<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX and Inside DNS server in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16581#M725756</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hv an internal network of 10.10.X.X in Local.&lt;/P&gt;&lt;P&gt;i hv nated Nat (inside) 1 0 0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i hv webserver which is nated and local ip is 10.10.1.135.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My Local DNS server ip is 10.10.3.150. ..can i just add  Nat (inside) 0 10.10.3.150 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;is it possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I dont hv DMZ at right now...Is it not possible to Place DNS in INSIDE?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am using WINDOWS 2000 Advanced Server for DNS&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 22 Feb 2002 10:52:55 GMT</pubDate>
    <dc:creator>rajankumaresan</dc:creator>
    <dc:date>2002-02-22T10:52:55Z</dc:date>
    <item>
      <title>PIX and Inside DNS server</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16579#M725719</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Everything fine when DNS is Outside.If i place a DNS in INSIDE, i cant able to even browse and does not reslove.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have enabled fixup protocol domain 53, static mapped, access-list for UDP configured..&lt;/P&gt;&lt;P&gt;where i am wrong?.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using alias command for my INSIDE Webservers..do i need to remove alias and check?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pls help......&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 05:59:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16579#M725719</guid>
      <dc:creator>rajankumaresan</dc:creator>
      <dc:date>2020-02-21T05:59:14Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Inside DNS server</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16580#M725740</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Rajan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First - disable fixup DNS that's not for your scenario.&lt;/P&gt;&lt;P&gt;Second - your DNS server should not be NATed, or it'll be definitely non-authoritative and "possibly" lame.&lt;/P&gt;&lt;P&gt;Place it on DMZ and use "nat 0" with proper access lists.&lt;/P&gt;&lt;P&gt;Third - it's recommended to disable the zone transfer to all except the servers listed as NS for that zone.&lt;/P&gt;&lt;P&gt;Fourth - be sure that you have the latest BIND (Unix/Linux/etc) or NT2K with the latest security patches installed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Feb 2002 09:06:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16580#M725740</guid>
      <dc:creator>eenest</dc:creator>
      <dc:date>2002-02-22T09:06:12Z</dc:date>
    </item>
    <item>
      <title>Re: PIX and Inside DNS server</title>
      <link>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16581#M725756</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hv an internal network of 10.10.X.X in Local.&lt;/P&gt;&lt;P&gt;i hv nated Nat (inside) 1 0 0 0 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i hv webserver which is nated and local ip is 10.10.1.135.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My Local DNS server ip is 10.10.3.150. ..can i just add  Nat (inside) 0 10.10.3.150 255.255.255.0 0 0&lt;/P&gt;&lt;P&gt;is it possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I dont hv DMZ at right now...Is it not possible to Place DNS in INSIDE?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am using WINDOWS 2000 Advanced Server for DNS&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Feb 2002 10:52:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-and-inside-dns-server/m-p/16581#M725756</guid>
      <dc:creator>rajankumaresan</dc:creator>
      <dc:date>2002-02-22T10:52:55Z</dc:date>
    </item>
  </channel>
</rss>

