Skip to main content
kelsi_rentschler
New Member
January 27, 2020
Question

GSLB behind MS DNS

  • January 27, 2020
  • 1 reply
  • 2831 views

We are implementing new FortiADCs at two sites, mainly for various apps to use GSLB.  We have DNS on Windows Servers and want to keep it that way and are trying to figure out the best way to point clients to the ADCs.  What has worked best for everyone else?

We have kicked around a new zone with a conditional forwarder, but we have quite a bit of ssl and we would have to redo the certificates with new SNs, so that's not ideal.

I'm thinking a single DNS record like apps.internaldomain.local pointing to the ADC might work best instead of the zone and then the ADC do the rest of the work.  Are there any caveats that I'm not thinking of?   

    1 reply

    kelsi_rentschler
    New Member
    January 27, 2020

    If anyone else needs help with this, found a great article;

     

    https://www.carlstalhood.com/global-server-load-balancing-gslb-netscaler-12/#dnsdelegation

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!