Thursday, April 25, 2019

DNS U-Turn Issues

Greetings,

I have two data centers with different public ip blocks. When users in DCA try accessing public resources in DCB (public ip static nats to private dmz servers) there are no issues. When users in DCA try accessing public resources hosted in DCA, connectivity fails. The reason we want DCA resources accessed publicly instead of internally is a long story, but security-related.

To me, it sounds like I have a DNS U-Turn problem. Is DNS doctoring the right solution? Also, will I need to allow my access policies to access the private address or the public?

Thanks!



No comments:

Post a Comment