<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Server Issue within network in Cloud Networking Platform</title>
    <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458558#M13472</link>
    <description>&lt;P&gt;yep.  its just in the client's network itself.  There are no firewall rules or anything out of the ordinary.  We can't figure it out.&lt;/P&gt;</description>
    <pubDate>Mon, 17 Oct 2022 20:18:12 GMT</pubDate>
    <dc:creator>jfuller347</dc:creator>
    <dc:date>2022-10-17T20:18:12Z</dc:date>
    <item>
      <title>Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458550#M13464</link>
      <description>&lt;P&gt;nslookup&lt;SPAN&gt; &lt;/SPAN&gt;&lt;A href="http://www.lasercutlawncare.com/" rel="nofollow noreferrer noopener" target="_blank"&gt;www.lasercutlawncare.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;resolves to the correct IP address only when we are not in the office. it shows a different IP when we are behind the firewall. the correct address is 159.203.72.7 but inside the network it resolves to 104.225.8.29 regardless of the DNS server queried. there are no rules on the firewall, and there is no internal network DNS server.&lt;/P&gt;&lt;P&gt;When looking into it further, Meraki stated: As discussed on the call, the wireshark packet capture shows that DNS Query for the mentioned website is reaching to the DNS server and its the server that is responding back from the incorrect IP address i.e., 104.225.8.29 and 104.225.8.28. I have also attached the pcap file for you to investigate further."&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 18:23:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458550#M13464</guid>
      <dc:creator>jfuller347</dc:creator>
      <dc:date>2022-10-17T18:23:47Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458551#M13465</link>
      <description>&lt;P&gt;I agree with Meraki. If the pcap shows that your DNS server did respond to the query with the '&lt;SPAN&gt;104.225.8.29'. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;I would check on the DNS server that is responding to the queries.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 18:26:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458551#M13465</guid>
      <dc:creator>Raphael_L</dc:creator>
      <dc:date>2022-10-17T18:26:03Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458552#M13466</link>
      <description>&lt;P&gt;&lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/82287"&gt;@jfuller347&lt;/A&gt; when you go to a command line and type nslookup, then change the server by typing server 8.8.8.8, what do you get if you then type &lt;A href="http://www.lasercutlawncare.com" target="_blank" rel="nofollow noopener noreferrer"&gt;www.lasercutlawncare.com&lt;/A&gt;? &lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 18:27:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458552#M13466</guid>
      <dc:creator>CMR</dc:creator>
      <dc:date>2022-10-17T18:27:40Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458553#M13467</link>
      <description>&lt;P&gt;So we had changed the DNS to 1.1.1.1 and to 8.8.8.8 in Meraki&amp;gt;&amp;gt;&lt;SPAN&gt;Security &amp;amp; SD-WAN&amp;gt;&amp;gt;Appliance Status&amp;gt;&amp;gt;Tools&amp;gt;&amp;gt;DNS Lookup and still got the discrepancy.  Unfortunately I am not behind the network or can utilize a VPN to test remotely.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:10:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458553#M13467</guid>
      <dc:creator>jfuller347</dc:creator>
      <dc:date>2022-10-17T20:10:18Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458554#M13468</link>
      <description>&lt;P&gt;I replied below to cmr.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:11:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458554#M13468</guid>
      <dc:creator>jfuller347</dc:creator>
      <dc:date>2022-10-17T20:11:03Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458555#M13469</link>
      <description>&lt;P&gt;The packet capture shows 1.1.1.1 / 8.8.8.8 responding to the query ?&lt;/P&gt;&lt;P&gt;On google public dig box : &lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="RaphaelL_0-1666037570678.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/266315i03CFF80F10B983F2/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:12:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458555#M13469</guid>
      <dc:creator>Raphael_L</dc:creator>
      <dc:date>2022-10-17T20:12:58Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458556#M13470</link>
      <description>&lt;P&gt;That's what I get at home too.  However, behind the network of the client it is not what we get.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:15:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458556#M13470</guid>
      <dc:creator>jfuller347</dc:creator>
      <dc:date>2022-10-17T20:15:00Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458557#M13471</link>
