Azure DNS Private Resolver not answering queries from on-premise network

Michael 46 Reputation points
2024-07-09T19:21:57.5366667+00:00

For the most part, the Azure DNS Private Resolver seems to be working. However, when I try to set up a conditional forwarder in my on-premise DNS to the inbound endpoint it fails with an "Unknown error" message. Azure VMs are able to query my internal network and get the correct results. When I use nslookup in d2 debugging mode from my on-premise systems and set the DNS server to be the inbound endpoint, I see the response is set and properly retrieved. However, when I query for a DNS name of an Azure VM, the query is sent, but no response returned. It appears as if the private resolver is blocked from sending these responses by some policy or other setting. The same queries in Azure VM's work as expected. The private resolver is located it a vnet that contains nothing else. I have set up peering between this vnet and the one that contains my VPN gateway.

Thanks for any help.

Azure DNS
Azure DNS
An Azure service that enables hosting Domain Name System (DNS) domains in Azure.
690 questions
{count} votes

Accepted answer
  1. KapilAnanth-MSFT 46,776 Reputation points Microsoft Employee
    2024-07-10T05:11:45.4666667+00:00

    @Michael ,

    Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.

    From your verbatim, I see you are unable to "query for a DNS name of an Azure VM"

    However,

    • May I ask what exactly do you mean by "DNS Name" of a Azure VM?
    • Are you using a Particular/dedicated Private DNS Zone where the VMs are auto registered?
    • Or you are using the internal name resolution provided for a VNET?
    • Are you able to do the same resolution from a VM in Azure?
      • If yes, can you share the nslookup <DNS-Of-VM> and share the entire results from the VM?

    Cheers,

    Kapil


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.