[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 702
  • Last Modified:

Sonicwall site to site VPN

Greetings all,

I have been stumbling with the perfect configuration setup for my sonicwall site to site VPN and I hope someone can shine some light on the situation. I will give as many details as possible but if you need more please let me know.

My Infrastructure:

Local Site
T1 MPLS ---> small switch A
small switch A --> Primary Gateway "IPAD"
small switch A --> Sonicwall 2400mx

IPAD = private 192.168.1.1 - public 66.xxx.xxx.98
Sonicwall = private 192.168.1.14 - public 66.xxx.xxx.101 -Primary Wan IP :x1
........................................................ public 50.xx.xxx.225 - Secondary Wan IP :x25


Remote Site
Comcast Cable --> sonicwall tz205 --> core switch
Sonicwall tz205 - private 192.168.120.1 - public - 50.xxx.xxx.xxx
VPN Tunnel to 66.xxx.xxx.101 "local site sonicwall primary WAN"

Everything works well under this setup. The moment I change the tunnel to 50.xx.xxx.225 "local site secondary WAN x25" i loose the ability to resolve host names IE: eagle

I can ping via IP and also by FQDN IE: eagle.cyclops.local

any ideas?
0
Jonathan Woods
Asked:
Jonathan Woods
  • 2
1 Solution
 
mtsdemoCommented:
do you have DNS entries when on the 50 tunnel?
0
 
NetfloCommented:
Hi,

Login to your NSA -> Network -> DHCP Server -> Click Configure on your DHCP scope matching your internal interface -> DNS/WINS -> enter CYCLOPS.LOCAL -> OK

Test and try again after performing IPCONFIG /FLUSHDNS on the local client

Also take a look at your DNS settings for interface X25 and whether that matches X1?
0
 
Jonathan WoodsAuthor Commented:
Sorry for my late response. The issue has been resolved. Under my address objects was a MPLS group which was setup at the initial install which contained all remote and local subnets. As I moved each site over to the new MPLS group "Comcast & T1's" the subnet in migration had to be removed from the first MPLS group and added to the new MPLS group.
0
 
Jonathan WoodsAuthor Commented:
Question resolved by self.
0

Featured Post

Vote for the Most Valuable Expert

It’s time to recognize experts that go above and beyond with helpful solutions and engagement on site. Choose from the top experts in the Hall of Fame or on the right rail of your favorite topic page. Look for the blue “Nominate” button on their profile to vote.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now