Forum Discussion
F5 DNS Configured behind Firewall but not working as expected
Hi All,
I have configured F5 DNS which is connected behind firewall to serve DNS. Firewall is doing NAT and translated to private IP addresses.
Clients --> FW (NAT) --> F5 DNS ---> VIP (private ip)
- I have configured servers with private ip 10.1.1.1 and 20.1.1.1 with translation IP address (public) 62.1.1.1 and 72.1.1.1.
- on GSLB Servers--> Virtual servers, I have dded VIP's NAT address as translation address.
After above configurations i have tried nslookup from internet and i am getting private IP address as DNS response. I am expecting VIP's translation address as DNS response but in my case it is not.
Can some one help please.
-
on GSLB Servers--> Virtual servers, VIP should have external IP and translation address should be internal IP (real IP). Is it configured this way?
- nathe
Cirrocumulus
From the following solution Configuring BIG-IP DNS server objects for BIG-IP devices that reside behind a firewall NAT the Address will be the Public IP address that is returned to the external client. The Translation address is the internal VIP, private IP address.
Hope this helps,
N
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com