<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTD/FMC DNS Group objects? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888040#M940422</link>
    <description>&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are migrating from SOPHOS UTM to FTD/FMC and i'm in my documentation stage.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SOPHOS has an object called a "DNS Group" object, this can be used anywhere in the firewall, essentially this object will query and store all IPs for the destination in the variable, and keep it updated, see below;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="11-07-2019 11-28-11 AM.jpg" style="width: 363px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/40522i740B35C2C5F2C78E/image-size/large?v=v2&amp;amp;px=999" role="button" title="11-07-2019 11-28-11 AM.jpg" alt="11-07-2019 11-28-11 AM.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="11-07-2019 9-43-25 AM.jpg" style="width: 609px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/40520i7DD9A6AD326A8873/image-size/large?v=v2&amp;amp;px=999" role="button" title="11-07-2019 9-43-25 AM.jpg" alt="11-07-2019 9-43-25 AM.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As you can see, the object "s3-ap-southeast-2.amazonaws.com" has picked up &lt;U&gt;106&lt;/U&gt; IP Addresses, and i use this object in a firewall rule to allow traffic to this destination.....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can this be done with FTD/FMC?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If so, great! how would i find out what IPs have been resolved?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If not.....what could i do as a work around, beside inputting 106 IP Addresses into a group...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 17:17:55 GMT</pubDate>
    <dc:creator>Warren Sullivan - Corp</dc:creator>
    <dc:date>2020-02-21T17:17:55Z</dc:date>
    <item>
      <title>FTD/FMC DNS Group objects?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888040#M940422</link>
      <description>&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We are migrating from SOPHOS UTM to FTD/FMC and i'm in my documentation stage.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SOPHOS has an object called a "DNS Group" object, this can be used anywhere in the firewall, essentially this object will query and store all IPs for the destination in the variable, and keep it updated, see below;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="11-07-2019 11-28-11 AM.jpg" style="width: 363px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/40522i740B35C2C5F2C78E/image-size/large?v=v2&amp;amp;px=999" role="button" title="11-07-2019 11-28-11 AM.jpg" alt="11-07-2019 11-28-11 AM.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="11-07-2019 9-43-25 AM.jpg" style="width: 609px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/40520i7DD9A6AD326A8873/image-size/large?v=v2&amp;amp;px=999" role="button" title="11-07-2019 9-43-25 AM.jpg" alt="11-07-2019 9-43-25 AM.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As you can see, the object "s3-ap-southeast-2.amazonaws.com" has picked up &lt;U&gt;106&lt;/U&gt; IP Addresses, and i use this object in a firewall rule to allow traffic to this destination.....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can this be done with FTD/FMC?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If so, great! how would i find out what IPs have been resolved?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If not.....what could i do as a work around, beside inputting 106 IP Addresses into a group...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:17:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888040#M940422</guid>
      <dc:creator>Warren Sullivan - Corp</dc:creator>
      <dc:date>2020-02-21T17:17:55Z</dc:date>
    </item>
    <item>
      <title>Re: FTD/FMC DNS Group objects?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888446#M940423</link>
      <description>&lt;P&gt;If it's used in an ACL, you can simply use the FQDN directly.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jul 2019 12:35:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888446#M940423</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-07-11T12:35:52Z</dc:date>
    </item>
    <item>
      <title>Re: FTD/FMC DNS Group objects?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888813#M940424</link>
      <description>&lt;P&gt;So it will pickup all 106 IP Addresses?&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jul 2019 22:51:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888813#M940424</guid>
      <dc:creator>Warren Sullivan - Corp</dc:creator>
      <dc:date>2019-07-11T22:51:26Z</dc:date>
    </item>
    <item>
      <title>Re: FTD/FMC DNS Group objects?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888907#M940425</link>
      <description>&lt;P&gt;More or less - it will evaluate traffic as to whether it matches any of the addresses that resolve from that FQDN.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jul 2019 04:57:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3888907#M940425</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-07-12T04:57:23Z</dc:date>
    </item>
    <item>
      <title>Re: FTD/FMC DNS Group objects?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3892321#M940426</link>
      <description>Awesome, thanks Marvin, your a wealth of knowledge on this platform, it is truly appreciated!&lt;BR /&gt;&lt;BR /&gt;One more quick one, for a FQDN object, do i have to put in the fully qualified name or just the host itself?&lt;BR /&gt;&lt;BR /&gt;for example;&lt;BR /&gt;&lt;BR /&gt;PRD-NPS01 instead of PRD-NPS01.domain.com...</description>
      <pubDate>Wed, 17 Jul 2019 23:52:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3892321#M940426</guid>
      <dc:creator>Warren Sullivan - Corp</dc:creator>
      <dc:date>2019-07-17T23:52:47Z</dc:date>
    </item>
    <item>
      <title>Re: FTD/FMC DNS Group objects?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3892372#M940427</link>
      <description>&lt;P&gt;The FQDN needs to be fully qualified. The FTD device doesn't know to append a local domain.&lt;/P&gt;
&lt;P&gt;Note that FQDN objects can only be used in Access Control and prefilter rules. You must have setup DNS both as a DNS Server Group object in FMC as well as per device that will be using the objects (Devices &amp;gt; Platform Settings and then "Enable DNS name resolution by device").&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2019 02:46:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-fmc-dns-group-objects/m-p/3892372#M940427</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-07-18T02:46:27Z</dc:date>
    </item>
  </channel>
</rss>

