Skip to main content

Posts

Showing posts from July, 2016

Deny inbound UDP from x.x.x.x/highport to x.x.x.x/53 due to DNS Query

Where to begin with this travesty... had to switch from AT&T to Verizon so that I could use tethering at the office I work at.. and "so it begins..." I have a Samsung SCS-SU01 which Verizon provided because I have essentially no service in my home.  When I attempted to configure/enable the device it was responding rather strange.  Specifically the GPS indicator would not change to "blue" - indicating it could not get GPS?  Anyhow, that was NOT the case, the transponder was outside via the extender cable with a clear line of sight to the sky. I loaded my ASDM to see if I could tell what was going on and noticed # Deny inbound UDP from x.x.x.x/highport to x.x.x.x/53 due to DNS Query which seemed very odd since my DNS server is on the same subnet as my VZW device. Applied the following rule and the DNS issue went away. same-security-traffic permit  intra-interface Now... I need to allow IPsec-passthru (I think?) Cisco ASA ...