Daniel L. Miller wrote:
Let's back up a sec. On your firewall host - which I am assuming is directly connected to your Internet service - if the only items you have in your resolv.conf are your domain line and your isp's two DNS servers, is the lookup speed still poor?
Next question - paste the output of the following command from the firewall: route -n -- Daniel