Greetings, I am a little new to the PIX. I have done some searching and have not found how to setup a PIX to do a DNS lookup. Can this be done, is it a good idea/bad idea? I want to do this so I can add url's to acl's.
you cannot. dns is very insecure, and the dnssec standard really isn't deployed much, nor does the pix support it. Look at using the name command to define a name with an ip, with which you can then use the name in acl configs
Learn, share, save
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.