      <description>&lt;P&gt;Same here:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cmr_0-1666037795341.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/266316iAD76609ECB4C6D25/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:16:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458557#M13471</guid>
      <dc:creator>CMR</dc:creator>
      <dc:date>2022-10-17T20:16:45Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458558#M13472</link>
      <description>&lt;P&gt;yep.  its just in the client's network itself.  There are no firewall rules or anything out of the ordinary.  We can't figure it out.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:18:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458558#M13472</guid>
      <dc:creator>jfuller347</dc:creator>
      <dc:date>2022-10-17T20:18:12Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458559#M13473</link>
      <description>&lt;P&gt;Have you checked to make sure your ISP isn't doing anything weird with your DNS traffic? &lt;/P&gt;&lt;P&gt;Do you live in a country line China that restricts certain traffic?&lt;/P&gt;</description>
      <pubDate>Mon, 17 Oct 2022 20:22:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458559#M13473</guid>
      <dc:creator>BlakeRichardson</dc:creator>
      <dc:date>2022-10-17T20:22:45Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458560#M13474</link>
      <description>&lt;P&gt;I was thinking of reaching out to the ISP.  It is comcast and in the United States.&lt;/P&gt;</description>
      <pubDate>Tue, 18 Oct 2022 12:56:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458560#M13474</guid>
      <dc:creator>jfuller347</dc:creator>
      <dc:date>2022-10-18T12:56:32Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458561#M13475</link>
      <description>&lt;P&gt;If they have internal DNS servers what forwarders are they using (if any)?&lt;/P&gt;</description>
      <pubDate>Sun, 23 Oct 2022 18:07:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458561#M13475</guid>
      <dc:creator>CMR</dc:creator>
      <dc:date>2022-10-23T18:07:48Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458562#M13476</link>
      <description>&lt;P&gt;As another person said, check with Comcast. I just ran into this on another site: click.skillpreceptor.info. All DNS requests for it to any DNS server are getting intercepted somewhere beyond my router (not even a Meraki), and replaced with the same IP address:&lt;/P&gt;&lt;P&gt;104.225.8.29&lt;BR /&gt;104.225.8.28&lt;/P&gt;&lt;P&gt;Testing with other connections (even Comcast at other sites!) shows the correct IP of 13.110.204.15.&lt;/P&gt;&lt;P&gt;Going to the site in a browser shows a generic block page, and some source investigation shows references to Akamai's Nominum DNS blocking service. So, sounds like Comcast is doing DNS blocking, though not sure I ever asked them to.&lt;/P&gt;&lt;P&gt;On a side note, for your mentioned website, MBAM throws a ransomware warning and blocks it, so clearly there's some kind of website issue going on for multiple security providers to start blocking it.&lt;/P&gt;</description>
      <pubDate>Mon, 31 Oct 2022 18:59:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458562#M13476</guid>
      <dc:creator>DraugTheWhopper</dc:creator>
      <dc:date>2022-10-31T18:59:31Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458563#M13477</link>
      <description>&lt;P&gt;Did you ever figure this out. We are having the exact same issue with the same 2 104.x.x.28 and 29 IPs. For us, its the sites click.mailer.clubhouseonline-e3.com, click.emailcampaigns.net, and trk.cp20.com. They all resolve to the above IPs. If I change the dns servers on my machine, it works. If I leave our internal network, it works. It's been driving me crazy.&lt;/P&gt;</description>
      <pubDate>Sat, 09 Sep 2023 05:35:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458563#M13477</guid>
      <dc:creator>gbutler</dc:creator>
      <dc:date>2023-09-09T05:35:27Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458564#M13478</link>
      <description>&lt;P&gt;Did you ever figure this out? W have the exact same issue currently with the site you posted and another site.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Sep 2023 13:16:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458564#M13478</guid>
      <dc:creator>gbutler</dc:creator>
      <dc:date>2023-09-12T13:16:40Z</dc:date>
    </item>
    <item>
      <title>Re: Server Issue within network</title>
      <link>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458565#M13479</link>
      <description>&lt;P&gt;In our case, we were able to confirm it was Comcast's SecurityEdge feature, and the issues cleared up once we worked with Comcast to disable that.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Sep 2023 21:47:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-networking-platform/server-issue-within-network/m-p/5458565#M13479</guid>
      <dc:creator>DraugTheWhopper</dc:creator>
      <dc:date>2023-09-13T21:47:08Z</dc:date>
    </item>
  </channel>
</rss>

