Which DNS settings make more sense? Passthrough fortigate or configure DNS server?

Author
dan@itn
New Member
  • Total Posts : 14
  • Scores: 0
  • Reward points: 0
  • Status: offline
2021/06/03 07:56:15 (permalink) 6.4
0

Which DNS settings make more sense? Passthrough fortigate or configure DNS server?

DNS resolving at a client's site is currently as follows:
 
Windows Client --> AD (samba) --> dnsmasq --> ISP DNS
 
Currently dnsmasq is running on a linux cluster that doubles as firewall/router between local lan and external network.
We are going to replace the linux clusters firewall/router capabilities with a fortigate.
 
There are two variants for DNS in this new setting (clients requirements are to still have a dnsmasq server):
 
Windows Client --> AD (samba) --> dnsmasq --> (passthrough fortigate) --> ISP DNS
or
Windows Client --> AD (samba) --> dnsmasq --> (fortigate as DNS server, recursive) --> ISP DNS
 
Does it make sense to use the fortigate as DNS server in this setup?
dnsmasq will be moved to another cluster anyway and will still be there.
 
Dan
 
#1

0 Replies Related Threads

    Jump to:
    © 2021 APG vNext Commercial Version 5.5