Re: silly doubt abt isp redundancy hi thanks a lot for ur reply. so u mean to say the isp dns server will forward the dns request to the enterprise dns server???? . in that case i will also have to do a static nat for the internal dns server and permit traffic to it in the policy right ???. in the internal dns server i will be mapping the same domain to 2 different ip address right. so now when my internal users query the internal dns server for the website the dns will forward them the 2 public ip;s. so in this the internal users will send the traffic out and then the traffic will come back in. is there a way wherein the internal users will access the same domain on their private address and internet users access the website on their public address. in cisco there is dns doctoring for the same. but i guess that;s not there with checkpoint. any ideas over the same ????. regards sebastan |