Skip to main content
Attanasio
New Member
February 14, 2024
Question

high latency on DNS Server

  • February 14, 2024
  • 1 reply
  • 2290 views

Good Morning, I have a latency problem on the DNS server and DNS filter server I believe the IPs indicated are the default ones. I inherited this configuration. How can I solve it 

FortiGate - FGT60-NESMAIN .png

 FortiGate - FGT60 2.jpg

 

My model is Fortigate60e,

 

 

Thank you

1 reply

smaruvala
Staff
Staff
February 14, 2024

Hi,

 

- From the screenshot I think most of the DNS queries will got second DNS server.  You can just move your mouse on the value to see when was the last time it was updated.  

 

- The DNS query latency is based on when FortiGate system DNS sends a query, which will be record the time sent. When a query response is received, the time received will also be recorded.

 

Starting from firmware version 7.0 onwards, the 'Use FortiGuard Servers' DNS will be using the DNS over TLS by default, but some of the site will be having high latency even unreachable to FortiGuard DNS.

 

- You can change it to cleartext as well if you need it.

# config system dns
    set protocol cleartext  <----- Default is dot(DNS over TLS).

end

 

 

Regards,

Shiva

 

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.