Question
" Override internal DNS" option for static interfaces?
Hello, We have a problem where we have a site who has two ISPs that do not allow access to their DNS servers from the opposite DNS. What I' d like to do is configure the Fortigate to be the forwarder for our on site DNS Servers, and have the Fortigate forward lookups to external/internet DNS servers configured (one or two per ISP). When I have two dynamically assigned interfaces, then I can use the " Override internal DNS," and the interface that has the route will always use the DNS assigned to it by DHCP/PPPoE. This also works in the instance where I can assign a primary ISPs DNS servers statically within the System/Network/DNS and the backup ISP' s interface to use " Override internal DNS." However, if I have an instance where the primary and secondary ISP interfaces are static, I lose the ability to " fail over" my DNS servers since " Override internal DNS" is not available to static interfaces. How can I solve this problem? Thanks, Matt