Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I run Cisco 861 to connect a small LAN to the Internet. The router provides DHCP and DNS to the local users and does NAT to map to one public IP. To secure the router I followed the steps given at http://www.cisco.com/en/US/products/sw/secursw/ps1...
Dear community,in my simple network setup, I cannot resolve DNS queries from inside my NATted network. On the router I can ping both IP-addresses and names. Ping from the local machine works for IP-Adresses but not for names. When doing nslookup, ad...
Hello,thanks for this idea. I triedinterface FastEthernet4 ip inspect firewall inip inspect firewall outbut it's still the same issue. The router itself has no access to the internet.
Hi,I partly solved the second issue:The router was configured to provide DNS to my local clients. In order to resolve the name queries the router needs to query DNS servers. Strangely, it can't. The inspection rule defined for the "inside"-interface ...
As I didn't (couldn't, because of my users) restart the router, it still uses its address, that was obtained before the access-list extern was brought up. Anyway see my ACLs here: As you can verify, bootpc is working with the ACL activated:Extended I...
Hi Mitch,I did this after Hendrik's first proposal, see my second post (Ok, the entries are in different order, but bootpc permission comes before ip-any denial, so everything should be fine).Thanks,Benjamin