RE: split dns

From: Richard Dumoulin (Richard.Dumoulin@vanco.fr)
Date: Wed Jun 29 2005 - 21:04:17 GMT-3


Christopher thx for the reply. The doc says that by default the dns queries
go through the Internet,

-- Richard

-----Original Message-----
From: Christopher M. Heffner [mailto:cheffner@certified-labs.com]
Sent: Thursday, June 30, 2005 1:56 AM
To: Richard Dumoulin; ccielab@groupstudy.com
Subject: RE: split dns

Setup the Easy VPN Server to pass the DNS parameter via the mode
configuration phase 1 message.

Once the client has the DNS server ip address then by default all DNS
queries will go only to that server.

The fun part is when you want only certain dns queries to go to the
corporate dns server via the vpn tunnel and then the remaining dns
queries to go to the ISP.

In this case you then need to setup the split-dns rule for which domain
and/or sub-domains for the dns queries should go to the VPN DNS server.

HTH,

Christopher M. Heffner, CCIE 8211, CCSI 98760
Strategic Network Solutions, Inc.
VP of Internetworking Technologies

www.certified-labs.com

"Complete CCIE R&S and Security Online Rack Rentals"

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Richard Dumoulin
Sent: Wednesday, June 29, 2005 4:42 PM
To: ccielab@groupstudy.com
Subject: split dns

Anyone knows how to make a VPN client send his DNS requests only via the
IPSec tunnel in an Easy VPN environment?
 
Thx
 
-- Richard
 
 

**********************************************************************
Any opinions expressed in the email are those of the individual and not
necessarily the company. This email and any files transmitted with it
are confidential and solely for the use of the intended recipient. If
you are not the intended recipient or the person responsible for
delivering it to the intended recipient, be advised that you have
received this email in error and that any dissemination, distribution,
copying or use is strictly prohibited.

If you have received this email in error, or if you are concerned with
the content of this email please e-mail to:
e-security.support@vanco.info

The contents of an attachment to this e-mail may contain software
viruses which could damage your own computer system. While the sender
has taken every reasonable precaution to minimise this risk, we cannot
accept liability for any damage which you sustain as a result of
software viruses. You should carry out your own virus checks before
opening any attachments to this e-mail.
**********************************************************************



This archive was generated by hypermail 2.1.4 : Wed Jul 06 2005 - 14:43:45 GMT-3