Sophos XG: routing DNS queries


The routing of DNS queries is similar to a conditional redirector under Windows, which allows to indicate for a DNS zone the server or servers to contact to resolve a record.

This type of routing is useful in the case where your network consists of several private domains or for a public domain (yours) not to use a public service (ISP, Google ….), which makes it possible not to have to wait for the spread on the internet.


You must create DNS hosts in the firewall and it must be configured as a DNS server on the clients or as a redirector on the DNS servers.


Go to the administration of the firewall, in menu click NETWORK 1 . From the network configuration page go to the DNS tab and in the Routing section of DNS queries click on Add 3 .
DNS configuration

Indicate the DNS name to be routed 1 , then select the DNS server (s) previously added 2 and click Save 3 .

DNS routing is added, now when the firewall receives DNS requests for the lab.intra domain, queries will automatically be sent to the LAB-AD1 server.

How useful was this post?

Click on a star to rate it!

Average rating / 5. Vote count:

We are sorry that this post was not useful for you!

Let us improve this post!

Related Posts

Sophos XG: installation on Hyper-V
In this tutorial, we will have how to install a Sophos XG firewall on a virtual machine with Hyper-V. For this article, I used the Sophos XG home version which is available for free. Prerequisites Download the ISO firewall on the site sophos and reco

Sophos XG high traffic on the BITS application
Symptom The Windows and Office 2016 updates use the operating system BITS to download the updates. The passage in the proxy of the firewall and the antivirus scan "prevents" the download and it runs in a loop saturating the tape.. You can see on the

How to install and configure Windows server routing
In this tutorial, I will explain how to set up routing with Windows Server. I regularly use this role in the different labs that I put in place under Hyper-V. I isolate the test platform with a private switch and I use a virtual machine with two netw

Leave a Comment