作为参考:
Version:ASA version 8.4(2) +
Configuration:
1.配置DNS
在Outside接口配置DNS,并指定DNS服务器和默认域名
dns domain-lookup outside
DNS server-group DefaultDNS
name-server 8.8.8.8
domain-name test.com
2.配置接入策略
通过object group定义我们的FQDN,然后在ACL调用。
object network obj-qq.com
fqdn qq.com
access-list acl-inside extended deny ip any object obj-qq.com
access-list acl-inside extended permit ip any any log
可以通过show access-list和show dns命令来检查相关信息。
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Rps-Cheers | If it solves your problem, please mark as answer. Thanks !