cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
615
Views
0
Helpful
6
Replies

URL addresses get my domain added

Jeff Horton
Level 1
Level 1

I am trying to implement new FTD firewalls into our environment and having a issue getting to the internet.

When I try to go to www.google.com it is adding my domain. Ex: www.google.com.example.com instead of www.google.com

Is there somewhere within the configuration that is set to do this?

This below is from my events details:

Networking
Source IP
172.16.44.43
 
Destination IP
8.8.8.8
 
Ingress Virtual Router
Global
 
Egress Virtual Router
Global
 
Ingress Security Zone
Internal
 
Egress Security Zone
MY-Gtwy
 
DNS Response
No Error
 
DNS Record Type
A
 
NAT Source IP
*.*.*.*
 
NAT Destination IP
8.8.8.8
 
NAT Source Port
60820 / udp
 
Sorry had to change some of this due to sensitivity of site.
2 Accepted Solutions

Accepted Solutions

that may be looks for me cosmetic bug when you inserting ACP, as suggested does the end client get access to google.com or 8.8.8.8 ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

Jeff Horton
Level 1
Level 1

When I looked into this further, I do recall this being only a ping to 8.8.8.8. All other traffic was correct with its DNS Query. I am chalking this one up as to not knowing what I am looking at. Assume this as closed.

View solution in original post

6 Replies 6

balaji.bandi
Hall of Fame
Hall of Fame

that is not write, what code of FTD., is the DNS server local or Internet ?

when you do NSlookup from your network what is the query you getting ?

check FQDN feature :

https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/214698-understand-fqdn-feature-on-firepower-thr.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Jeff Horton
Level 1
Level 1

The version is 7.6.0.

DNS configured on system is local.

I will check the NSLOOKUP when I reconnect the FTD to the Internet. I am currently using some older firewalls and they work fine. But the ultimate goal is to have two FPR3110s in HA mode for our Internet connection.

Thanks,

Do you mean that happens when you try to open up Google website from a broswer on an endpoint behind the FTD? I can't think of anything on the FTD that would cause that to happen.

that may be looks for me cosmetic bug when you inserting ACP, as suggested does the end client get access to google.com or 8.8.8.8 ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Jeff Horton
Level 1
Level 1

When I looked into this further, I do recall this being only a ping to 8.8.8.8. All other traffic was correct with its DNS Query. I am chalking this one up as to not knowing what I am looking at. Assume this as closed.

Glad to know all good.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card