Unable to connect to CVO to AD: DNS Unreachable
Applies to
- Cloud Volumes ONTAP (CVO)
- ONTAP 9
- Google Cloud Platform (GCP)
- Active Directory (AD) Integration
Issue
After deploying a CVO instance in Google Cloud, attempts to connect to Active Directory fail. The dnscheck command returns an operation timeout, and DNS traffic is not observed from the ONTAP Logical Interface (LIF) to the AD/DNS server, despite successful pings.
Log Output Example:
Cluster1::> vserver services name-service dns check -vserver svm01Name ServerVserver Name Server Status Status Details-----------------------------------------------------svm01 10.10.10.10 down Operation timed out.
- Ping to DNS server is successful.
- DNS queries do not reach the server (confirmed by packet trace).
- Other VMs in the same subnet (with same firewall tags) can reach AD.
