This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Block DNS-Resolving to internal DNS from Guest Network

Hello,


we got a guestnetwork in separate VLAN in our company using utm as gateway to the internet.

Internet access in guestnetwork is realised with transparent proxy.

The utm also acts in guestVLAN as dhcp and dns server.

Communication between guest and productive network is not allowed and works fine so far.

My problem is, that dns requests to internal hosts from guestnetwork are beeing resolved through the utm.

For example if i ping a hostname in productive network pc001.xyz.lan from a device in guestnetwork, the request is forwarded from utm to our internal dns-server.

The communication to this device is blocked, but the dns resolving still works :(

Configuration:

NetworkServices->DNS-> Global: Allowed Networks = GuestNetwork

NetworkServices->DNS-> Forwardes =  puplic DNS Servers from Telekom Germany (Currently assigned forwardes shows the puplic + internal DNS-Servers)

NetworkServices->DNS->RequestRouting = Domain: xyz.lan , Target Servers: our internal DNS Servers

Is it possible to forward dns requests form guestnetwork only to the puplic dns servers and not to my internal?

Thanks for any reply and regards

Andreas



This thread was automatically locked due to age.
Parents Reply
  • I had to configure Uplink Balancing first, to get this multipath rule working.

    I configured my WAN-interface as active and my CONFIG-interface as standby interface in Uplink-Balancing for testing.

    Then i configured the multipathrule, as you mentioned.

    Unfortunately this is not working :( dns resolving to internal dns still works from guestnetwork.

Children
No Data