Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
zack
New Contributor

EDNS0 - what is the word, is there support

I have recently been trying to troubleshoot dns timeout issues on my network. just to eliminate the chance that it is the firewall causing the issue, what is the word on support for EDNS0 in these fortigates? i can;t seem to find anything in the knowledge base. We are using windows Server 2008 R2 four our DNS servers and they do employ EDNS0. So their packet sizes do exceed the traditional 512b size. Info here: http://technet.microsoft.com/en-us/l.../cc787130.aspx Some firewalls have strict RFC policies. The PIX for example had a fixup command for DNS that forced 512b size for DNS. eDNS broke this. What is the word on the Fortigate?
(2) FortiGate 300A (clustered) 4.2.9 (1) Fortigate 310B 4.2.9 (1) Fortianalyzer 100C 4.2.4
(2) FortiGate 300A (clustered) 4.2.9 (1) Fortigate 310B 4.2.9 (1) Fortianalyzer 100C 4.2.4
1 REPLY 1
emnoc
Esteemed Contributor III

fwiw, You might want to look at the testing that was done by these guys http://cai.icann.org/en/node/715

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Labels
Top Kudoed Authors