Forum Discussion

jsipes's avatar
jsipes
Icon for Nimbostratus rankNimbostratus
Jul 24, 2020

F5 DNS behind a paloalto firewall

I'm looking for documentation for using F5 DNS behind a paloalto firewall in 2 sperate data centers. F5 has no public IP addresses, I am NATing the External IP address for a virtual server with the PAN. The listeners are also NATed. When I make a DNS query to the public IP for the listener it resolves but with only private IP addresses of the virtual servers. F5 DNS and LTM are on the same system.

1 Reply

  • jsipes's avatar
    jsipes
    Icon for Nimbostratus rankNimbostratus

    Got it! You have to create the VS in DNS>> GSLB: Servers: Server List >> Virtual Servers and fill out the Translation Address with Private IP and the address with the public IP. Letting DNS discover the Virtual Servers does not let you change the address. Turn off discover and add them manually.