we have an issue in our DNS could be from fortigate, could be the traffic route not define correctly. The Scenario is
we have 2 ISP connections both are directly connected to Fortigate 100D version 5.4.5.1138. server subnet going to DIA link and PC subnet going to DSL link. but pcs are getting DNS from AD server. now the problem is i cannot access MSN, DHL and Turkishairline sites unless i use 8.8.8.8 or DSL gateway IP.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Add your ISP DNS in Forwarders(you find this option in DNS of doamin controller).
Actually the problem solved. as i explained i have 2 ISP so the pc traffic going through DSL and server traffic to DIA and in domain controller Forwarder configure for DIA DNS. which may be conflict. what i did i add DSL gateway as a Forwarder and create policy in fortinet under DSL interface so domain controller traffic can go through the same link where i need traffic.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.