RE: DNS and NAT

From: Nir Wittenberg (nwittenberg@msncomm.com)
Date: Tue Apr 20 2004 - 01:46:25 GMT-3


I do have a static translation for the WWW server and the DNS servers
are translating to the NATed global address. Can you give me an example
of how it is possible to change the DNS reply payload?

-----Original Message-----
From: Sean [mailto:forum@xkey.org]
Sent: Friday, April 16, 2004 7:02 PM
To: Nir Wittenberg; ccielab@groupstudy.com
Subject: RE: DNS and NAT

Yes, the IOS NAT can change the DNS reply payload, and change the global
IP to local IP, but only when static NAT is configured on Router.

Also there is a keyword that you can use to turn off the feature
starting IOS 12.3 or 12.2T
 

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Nir Wittenberg
Sent: Friday, April 16, 2004 4:55 PM
To: ccielab@groupstudy.com
Subject: DNS and NAT

Is there a solution within IOS to intercept DNS resolution? My issue is
that I have hosts and a WWW server on the same segment. All are being
NATed. The DNS servers sits outside of the Network/NAT and tells the
rest of the enterprise the way to get to the WWW server use this global
IP which has a static translation to the WWW server. The issue is that
when the local host do a DNS lookup they are getting the global IP
rather than the local IP.

I know the PIX can do this with the dns and alias keywords but I am
looking for an IOS solution.

Thanks,
Nir
CCIE 12261



This archive was generated by hypermail 2.1.4 : Mon May 03 2004 - 19:48:50 GMT-3