cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
299
Views
5
Helpful
1
Replies

AnyConnect clients do not have the current DNS server ip addresses

Barry McKinley
Beginner
Beginner

We have a new DNS server. I have changed the DNS server IP address in the ASA 5512 using ASDM. On the clients ipcofig/all shows the ip addresses of the old DNS servers.

 

Show run for the ASA 5512 I see;

 

dns server-group DefaultDNS

 name-server 10.42.5.22          [current DNS server]

 

If I search for the old DNS server ip addresses I find then here in show run;

 

group-policy acme-EMPLOYEES attributes

 dns-server value 10.42.5.26 10.42.5.27

 

Which command do I use to update the group-policy dns-server attributes?

 

thank you Barry

1 Accepted Solution

Accepted Solutions

Rob Ingram
VIP Expert VIP Expert
VIP Expert

@Barry McKinley 

The AnyConnect users will receive the DNS server settings from the group policy, you will need to modify accordingly.

 

The DefaultDNS object you previously modified defines the DNS servers to query when performing DNS lookups from the ASA itself.

View solution in original post

1 Reply 1

Rob Ingram
VIP Expert VIP Expert
VIP Expert

@Barry McKinley 

The AnyConnect users will receive the DNS server settings from the group policy, you will need to modify accordingly.

 

The DefaultDNS object you previously modified defines the DNS servers to query when performing DNS lookups from the ASA itself.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers