Re: Help With DNS Through VPN



First of all your setup is clear now. Thanks for providing the additional
info - without that these exercises become overly complicated sometimes.

> Must be routing everything but DNS queries. Port 53 UDP/TCP is open on
> the ISA firewall OK.

How do you mean? With ISA2000 you need to create a packet filter allowing
access to the external interface for DNS traffic (incoming 53 UDP for
queries, incoming 53 TCP for zone transfers). This is what you did?

And, you do NOT have a routing issue as proven by the fact that you can
"touch" the SBS external NIC for your RDP connections.
protocol.

>>> Thie client gets the correct IP address of the DNS server but it doesn't
>>> work

So in this case that would be the external IP address of the SBS box. That
is where your DNS server resides I understand (and then you need the packet
filter as described above). If however you're talking about a DNS server
_behind_ your SBS (on the internal LAN) then you need a server publishing
rule instead, which would forward traffic to the internal DNS server as it
arrives at the external SBS NIC.


Virgil


.



Relevant Pages

  • Re: SBS2003 - Cannot restore GPO following Article 888943
    ... another installation of SBS 2003? ... it from another SBS 2003 installation, it will cause many known issue, ... Also I found your DNS setting on the SBS server have another DNS server ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: DNS While PPTP / IPSec VPN is open
    ... You have set IPSec VPN between SBS server and a remote hardware firewall, ... DNS While PPTP / IPSec VPN is open ... |> Any machine using SBS services must use only the SBS as DNS server. ...
    (microsoft.public.windows.server.sbs)
  • Re: DNS While PPTP / IPSec VPN is open
    ... I typically configure Remote Access to SBS ... After connected I start PPTP Windows VPN to login to SBS server. ... Any machine using SBS services must use only the SBS as DNS server. ...
    (microsoft.public.windows.server.sbs)
  • Re: CEICW Fails
    ... You can go into the DNS server on the SBS box and click on forwarders ... My real problem here is not CEICW. ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)
  • Re: Companyweb+ISA2004 req authentication-only admin can log in
    ... You need to add IP of SBS as DNS server on client computer actually. ...
    (microsoft.public.windows.server.sbs)