- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-07-2012 01:10 AM
Dear
I am running site to site VPN from site B to site A
site A: 192.168.1.1/24
site B: 192.168.2.1/24
On siteB. I used following DNS in site B DHCP from 5505 ASA.
dhcpd dns 192.168.1.1 202.66.192.68
When the site to site tunnel is working. It is normal DNS requests from site B to site A DNS. however, if the site to site tunnel is disconnected, site B not able to request site A DNS and do not jump to second DNS 202.66.192.68.
Can anyone help to resolve. I want siteB can use secondary DNS: 202.66.192.68 when tunnel is not connected. Thank you
Alan.
Solved! Go to Solution.
- Labels:
-
VPN
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-07-2012 09:31 AM
Hi Alan,
The fact that you're disconnecting your VPN makes me think you don't need a permanent connectivity, so maybe is better idea to setup remote client VPNs and configure the dns-server as VPN group-policy attribute? It gives more DNS flexibility, split-dns feature and so on. Not sure what is the exact requirement, but I don't think the stuff you're trying to achieve is durable with l2l VPN.
Regards
Mariusz
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-07-2012 09:31 AM
Hi Alan,
The fact that you're disconnecting your VPN makes me think you don't need a permanent connectivity, so maybe is better idea to setup remote client VPNs and configure the dns-server as VPN group-policy attribute? It gives more DNS flexibility, split-dns feature and so on. Not sure what is the exact requirement, but I don't think the stuff you're trying to achieve is durable with l2l VPN.
Regards
Mariusz
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-09-2012 09:41 PM
Dear Mariusz
I would like to know is that possible to jump from Primary DNS to Secondary DNS in case VPN tunnel disconnected by any accidentially reason?
Regards
Alan.
