Can Management Interface use DNS Proxy Rules And Static Entries through DNS Proxy Object?
15367
Created On 09/26/18 13:53 PM - Last Modified 02/07/19 23:42 PM
Resolution
PAN-OS 6.0,, 7.0
Yes. The management interface can use DNS proxy rules and static entries through the DNS proxy object.
PAN-OS 5.0 and lower
The DNS Proxy rules and static entries cannot be used by the management interface through the DNS proxy object. When DNS Proxy is configured on the Palo Alto Networks firewall running PAN-OS 5.0 and lower, the DNS proxy rules and static rules will work for the hosts sitting behind the firewall but not for traffic from the management interface. The only fields that apply for the management interface through DNS proxy object are the primary and secondary DNS server fields, as shown in the following screenshot:
owner: mvenkatesan
Attachments