cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
693
Views
0
Helpful
1
Replies

asa transparent and dns problem

sergiu.campian
Level 1
Level 1

I'm having a strange issue with an ASA 5520 in transparent mode. DNS inspection drops all requests from my internal dns server to the external dns servers. I also have an ASA5520 in routed mode with DNS inspection enabled in the network and dns inspection on that one allows all the packets that the transparent one drops. The software version is the same.

1 Reply 1

mirober2
Cisco Employee
Cisco Employee

Hi Sergiu,

If you do a 'clear asp drop' on the transparent ASA and then 'show asp drop' several times, which counters appear to be increasing? There should be some listed related to DNS inspection.

You can also check 'show service-policy inspect dns' and enable 'debug inspect dns error' and 'debug inspect dns event' to see if that offers any insight.

-Mike

Review Cisco Networking for a $25 gift card