<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic dns doctoring in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dns-doctoring/m-p/1833297#M489593</link>
    <description>&lt;P&gt;is it possible to intercept a dns lookup on a dmz and direct it to an internal server.&lt;/P&gt;&lt;P&gt;I have a wireless controller for guest access on a dmz. to authenticate, the wireless controller intercepts the first get syn and redirects it to a guest manager on the inside. I dont have a dns server on the dmz and dont want to use the inside dns server. the ISP will not allow a private address on their dns server so I need a way of redirecting the first get syn to the guest manager for authentication. once authenticated the traffic will use the ISP dns for web traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd appreciate any help&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 22:09:16 GMT</pubDate>
    <dc:creator>michael18</dc:creator>
    <dc:date>2019-03-11T22:09:16Z</dc:date>
    <item>
      <title>dns doctoring</title>
      <link>https://community.cisco.com/t5/network-security/dns-doctoring/m-p/1833297#M489593</link>
      <description>&lt;P&gt;is it possible to intercept a dns lookup on a dmz and direct it to an internal server.&lt;/P&gt;&lt;P&gt;I have a wireless controller for guest access on a dmz. to authenticate, the wireless controller intercepts the first get syn and redirects it to a guest manager on the inside. I dont have a dns server on the dmz and dont want to use the inside dns server. the ISP will not allow a private address on their dns server so I need a way of redirecting the first get syn to the guest manager for authentication. once authenticated the traffic will use the ISP dns for web traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd appreciate any help&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:09:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dns-doctoring/m-p/1833297#M489593</guid>
      <dc:creator>michael18</dc:creator>
      <dc:date>2019-03-11T22:09:16Z</dc:date>
    </item>
    <item>
      <title>Re: dns doctoring</title>
      <link>https://community.cisco.com/t5/network-security/dns-doctoring/m-p/1833298#M489597</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you're providing guest access can't you just give them a publicly available dns server?  Try 8.8.8.8&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Jan 2012 22:50:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dns-doctoring/m-p/1833298#M489597</guid>
      <dc:creator>Jeff Van Houten</dc:creator>
      <dc:date>2012-01-02T22:50:37Z</dc:date>
    </item>
  </channel>
</rss>

