Skip to Content

Solved: How do I configure DNS Service in Recursive Mode with Shadow DNS Database on FortiExtender?

This article describes about DNS service proxy mode Recursive on FortiExtender.

When DNS service is on Recursive mode, FortiExtender interface firstly query local shadow DNS database; If no naming resolution in local shadow DNS database, the DNS query will be forwarded to DNS servers, which are defined and acquired on System DNS pool.

Scope

FortiExtender DNS proxy service in Recursive mode.

Solution

Step 1: On FortiExtender go to Networking > DNS Servers.

On FortiExtender go to Networking > DNS Servers.

Step 2: Create DNS Service with Recursive mode.

Create DNS Service with Recursive mode.

Step 3: On CLI, check DNS proxy service.

On CLI, check DNS proxy service.

Step 4: On CLI, check DNS server in DNS server pool.

On CLI, check DNS server in DNS server pool.

Step 5: On client, send DNS request. If the request has naming resolution in shadow DNS database.

On client, send DNS request. If the request has naming resolution in shadow DNS database.

Step 6: On FortiExtender, DNS log message displays the processing on recursive mode.

On FortiExtender, DNS log message displays the processing on recursive mode.

Step 8: On client, send DNS request. If the request has NO naming resolution in shadow DNS database, DNS query will be forwarded to system DNS servers.

On client, send DNS request. If the request has NO naming resolution in shadow DNS database, DNS query will be forwarded to system DNS servers.

Step 9: On FortiExtender, Debug log message shows the sequence of DNS processing in recursive mode.

On FortiExtender, Debug log message shows the sequence of DNS processing in recursive mode.