Hi Team,
I am trying a scenario wherein customer already has a ZTNA solution from zscaler and we are going to deploy Harmony IA. So, customer is using zscaler for accessing internal resourced while harmony IA is going to prevent user's internet behaviour.
Now the confusion is - About DNS
Which DNS will be used in this case?
I see CheckPoint Harmony is going to tunnel all the DNS queries
So, in that case if customer is accessing internal resources using FQDN with his internal domain name; I guess checkpoint will resolve it. Since the all the DNS queries are being tunnel by checkpoint for internet access.
Even if I try bypassing those domains e.g. example.local someone has to resolve the FQDNs associated with exmample.local then those will be bypassed.
The main issue I believe will be DNS traffic routes.
Please advise
TIA
Blason R
Thanks and Regards,
Blason R
CCSA,CCSE,CCCS