Dynamic DNS (DDNS) (2024)

  1. Last updated
  2. Save as PDF

Overview

The Cisco Meraki MX Security Appliance usesDynamic DNS(DDNS) to update its DNS host record automatically each time its public IP address changes. This feature is useful because it allows the administrator to configure applications such as client VPN to access the MX by its hostname which is static instead of an IP address that may change over time.

Note:MX appliancesbound to template networks cannot have their DDNS settings modified.

Note: DDNS hostnamesaretied to the network that the MX belongs to.Moving it to a different organization or network, the hostname will change.

Configuration

To useDynamic DNSon your MX Security Appliance, it must first be set to Routed mode. This is done under Security & SD-WAN >Configure > Addressing & VLANs in Dashboard.

MXs in Passthrough or VPN concentrator mode do not supportDynamic DNS (DDNS) on firmware below MX 16.X

Enabling RoutedMode

Dynamic DNS (DDNS) (1)

Once the MX is set to Routed mode, theDynamic DNSsection will appear at the bottom of the Security & SD-WAN >Configure > Addressing & VLANs page with a link to the Security & SD-WAN > Monitor > Appliance statuspage.

Enabling Dynamic DNS

Once on the Security & SD-WAN > Monitor > Appliance statuspage, select the pencil icon next to Hostname, located between the WAN IP and Serial Number on the left of the page.

Dynamic DNS (DDNS) (2)

A dialog box will appear for configuring Dynamic DNS. Select Enabledin the dialog box and enter a public domain name if necessary, then select Update.

Dynamic DNS (DDNS) (3)


After DDNS is enabled, you can confirm it is working by performing a DNS query for the MX DDNS hostname. Open a command prompt on any workstation and type"nslookup <your dynamic DNS name>." The DNS response should return the current active public IP address of the MX.

Note: The expectedTTL for dynamic DNS records is typically about 10 minutes, so you may need to wait 10 minutes before testing to see accurate results.

Note:If DDNS is in use with an HA pairconfigured with a virtual IP (VIP) behind NAT, DDNS will resolve to the NAT-translated (public) address of themanagement/uplink IP, rather than the NAT-translated virtual IP.

Troubleshooting

Querying theMX DNS hostname

Dynamic DNS (DDNS) (4)

Testing Dynamic DNS Resolution

The following instructions describe how to find out what servers are resolving our dynamic DNS, and query them to see what IP address they are associating to the MX:

  1. Open cmd.exefrom "C:\Windows\System32"on your laptop, and run a "nslookup"

Dynamic DNS (DDNS) (5)

  1. Set query to any and sort it for dynamic-m.com. It will list all the servers used by dynamic-m.com.

Dynamic DNS (DDNS) (6)

  1. This lists the servers serving this dynamic-m site for its host nameslookup. You would be checking if you could search for thehostnamefrom the individual servers.

nslookup [-option] [hostname] [server]

Dynamic DNS (DDNS) (7)

This would help inlearning if the IP address was ever updated on the server and if the problem is the servers not responding to the requests.

Dynamic DNS (DDNS) (2024)
Top Articles
Latest Posts
Article information

Author: Kareem Mueller DO

Last Updated:

Views: 5557

Rating: 4.6 / 5 (66 voted)

Reviews: 89% of readers found this page helpful

Author information

Name: Kareem Mueller DO

Birthday: 1997-01-04

Address: Apt. 156 12935 Runolfsdottir Mission, Greenfort, MN 74384-6749

Phone: +16704982844747

Job: Corporate Administration Planner

Hobby: Mountain biking, Jewelry making, Stone skipping, Lacemaking, Knife making, Scrapbooking, Letterboxing

Introduction: My name is Kareem Mueller DO, I am a vivacious, super, thoughtful, excited, handsome, beautiful, combative person who loves writing and wants to share my knowledge and understanding with you.