11-07-2024 02:51 AM
I am deploying a new ISE node which resides within a DMZ zone on FTD. During the initial bootstrapping it is failing to reach the name server .
ISE node 192.168.235.12 - DMZ zone
DNS 192.168.245.246
I have created a policy on the FTD and ran a packet capture the traffic is allowed.. What else could be stopping this?
11-07-2024 03:34 AM
Where the DNS server is connected? Does it have gateway or use route table?
11-07-2024 03:35 AM
What action did you apply to that rule? I would try to change it to "trust" if that is not already applied. Another thing come to mind, in terms of routing, does the DNS server know how to reach ISE?
11-07-2024 03:40 AM
Share packet tracer ypu run'
Send it to me as PM
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide