Odd PTR through cisco NAT behaviour.

Jason Mitchell jm at hcn.com.au
Tue Jul 14 14:14:38 UTC 2009


I think perhaps Cisco IOS does (from the IOS online help for ip nat ):

  "no-payload" - "No translation of embedded address/port in the payload"

Cheers,

Jason

-----Original Message-----
From: bind-users-bounces at lists.isc.org
[mailto:bind-users-bounces at lists.isc.org] On Behalf Of Mark Andrews
Sent: Tuesday, 14 July 2009 2:24 PM
To: Hokumae
Cc: bind-users at lists.isc.org
Subject: Re: Odd PTR through cisco NAT behaviour. 


In message <4bde94f10907132058j73504abdr790dcab27898ca92 at mail.gmail.com>,
Hokum
ae writes:
> Thanks for the quick response Mark.
> 
> I've already tried the 10. reverse zone in the "external" view option,
> and no joy (not sure why).
> 
> I will just have to think about the Cisco config.  There is a mirrored
> round-robin server ring behind the router answering
> first-come-first-serve for several services including DNS in the local
> NAT pool.. this other option would mean having to have static entries.
> 
> I wonder what the standard option is for this. We cant be the only
> ones running DNS on a NAT network w/o exposing the servers to directly
> addressable address space?  Google searches of several seach
> permutations have turned up nothing so far.

Most NAT's don't change the query payload.

Mark
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka at isc.org
_______________________________________________
bind-users mailing list
bind-users at lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users




More information about the bind-users mailing list