Description
This article describes about DNS service proxy mode Non-Recursive on FortiExtender.
When DNS service is on Non-Recursive mode, FortiExtender interface firstly query local public DNS database. If no naming resolution in local public DNS database, the DNS query will return response without naming resolution.
Scope
FortiExtender DNS proxy service in Non-Recursive mode.
Solution
1) On FortiExtender go to Networking - > DNS Servers.
2) Create DNS Service with Non-Recursive mode.
3) On CLI, check DNS proxy service.
4) On CLI, check DNS server in DNS server pool.
5) On client, send DNS request. If the request has naming resolution in public DNS database.
6) On FortiExtender, DNS log message displays the processing on Non-Recursive mode.
7) On client, send DNS request. If the request has NO naming resolution in public DNS database, DNS query will return empty (No Naming Resolution Response).
8) On FortiExtender, Debug log message shows the sequence of DNS processing in Non-Recursive mode.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.