cancel
Showing results for 
Search instead for 
Did you mean: 

DNS not working on one SSID

DNS not working on one SSID

EvanU
New Contributor
Hello all,

My organization has a corporate SSID and a guest SSID. The corporate SSID works perfectly fine. With the guest SSID dns seems to be broken. I have worked very little with Aerohive devices and from what it looks like to me the configuration of the SSIDs can only be linked to one network policy. I'm not sure then, how one SSID can be working and the other broken. Does anyone have suggestions for diagnosing the issue or how to fix it?

Thanks in advance.
4 REPLIES 4

AreckD
Extreme Employee

The DNS you configure in the network policy is for aps, the dns used by clients is configured by dhcp server, so if you are sending guest clients to a different dhcp server then perhaps their dns configuration is different. If you are using a device as a guest dhcp server client, Extreme Networks devices that are DHCP clients can receive a domain name and DNS server IP address through DHCP, although any DNS settings that you enter as part of the network policy dns configuration override those that are dynamically applied.

Finally, I would consider if you are applying an ip firewall on the guest network, our default ip firewall object is configured to specifically allow dns traffic but a custom one might not have that allowance included.

Ash_Finch
Contributor III

Following on from James's point, I presume that you're using a DHCP server that's external to the AP (which is providing the clients with the DNS server address)?

If you connect to the Corp SSID, which DNS server(s) are assigned to the client? Then with the guest, is it using the same DNS server as corp or another? If the same, is it reachable via ping?
Thoughts being
- different DNS servers being given out in the DHCP option, of which the guest DNS server is unreachable. 
- Both using the same DNS server, but is unreachable on the guest VLAN (presuming they're different between SSIDs)

Also, if you set a manual DNS server on a client e.g. 8.8.8.8 does it then work as you'd expect?

EvanU
New Contributor
I believe they are pointing to a local DNS server on the network.

jamesm
New Contributor
Where do your dns assignments come from, locally or isp?
GTM-P2G8KFN