I dont believe so.

In any case, DNS is inspected by default on the ASA using a default DNS
policy-map nested in the default global_policy policy-map

policy-map type inspect dns migrated_dns_map_1
 parameters
  message-length maximum 512

policy-map global_policy
 class inspection_default
  inspect dns migrated_dns_map_1

Mark

On Fri, Feb 25, 2011 at 12:35 PM, Pemasiri Devanarayana
<[email protected]>wrote:

> Hi,
>
> When we configure DNS doctoring in the ASA, do we still need to inspect DNS
> as follows:
>
> policy-map global_insp
>  classs  isnpection_default
>  inspect dns
>
> thanks
>
>
> _______________________________________________
> For more information regarding industry leading CCIE Lab training, please
> visit www.ipexpert.com
>
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to