Mettle Knowledge
Search:     Advanced search
Browse by category:
Contact Us

Split DNS

Add comment
Views: 628
Votes: 0
Comments: 0
Posted: 26 Oct, 2010
by: Knowledge M.
Updated: 26 Oct, 2010
by: Knowledge M.
Configuring Split DNS

In a split DNS infrastructure two DNS zones are created for the same domain, one to be used by Internal network and the other to be used by the external network. DNS on your internal network resolves to the  A split DNS routes the internal hosts to an internal domain name server for name resolution and external hosts are directed to an external domain name server for name resolution.

If you're using Mettle SE as the DNS server for internal hosts you can use DNS forwarder override to implement split DNS deployment. Adding an override to DNS forwarder, go to:

  1. Services --> DNS Forwarder
  2. Click the '+' button under "You may enter records that override the results from the forwarders below"
  3. This brings up the DNS forwarder: Edit host screen You will need to add an override for each hostname in use behind your firewall.

Example DNS overrides for mettle.in and www.mettle.in

Eg 1)
  1. Host:
  2. Domian: mettle.in
  3. IP Address: 192.168.1.5
  4. Description: Override for mettle.in web server
Eg 2)
  1. Host: www
  2. Domain: mettle.in
  3. IP Address: 192.168.1.5
  4. Description: Override for www.mettle.in

Internal DNS Servers

If using other DNS servers in your internal network like Microsoft Active Directory, you will need to create zones for all the domains hosted inside the network along with all other records for those domains.

In network scenarios with BIND DNS server where the public DNS is hosted on the same server as the private DNS, BIND's  views feature is used to resolve DNS differently for internal hosts and external ones.
Also read
document NAT Reflection/NAT Loopback

Others in this Category
document Initial Configuration: Setting up Mettle SE in a Local Area Network with Internet Connection.
document Default IP Address & Admin Password (And How To Change It?)
document Configuring DHCP Server
document Enabling The LAN Hosts To Use The Internet Connection (NATing)
document Adding A Second (Or More) Internet Connection To Mettle SE & Setting Up Failover/Load Balancing
document Monitoring The Internet Usage
document How To Turn On/Off The Content Filter & Gateway Antivirus Service
document Fine Tuning The Content Scanner
document Setting Up PPTP VPN accounts
document OpenVPN: Setting Up SSL-VPN accounts
document Setting Up IPsec VPN Accounts
document Deploying A Second LAN With Mettle SE.
document Choosing a VPN Technology
document Adding Firewall Rules
document Setting Up Mettle SE Stack for Active/Passive Fail-Over (CARP)
document Connecting & Securing a Leased Line Connection to Mettle SE
document Port Forwarding (PAT)
document Creating a DNS Entry/Record for the LAN
document Blocking GTalk in the LAN
document Blocking Yahoo! IM from the LAN
document OpenVPN: If VPN Clients Want to Access a Subnet other than "Local network"
document Setting up IPSec Tunnel
document Open VPN Troubleshooting
document PPTP VPN Troubleshooting
document NTP Client/Server
document Setting Up an IPSec VPN Client: Example Given Using Shrewsoft VPN Client
document Firewall: Alias
document Captive Portal
document Virtual IP Address
document OpenVPN: Setting Up a SSL-VPN Client in Windows
document Creating Tagged VLANs
document Cloning Firewall Rules
document IPsec VPN Troubleshooting
document Wake On LAN
document Inbound Loadbalancing
document OpenVPN: Setting up Certification Authority & Generating Certificates
document Changing default webGUI Port and Protocol
document Using Packet Capture
document Using Traceroute
document Package Updates
document OpenVPN: To make OpenVPN client use VPN as the Default Gateway
document OpenVPN: To exclude some Network from using VPN gateway when VPN is set as default gateway for VPN client
document Adding a Static DHCP Lease
document Schedule Based Firewall Rules
document RRD Graphs
document Server Load Balancing
document Firewall Logs
document Backup and Restore Mettle SE Running Configuration
document Event Logging To Remote Syslog Server
document NAT Reflection/NAT Loopback
document Dynamic DNS



RSS