Configuration Examples
32
Infoblox User Guide
www
—
IP Address: 10.1.5.5
—
MAC Address: 00:00:00:55:55:55
—
IP Address: 10.1.5.6
—
MAC Address: 00:00:00:66:66:66
ftp
—
IP Address: 10.1.5.7
—
MAC Address: 00:00:00:77:77:77
Task 2.7
Define Multiple Forwarders
Because ns3.corp100.com is an internal DNS server, you configure it to forward DNS queries for external DNS name
resolution to the primary and secondary DNS servers—ns1.corp100.com at 10.1.5.2 and ns2.corp100.com at 2.2.2.2.
Note:
You must also configure ns1 and ns2 DNS servers to allow recursion when resolving DNS queries on behalf of
ns3. For information, see
Task 2.8 Enable Recursion on External DNS Servers
.
1.
From the DNS perspective, click
DNS Members
->
Infoblox
->
Edit
->
Grid DNS Properties
.
2.
In the
ID Grid DNS Properties
editor, click
Forwarders
, and then enter the following:
—
IP Address: Type
2.2.2.2
, and then click
Add
.
—
IP Address: Type
10.1.5.2
, and then click
Add
.
—
Use Forwarders Only: Clear check box.
3.
Click the
Save
icon.
The Infoblox device initially sends outbound queries to forwarders in the order that they appear in the Forwarders
list, starting from the top of the list. If the first forwarder does not reply, the device tries the second one. The device
keeps track of the response time of both forwarders and uses the quicker one for future queries. If the quicker
forwarder does not respond, the device then uses the other one.
Task 2.8
Enable Recursion on External DNS Servers
Because the HA pair forwards outbound queries to the two external DNS servers ns1.corp100.com (10.1.5.2) and
ns2.corp100.com (2.2.2.2) for resolution, you must enable recursion on those servers. When a DNS server employs
recursion, it queries other DNS servers for a domain name until it either receives the requested data or an error that
the requested data cannot be found. It then reports the result back to the querist—in this case, the internal DNS
server ns3.corp100.com (10.1.4.10), which in turn reports back to the DNS client.
Infoblox Server in the DMZ Network (ns1.corp100.com, 10.1.5.2)
1.
Log in to ns1.corp100.com at 10.1.5.2.
2.
From the DNS perspective, click
DNS Members
->
Infoblox
->
Edit
->
Grid DNS Properties
.
3.
In the
ID Grid DNS Properties
editor, click
Queries
, and then select the
Allow Recursion
check box.
4.
Click the
Save
icon.