Finally an update in SR#6-0001976805 from CP:
Currently, it doesn't seem a bug but looks more as a failure with the DNS Resolver.
Please follow these steps to restart the DNS resolver:
Run the command # killall wsdnsd
Push policy.
To confirm it is working, please verify the 3 kernel table for resolver
#fw ctl multik print_bl dns_reverse_domains_tbl
#fw ctl multik print_bl dns_reverse_cache_tbl
#fw ctl multik print_bl dns_reverse_unmatched_cache
In case the restart will not solve the alerts of the DNS, please proceed with debugs of
the wsdnsd daemon:
Ilya_Yusupov, any comment ?
CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist