Services Configure DNS
Digi Connect EZ Mini User Guide
355
l A single IP address or host name.
l A network designation in CIDR notation, for example, 2001:db8::/48.
l any: No limit to IPv6 addresses that can access the DNS service.
Repeat this step to list additional IP addresses or networks.
n To limit access to hosts connected through a specified interface on the Connect EZ
device:
(config)> add service dns acl interface end value
(config)>
Where value is an interface defined on your device.
Display a list of available interfaces:
Use ... network interface ? to display interface information:
Repeat this step to list additional interfaces.
n To limit access based on firewall zones:
(config)> add service dns acl zone end value
(config)>
Where value is a firewall zone defined on your device, or the any keyword.
Display a list of available firewall zones:
Type ... firewall zone ? at the config prompt:
(config)> ... firewall zone ?
Zones: A list of groups of network interfaces that can be
referred to by packet
filtering rules and access control lists.
Additional Configuration
---------------------------------------------------------
----------------------
any
dynamic_routes
edge
external
internal
ipsec
loopback
setup
(config)>
Repeat this step to include additional firewall zones.
4. (Optional) Cache negative responses
By default, the device's DNS server caches negative responses. Disabling this option may
improve performance on networks with transient DNS results, when one or more DNS servers