Description | This article describes that Local DNS records do resolve but Non-local DNS records do not resolve. |
Scope | Users should resolve only on the local database, it should not send the request to the system DNS if there are no records found in the local database. |
Solution |
DNS configuration on the firewall.
# config system dns-databas
# config system dns-serve
Now the user can only resolve the local DNS records and Non-local records do not resolve.
C:\Users\fortinet>nslookup > fgt.demo.com Name: fgt.demo.com
> google.com *** UnKnown can't find google.com: Non-existent domain |
Labels: