Re: external vpn clients connect but dns is resolving with externa

Tech-Archive recommends: Fix windows errors by optimizing your registry



A fellow named Gleo posted an MS KB article in another thread that seems to
have resolved the issue for me:

http://support.microsoft.com/default.aspx?scid=kb;en-us;311218

It involves a registry edit for the VPN client (remote user), but it seems
to work, correctly resolving the public DNS name to the internal IP when
VPNed and to the public IP when not VPNed.

I've also found that wherever the VPN client is, if they receive a public
DNS server as their local DNS (i.e. if the local DHCP is passing out a public
DNS server address) rather than the local gateway as the DNS address (ie.,
the DHCP passing out the internal IP address of the local router/WAP/cable
modem/whatever), then when one VPNs in things seem to resolve correctly. So
you can configure your home network to work, but I'm not sure if airports and
Starbucks and other hotspots pass out a public DNS server to their DHCP
clients or not.

JWM

"Robert L [MS-MVP]" wrote:

> how about the name?
>
> Bob Lin, MS-MVP, MCSE & CNE
> How to Setup Windows, Network, VPN & Remote Access on http://www.HowToNetworking.com
> Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net
> "hex2bin" <hex2bin@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message news:6C25BE91-9621-41A5-AB2D-AC85FE279C77@xxxxxxxxxxxxxxxx
> Yes you can ping the dns server and the mail server by ip.
>
> "Robert L [MS-MVP]" wrote:
>
> > Can the VPN client ping the DNS server? can it ping the mail server by ip?
> >
> > Bob Lin, MS-MVP, MCSE & CNE
> > How to Setup Windows, Network, VPN & Remote Access on http://www.HowToNetworking.com
> > Networking, Internet, Routing, VPN Troubleshooting on http://www.ChicagoTech.net
> > "hex2bin" <hex2bin@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message news:4C381E54-C6AB-45D8-BB23-52C09ADE19BE@xxxxxxxxxxxxxxxx
> > remote clients connect to vpn fine. Ipconfig shows that the ras server dns is
> > correct. however if you ping our mail server it resolves to the outside dns
> > not internal. This only seems to happen when remote clients are getting a ip
> > address assigned remotely that is on our internal class. (ie client at remote
> > location using wireless gets ip address 192.168.0.40 and dns of that network
> > 192.168.0.11 then clients establishes a vpn connection to our server and
> > recieves ip address for the vpn of 192.168.0.206 and dns server address
> > 192.168.0.5) ipconfig /all shows all correctly but when client tries ping say
> > mail.myserver.com it is returning external dns ip instead of internal. Any
> > ideas would be greatly appreciated.
> > Thanks
> >
.



Relevant Pages

  • Re: GPO problems
    ... It was the ISA 2004 firewall client. ... DNS settings and network properties on the server and client computers. ... > Service of SBS is configured to be the DNS server on the problematic ...
    (microsoft.public.windows.server.sbs)
  • Re: WOW - Changing Network Subnet on SBS2003 Got me crazy
    ... VPN and not able to access network shares ... I have tried all this, restarted/started dns & netlogon, cleared server Wins ... Resolve host names from a client machine to access files and map drives ...
    (microsoft.public.windows.server.sbs)
  • Re: DNS While PPTP / IPSec VPN is open
    ... You have set IPSec VPN between SBS server and a remote hardware firewall, ... DNS While PPTP / IPSec VPN is open ... |> Any machine using SBS services must use only the SBS as DNS server. ...
    (microsoft.public.windows.server.sbs)
  • Re: DNS servers to be used
    ... I occasionally have the same problem with my VPN connections. ... I do like the response "There is No DNS server on adapters" the obvious lack ... The dhcp server tells my wireless adapter to use the router ...
    (microsoft.public.windowsxp.network_web)
  • Re: Could someone tell me how to locate things in the network?
    ... So if you do have WINS you can enable WINS lookup on your DNS ... resolve this issue or you need to supply WINS entries tot he client. ... >> recommend doing is looking at a Client that has a VPN connection. ... >> registering into DNS properly on the internal network. ...
    (microsoft.public.isa.configuration)