Solved

DNS does not resolve correctly via VPN

Posted on 2012-03-29
11
519 Views
Last Modified: 2012-03-30
Our customers use VPN to RDP into their respective workstations on occasion to work. We recently discovered that we can't ping or RDP to computer names; however the FQDN for workstations does work.
0
Comment
Question by:MIT-Techs
  • 6
  • 4
11 Comments
 
LVL 22

Expert Comment

by:chakko
ID: 37784512
2 options I think will solve this.

Setup WINs
Or make sure that there is a DNS suffix configured in the TCP/IP v4 settings on the users computer.  This will be on the Advanced area at the DNS tab.

Add your domain suffix.  Then when they need to access by name it will use the suffix to form a FQDN for dns resolution.
0
 

Author Comment

by:MIT-Techs
ID: 37784533
WINS is configured on the server, but still unable to ping or connect to anything by name.
0
 
LVL 22

Expert Comment

by:chakko
ID: 37784541
what type of VPN are you using.  the VPN client may not be using WINs or may not be able to use the WINs through the tunnel.  

The DNS suffix should make it work if that is possible to configure.
0
 
LVL 22

Accepted Solution

by:
chakko earned 500 total points
ID: 37784545
in the WINs manager can you see the entries for the workstations in there.  Are they registering automatically with WINs?
0
 

Author Comment

by:MIT-Techs
ID: 37784553
Windows PPTP VPN.

It worked for almost a year. We recently decommissioned a domain controller that was the DHCP/DNS server. The new DHCP/DNS server is Server 2008 and everything seems to be configured correct.

DNS is AD integrated BTW and the DHCP is authorized in AD as well.
0
What Security Threats Are You Missing?

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

 

Author Comment

by:MIT-Techs
ID: 37784585
How do I get to the WINS manager in server 2008 r2?
0
 
LVL 22

Expert Comment

by:chakko
ID: 37784917
It should be located in the Administrative Tools area

You should also be able to load the mmc console and then add the snapin for it.
0
 
LVL 22

Expert Comment

by:chakko
ID: 37784930
in the DHCP service you may need to specify the WINS server as a scope option
0
 
LVL 22

Expert Comment

by:chakko
ID: 37784975
Also, check in your Routing and Remote Access, Server Properties on the IP tab

look for a checkbox for Broadcast Name resolution and verify it is enabled.
0
 
LVL 76

Expert Comment

by:arnold
ID: 37786637
As part of the pptp configuration on the client, make sure that the LAN dns servers are listed as well as add as other experts pointed out the LAN ad domain into the list.
0
 

Author Closing Comment

by:MIT-Techs
ID: 37787641
I checked the WINS manager and found the service was not working. I removed and re-added the service. All seems to be working now. Thank you for your help!
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
RDP connection over VPN 4 58
Nameserver and MX Record 2 43
Two factor authentication 6 54
Child Domain and dns suffixes 9 23
Like many others, when I created a Windows 2008 RRAS VPN server, I connected via PPTP, and still do, but there are problems that can arise from solely using PPTP.  One particular problem was that the CFO of the company used a Virgin Broadband Wirele…
I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now