<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DNS problem in Anyconnect client in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979304#M401540</link>
    <description>&lt;P&gt;I configured the Anyconnect vpn on the ASA device and I enabled split tunneling with ACE rules to tunnel traffic that matches my INTERNAL and DMZ networks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I set the DNS server to my ISP's provider.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to get any dns when connected with a client, only workaround I have is to put my DNS to 8.8.8.8 and it will work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My goal is I would like to use either the dns of the client, or send dns through my asa and use my internal dns.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't want to put DNS1 as my ISP's, and DNS2 as a public DNS... I find it messy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've provided print screens to show my set up with ASDM.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 23:35:23 GMT</pubDate>
    <dc:creator>Brendan Wood</dc:creator>
    <dc:date>2019-03-11T23:35:23Z</dc:date>
    <item>
      <title>DNS problem in Anyconnect client</title>
      <link>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979304#M401540</link>
      <description>&lt;P&gt;I configured the Anyconnect vpn on the ASA device and I enabled split tunneling with ACE rules to tunnel traffic that matches my INTERNAL and DMZ networks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I set the DNS server to my ISP's provider.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't seem to get any dns when connected with a client, only workaround I have is to put my DNS to 8.8.8.8 and it will work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My goal is I would like to use either the dns of the client, or send dns through my asa and use my internal dns.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't want to put DNS1 as my ISP's, and DNS2 as a public DNS... I find it messy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've provided print screens to show my set up with ASDM.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:35:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979304#M401540</guid>
      <dc:creator>Brendan Wood</dc:creator>
      <dc:date>2019-03-11T23:35:23Z</dc:date>
    </item>
    <item>
      <title>DNS problem in Anyconnect client</title>
      <link>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979305#M401541</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Brendan, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So you dont want your DNS to be tunneled is that correct?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Jul 2012 07:32:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979305#M401541</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2012-07-27T07:32:24Z</dc:date>
    </item>
    <item>
      <title>DNS problem in Anyconnect client</title>
      <link>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979306#M401542</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yeah I'm asking 2 things here.&amp;nbsp; I want to learn how to do this both ways.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First of all, How can I tunnel that dns request so it hits my isp's server through my own network?&amp;nbsp; My ISP's dns's are only accessible to people directly on the network so I assume it needs to be tunnelled and natted or something like that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, is there a way to set up the vpn so that my client will use it's own dns it was using prior to connecting to easyvpn?&amp;nbsp; Eg:&amp;nbsp; if I was on a cell phone using the cell phone provider's dns, I want to still use the same dns and tunnel only my lan/dmz traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Jul 2012 14:59:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979306#M401542</guid>
      <dc:creator>Brendan Wood</dc:creator>
      <dc:date>2012-07-27T14:59:37Z</dc:date>
    </item>
    <item>
      <title>DNS problem in Anyconnect client</title>
      <link>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979307#M401543</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bro&lt;/P&gt;&lt;P&gt;You'll need to enable the split dns command available in your Cisco ASA FW. Here's a sample&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;group-policy NETWORK_ADMIN attributes&lt;/P&gt;&lt;P&gt; dns-server value 10.10.10.4 202.188.1.5&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value ACL_NETWORK_ADMIN&lt;/P&gt;&lt;P&gt; default-domain value cisco.com&lt;/P&gt;&lt;P&gt; split-dns value cisco.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P/S: If you think this comment is helpful, please do rate them nicely &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 29 Jul 2012 03:31:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/dns-problem-in-anyconnect-client/m-p/1979307#M401543</guid>
      <dc:creator>Ramraj Sivagnanam Sivajanam</dc:creator>
      <dc:date>2012-07-29T03:31:21Z</dc:date>
    </item>
  </channel>
</rss>

