cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
390
Views
0
Helpful
1
Replies

Resolving names in ASA's

TGF_Cisco
Level 1
Level 1

hi

How to configure ASA 5520 to resolve names in ASA's. We are currently using ASDM to configure network objects with the hostnames in the internet and then specifying the IP address . But this is done manually. Is there a different way of setting it up on ASA.    

Also when getting reports from ASA, we see the IP's but is there a way that we could add an identity to the IP's (reverse lookup)

thanks

1 Reply 1

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

If you mean that you want the ASA to do DNS lookups then this is how I enabled in my own firewall

dns domain-lookup WAN

dns server-group DefaultDNS

name-server x.x.x.x

name-server y.y.y.y

Where

  • x.x.x.x = Primary ISP DNS server
  • y.y.y.y = Secondary ISP DNS server
  • WAN = My "outside" interface
  • dns domain-lookup = activates the DNS lookup on certain interface

After this I can for example create and "object" which contains a FQDN and it can be then used on the ASA to build rules and ASA will update the IP address of the host at certain interval. Though I havent had much use for this personally.

- Jouni

Review Cisco Networking products for a $25 gift card