ZIA Linux DNS Issues

Hi :),

I have a really weird issue with ZIA on Debian 11 with Gnome desktop.

When ZIA is connected, I cannot ping any FQDN on local network neither access on local webserver.
However internet works great, google, etc… ZIA status is “trusted network”.

My DHCP gives 3 DNS servers, put in /etc/resolv.conf

If I go into the network manager (nmcli, or with GUI) I see DNS are set automatically.
Now, if I disable automatic DNS and put THE SAMES DNS that I have in /etc/resolv.conf, I can access on my local network with FQDN through ZIA, but I switch in off-trusted network, so no internet…

I really don’t understand this issue :smiley:

If you have any idea, you are welcome ^^

Hi,

So what is your “on trusted network” criteria defined as or does it represent your office LAN ?
How have you configured your ‘Forwarding Profile’ for the “on trusted network”? (Tunnel, Tunnel with local proxy or None ?)

G

Eglyn - G-Man8 seems to have the right idea. Specifying a trusted network would designate the range you don’t want ZCC to resolve. The point of the automatic DNS where ZCC resolves all DNS (both internal and external hostnames) is that if it didn’t work that way, a user could input their own DNS address for resolution and use an internal domain to resolve to any external host they wanted, thus bypassing the policy specified in ZIA for that URL (e.g. A record: internal.gambling.com 200.100.50.1 would potentially be a way to get to gambling.com even though gambling.com was blocked on ZIA).