02-09-2004 08:54 AM - edited 02-20-2020 11:14 PM
I want to setup my PIX to resolve DNS. Is there a way to do this?
Thanks,
Jason
02-09-2004 09:10 PM
No. Otherwise security policies configured on the firewall that relied on name resolution will fall prey to a simple DNS spoof, hijack, or server compromise and would render all security configured on the firewall useless.
02-10-2004 05:25 AM
Thank you for the reply. Then I assume there is no way to block URL's with out having to block by IP only?
02-10-2004 09:43 AM
No. The Pix cannot filter at the URL level by itself. You can have it forward the requests to Websense or N2H2 for such functionality using the [url filter] feature.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide