FCSS_SASE_AD-24 · Question #12
An organization needs to resolve internal hostnames using its internal rather than public DNS servers for remotely connected endpoints. Which two components must be configured on FortiSASE to…
The correct answer is A. SSL deep inspection B. Split DNS rules. To resolve internal hostnames using internal DNS servers for remotely connected endpoints, the following two components must be configured on FortiSASE: Split DNS Rules: Split DNS allows the configuration of specific DNS queries to be directed to internal DNS servers instead of…
Question
An organization needs to resolve internal hostnames using its internal rather than public DNS servers for remotely connected endpoints. Which two components must be configured on FortiSASE to achieve this? (Choose two.)
Options
- ASSL deep inspection
- BSplit DNS rules
- CSplit tunnelling destinations
- DDNS filter
How the community answered
(57 responses)- A82% (47)
- C5% (3)
- D12% (7)
Explanation
To resolve internal hostnames using internal DNS servers for remotely connected endpoints, the following two components must be configured on FortiSASE: Split DNS Rules: Split DNS allows the configuration of specific DNS queries to be directed to internal DNS servers instead of public DNS servers. This ensures that internal hostnames are resolved using the organization's internal DNS infrastructure, maintaining privacy and accuracy for internal network resources. Split Tunneling Destinations: Split tunneling allows specific traffic (such as DNS queries for internal domains) to be routed through the VPN tunnel while other traffic is sent directly to the internet. By configuring split tunneling destinations, you can ensure that DNS queries for internal hostnames are directed through the VPN to the internal DNS servers.
Topics
Community Discussion
No community discussion yet for this question.