FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
hhasny
Staff
Staff
Article Id 250944
Description

This article describes how to allow SSL VPN users to use FortiGate as a DNS server.

Scope FortiGate and SSL VPN
Solution

There are instances where FortiGate is used for internal DNS servers. 

To allow SSL VPN users to use FortiGate as a DNS server, it is necessary to configure the ssl.root interface under the DNS Service interfaces.

 

FortiGate DNS Server.PNG

 

In this example, the DNS server IP 10.201.2.129 is the port10 IP address.

 

SSLVPN DNS IP.PNG

 

Below is the result when nslookup is done for internal and external names

.

nslookup.PNG

Contributors