Fortinet white logo
Fortinet white logo

Administration Guide

Configuring Route 53 resolver rules

Configuring Route 53 resolver rules

You can share AWS Route 53 DNS forwarding rules with your FortiGate CNF instances. This allows FortiGate CNF to resolve DNS addresses in your environment instead of resolving them independently.

To configure and share Route 53 forwarding rules:
  1. In AWS Route 53, configure DNS forwarding rules:

    1. In AWS Route 53 create an outbound endpoint for DNS requests.

    2. Create a rule forwarding DNS requests through the outbound endpoint to your DNS server.

    3. In AWS Resource Access Manager, share the DNS forwarding rule with the FortiGate CNF instance AWS account.

  2. In the FortiGate CNF console, add the forwarding rule to a FortiGate CNF instance.

    1. In CNF Instance, select an instance and click Edit.

    2. In Configure Route53 Resolver Rules, click New.

    3. Enter the Resolver Rule ID and Resource Share ARN of the shared rule, then click OK.

      The rule is attached to the VPC where the FortiGate CNF instance is deployed. This rule is used for forwarding DNS requests to the specified DNS server.

Configuring Route 53 resolver rules

Configuring Route 53 resolver rules

You can share AWS Route 53 DNS forwarding rules with your FortiGate CNF instances. This allows FortiGate CNF to resolve DNS addresses in your environment instead of resolving them independently.

To configure and share Route 53 forwarding rules:
  1. In AWS Route 53, configure DNS forwarding rules:

    1. In AWS Route 53 create an outbound endpoint for DNS requests.

    2. Create a rule forwarding DNS requests through the outbound endpoint to your DNS server.

    3. In AWS Resource Access Manager, share the DNS forwarding rule with the FortiGate CNF instance AWS account.

  2. In the FortiGate CNF console, add the forwarding rule to a FortiGate CNF instance.

    1. In CNF Instance, select an instance and click Edit.

    2. In Configure Route53 Resolver Rules, click New.

    3. Enter the Resolver Rule ID and Resource Share ARN of the shared rule, then click OK.

      The rule is attached to the VPC where the FortiGate CNF instance is deployed. This rule is used for forwarding DNS requests to the specified DNS server.