cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
612
Views
0
Helpful
1
Replies

SSLVPN and split tunnel dns issues

pknoops
Level 3
Level 3

Hi,

We are currently beginning to roll out an ASA SSLVPN solution whereby we are using split tunnel. The issue we are now finding out is that our internal developers and qa teams have things like test.joe.com and dev.joe.com that do not resolve properly because there is nothing on the outside that resolves to those urls. When we were using the IPsec client and not using the split tunnel this was not an issue as everything when connected stayed internal. Is there any kind of dns workaround or would we have to eliminate the split tunnel approach to fix this.

Thanks

Pete..

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

You should be able to push the internal dns server information on the group-policy configuration.

Here is the command for your reference:

http://www.cisco.com/en/US/docs/security/asa/asa80/command/reference/d2.html#wp1909146

Hope this helps.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: