cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1315
Views
2
Helpful
16
Replies

DNS not working from LAN and DMZ on Cisco 3105

Cisco3105
Level 1
Level 1

Hello all,

None of the zones are able to resolve DNS. I can ping 8.8.8.8 from LAN and DMZ but cannot ping google.com. 

The DNS policy under policies > DNS is default

DNS server group under Objects > Object Management has all the ISP provided DNS servers

DNS under Devices > Platform settings has "Enable DNS name resolution by device" enabled and the server group added to it. "Interface Objects" has all the objects added to the list.

I can ping google.com from Devices > Threat Defense CLI

How can I ensure that the the DNS works from devices in LAN and DMZ?

Thanks

16 Replies 16

from Nexus do traceroute check if the packet hit FTD or not ?

Thanks A Lot
MHM

Cisco3105
Level 1
Level 1

@Marius Gunnerud 

The migration ignored a few NAT rules and that caused the issue. I did thorough check between the ASA and the FTD and found the missing NAT rules. Added them to the FTD and name resolution started working.

Review Cisco Networking for a $25 gift card