Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

DNS Queries Generated When Static Packet Filter Is Removed


View products that this article applies to.

This article was previously published under Q269556

↑ Back to the top


Symptoms

When a static packet filter for Domain Name System (DNS) traffic is defined in Microsoft Internet Security and Acceleration Server with dynamic packet filtering enabled, DNS traffic is able to flow into a network protected by Internet Security and Acceleration Server. However, when the static packet filter for DNS is removed, Internet Security and Acceleration Server is still able to generate DNS queries and receive responses.

↑ Back to the top


Status

This behavior is by design.

↑ Back to the top


More information

Static and dynamic filters serve different general purposes. When you use dynamic filtering, Internet Security and Acceleration Server creates and removes packet filters on the external interface when necessary. As a result, internal clients are able to generate successful queries. Static packet filters, however, are used to receive incoming requests from external clients.

↑ Back to the top


Keywords: KB269556, kbisa2004yes, kbprb, kbenv, kbdns

↑ Back to the top

Article Info
Article ID : 269556
Revision : 3
Created on : 1/15/2006
Published on : 1/15/2006
Exists online : False
Views : 345