cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
983
Views
5
Helpful
3
Replies

IPsec VPN dont resolve DNS

ovidio.catrina
Level 1
Level 1

Hi

I have the client 5.0.0.7.0410

i can connecto to the vpn without problems but when I try to make a DNS query it gives me an error.

so if i do

nslookup www.google.com it fails

nslookup.com someinternalserver.domain it fails

if i do ping 192.168.54.X (ip of the dns) it works

if i do ping dnsservername it fails

if i do ping -a 192.168.54.X it works and well, it resolve even the name of the server.

so i googled a bit and saw that this was a bug of the client 4.0 adn later they fixed it.

i actualy have 2 dns servers configured for the tunnel and none of them are working.

someone have a hint for this¿?

thank you

3 Replies 3

Jennifer Halim
Cisco Employee
Cisco Employee

Can you share the VPN server configuration.

Do you have any vpn-filter configured that might be blocking access for dns resolution?

I managed to fix it.

It is a bug on ASA, if you configure split-dns value and DNS value on the group it will fail.

I made a no split-dns value, reconected to the vpn and started to work.

Great, thanks for the update.