VPN Tunnel and DNS forwarder problems

Hello, 

i am having odd behavior that i haven't experienced before.

we are using windows server 2012 as a  domain server, and 2003 with ISA 2006 for VPN tunnel to remote site

under dns preferences i have created a forwarders for remote site dns 

however looks like traffic send to vpn dns goes somewhere else

if i assign a random machine with only a remote vpn site dns, it works 

Also if i flush dns machine connected to our isa gateway is still able to resolve external ip addresses, like google etc...

Thanks for any hints to resolve this issue.

February 18th, 2014 6:03am

Hi,

Does ping work between DNS and the server which DNS forwards request to? Can you telnet from DNS to the forwards on 53 port?

Free Windows Admin Tool Kit Click here and download it now
February 18th, 2014 2:27pm

Hi,

As Vasily mentioned, you must make sure that the network status between internal DNS server ans remote site DNS server.

Best Regards

Quan Gu

February 18th, 2014 10:23pm

Hello, thanks for the answers, 

i did a new test with server 2003, oddly everything works (as before we upgraded to 2012), 

forwarders from 2012 to 2003 to VPN works too, but from 2012 directly i had no luck. 

if i try to input a root hint for remote dns, and resolve it on 2012, i would get an ip from isp's dns, so that gave me an idea to create a new dns zone 

with the name of remote domain and assign remote computers we need to access. (workaround, but works fine)

Remote dns server and network is a combination of various Unix and Linux systems.



  • Edited by Bpremus 5 hours 29 minutes ago
Free Windows Admin Tool Kit Click here and download it now
February 20th, 2014 1:17am

Hello, thanks for the answers, 

i did a new test with server 2003, oddly everything works (as before we upgraded to 2012), 

forwarders from 2012 to 2003 to VPN works too, but from 2012 directly i had no luck. 

if i try to input a root hint for remote dns, and resolve it on 2012, i would get an ip from isp's dns, so that gave me an idea to create a new dns zone 

with the name of remote domain and assign remote computers we need to access. (workaround, but works fine)

Remote dns server and network is a combination of various Unix and Linux systems.



  • Edited by Bpremus Thursday, February 20, 2014 6:19 AM
February 20th, 2014 9:16am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics