Koozali.org: home of the SME Server

Serving DNS with SME behind a firewall.

joshua b

Serving DNS with SME behind a firewall.
« on: April 03, 2003, 01:50:35 AM »
I've a question.  How do I configure SME 5.6 to provide DNS services externally and internally while in Server mode?

I have a firewall with DNS requests forwarded to my sme box (10.0.0.2).  Externally I can hit the DNS server but all I get is internal addresses.  Internally I get internal addresses also (not a problem ;-)    )  Do I need to change the server into Server and Gateway mode and use virtual IPs  (eth0.1 and eth0.2) or a second NIC?

Thanks in advance.

joshua b

Bill Talcott

Re: Serving DNS with SME behind a firewall.
« Reply #1 on: April 03, 2003, 07:04:50 PM »
I think you might be making a loop here. Do you have all DNS requests coming into the firewall forwarded to the SME instead? If so, I'd think that when an external domain is requested to the SME DNS, it tries to get out to an internet DNS server, and hits the firewall and is sent back to itself. I'm not sure if that's right, but it sounds like it could be logical.

Try configuring a client to use the SME's IP for DNS, and turning off DNS forwarding to the SME on the firewall...

joshua b

Re: Serving DNS with SME behind a firewall.
« Reply #2 on: April 05, 2003, 07:18:27 AM »
I see I didn't make my question very clear.  It's surprising how simple something sounds when you first write it, but then when you come back later and reread it's as clear as mud.

Thanks for info though Bill.  I'll work it out.

Joshua B