cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4627
Views
0
Helpful
3
Replies

DNS lookup not working on ASA

Waterbird
Level 1
Level 1

I have an ASA that can ping ip addresses outside the network, but cannot resolve the domain names for those addresses. 

 

I have the relevant configs listed below.  Please help me to get the DNS working on the ASA device. 

 

Thanks.

 

The outside interface is configured as follows:

interface GigabitEthernet0/0
nameif outside
security-level 0
ip address dhcp setroute
!

DNS is configured as follows:

dns domain-lookup outside
dns server-group DefaultDNS
name-server 8.8.8.8
name-server 8.8.4.4
!

ICMP inspection is configured:

inspect icmp

 

 

1 Accepted Solution

Accepted Solutions

Waterbird
Level 1
Level 1

It turns out the configuration I had is correct.  Something was going wrong with the GNS3 NAT node or the network I'm on might be having issues with DNS.  It started working properly with the same configuration.

View solution in original post

3 Replies 3

ASA can not reslove the domain name from the cli. 

Is your dhcp server is configured on the ASA?

 

dhcpd address 192.168.185.200-192.168.185.205 inside

dhcpd enable inside

dhcpd dns 8.8.8.8

please do not forget to rate.

inspect icmp is for traffic passing through the ASA.  icmp permt / deny is for to and from the ASA.  for example.

icmp permit any echo-reply outside
icmp deny any outside

Check to see if you have any icmp commands configured.

--
Please remember to select a correct answer and rate helpful posts

Waterbird
Level 1
Level 1

It turns out the configuration I had is correct.  Something was going wrong with the GNS3 NAT node or the network I'm on might be having issues with DNS.  It started working properly with the same configuration.

Review Cisco Networking for a $25 gift card