Monday, November 29, 2021

Q: Resolving a FQD to an internal address without a DNS server.

Some Background: We have 40 organizations that connect back to our building using Peer IPSec connections. They are limited to a specific subnet where the servers they need exist. We have SSL certificates in-place that use Fully qualified names that resolve to internal addresses within our network. We can't program the internal address within the web hoster to resolve that way. The big problem, is that our internal DNS server is not in reach of that subnet and the company will not change that policy. With PC's, we got around this with host file modifications. We can't do the same thing on Phones/IPads though without jailbreaking. This has kinda got me stuck....

Question: Is there a way to use the firewall (mostly Sonicwalls) to do the basic DNS translation? Most of the organizations have DNS servers, but some don't have the technical/financial resources to make that happen.



No comments:

Post a Comment