Technical Tip: How to Verify DNS Root Server and Authoritative Name Server IP Information in a FortiGate
| Description | This article provides information on how to verify the root name servers and authoritative name server details that a FortiGate device learns while performing DNS lookups as a DNS resolver. |
| Scope | FortiGate V7.6. |
| Solution | To get the details of the root name servers that your FortiGate is aware of, execute the following command in the FortiGate CLI:
diagnose test application dnsproxy 19
diagnose test application dnsproxy
Example output:
The command will display a list of the 13 root name servers' cache, their IP addresses, and authoritative name servers learned while performing the recursive DNS lookup for the client. The output will look similar to this:
worker idx: 0 name=. label_count=0 ns_count=13 |
