THE GAME HAS CHANGED

Introducing Infoblox Universal DDI ManagementTM

Watch the launch to discover the new era of management for critical network services. Watch Now

General Security & Cybersecurity Ecosystem

Reply

Private DNS behind Palo Alto is not resolving Name Servers

New Member
Posts: 1
2423     0

We are using private DNS zones for our internal sites. We are connected to the cloud by site to site vpn on  palo alto and until recently our private domains have stopped resolving and name servers are not finding their way. Using dig command I am able to cache some of the addresses on palo alto but they get deleted right away but not all so for now I have added static entries for DNS proxy but the issue is that anything behind a load balancer or with wild card is not working. Is there a work around to this as this seems to be a bug of palo alto?

 

Re: Private DNS behind Palo Alto is not resolving Name Servers

[ Edited ]
New Member
Posts: 2
2424     0

@bantisurah yaseen pdf wrote:

We are using private DNS zones for our internal sites. We are connected to the cloud by site to site vpn on  palo alto and until recently our private domains have stopped resolving and name servers are not finding their way. Using dig command I am able to cache some of the addresses on palo alto but they get deleted right away but not all so for now I have added static entries for DNS proxy but the issue is that anything behind a load balancer or with wild card is not working. Is there a work around to this as this seems to be a bug of palo alto?

 

It sounds like you're experiencing issues with private DNS zones not resolving behind your Palo Alto firewall. Since you're able to cache some addresses with the dig command but they disappear quickly, it may be beneficial to check your DNS proxy settings and ensure they are configured correctly for wildcard and load-balanced entries.

Showing results for 
Search instead for 
Did you mean: 

Recommended for You