "DDNS Service in currently unavailable" - And now?

So here it goes a little bit crazy, maybe it's a bug and maybe a Sophos-engineer can fix or explain it.

4.1) Although the manual says "NATed Public IP" which is logical for the most cases with a router in front of your XG, take "Use Port IP" first.

I was also surprised, that the feedback was positive (DDNS account 'xxxxx.myfirewall.co' has been created successfully)

OoooK, IP was updated, DNS lookup for the hostname returns my internal IP "192.168.x.x"... Nice! :D

Btw after some investigations I found out, that the DNS service runs in the AWS cloud, so you can test the DNS lookup with their AWS-DNS like "ns-1407.awsdns-47.org" without a shorter  delay, because it's DNS ;)

4.2) After that you can change the IPv4 address setting back and you get the confirmation "DDNS account 'xxxxx.myfirewall.co' has been updated successfully".

And also the public IP shows the NAT- or public-IP. 

Check it out and reply if it works or not!

 

Notice:

* You can't make a lookup for the domain "myfirewall.co". Their are no A/AAAA-Records.

* If DDNS works generally, the update itself fails several times, as you can see in your logs.

 

Yours,

Chris



This thread was automatically locked due to age.
Parents
  • Hi Chris,

    Being updated, I like the choice. Now, the answer for question 1 & 2 is yes. Hostname- Specify a name to identify the host that you want to use on the DDNS server. For example: xyz.myfirewall.co.

    Question-4:

    Take SSH to XG and go to option 5. > 3. Advance Shell and execute, "service -S | grep dn", verify whether the dnsd and fqdnd services are running.

    Go to, System> Administration> Device Access> make sure DNS service box is checked for WAN and LAN/DMZ (server located)

    Let me know if that helps.

    Thanks

  • Hi Sachin,

     

    I also use the Sophos DDNS provider and my servicse (dnsd and fqdnd) are running, but the automatic renewal (every 20 minutes) fails!

    In Network -> Dynamic DNS under Failure Reason stands DDNS service unavailable.

    In the log viewer DDNS update for host xyz.myfirewall.co was Failed. Last Updated with IP: xxx.xxx.xxx.xxx. Failure Reason: DDNS service unavailable.

     

    If I go to Network -> Dynamic DNS open my DDNS entry and save again, then everything works fine and I get a SUCCESS status.

    Next renewal: same problem :-/

     

    Any idea?

     

    Thanks in advance for your help.

     

    Cheers,

     

    Markus

Reply
  • Hi Sachin,

     

    I also use the Sophos DDNS provider and my servicse (dnsd and fqdnd) are running, but the automatic renewal (every 20 minutes) fails!

    In Network -> Dynamic DNS under Failure Reason stands DDNS service unavailable.

    In the log viewer DDNS update for host xyz.myfirewall.co was Failed. Last Updated with IP: xxx.xxx.xxx.xxx. Failure Reason: DDNS service unavailable.

     

    If I go to Network -> Dynamic DNS open my DDNS entry and save again, then everything works fine and I get a SUCCESS status.

    Next renewal: same problem :-/

     

    Any idea?

     

    Thanks in advance for your help.

     

    Cheers,

     

    Markus

Children