Solved

DNS across a VPN tunnel

Posted on 2014-03-25
2
412 Views
Last Modified: 2014-03-26
Dear Experts,
      My company has a production environment (domain name = corp.company.com) and an office environment (domain name = office.company.com).   In the production environment, we have a set of Cisco ASA 5515 firewalls (managed by our datacenter) and at the office we have a set of Sonic Wall’s (managed by me).  I worked with the data center engineers to setup a site to site IKE tunnel between the sonic walls and I can now remote desktop and communicate with servers in the corp domain from the office domain and vice versa with no problems.  
      The problem is I can only access my servers on both sides by IP Address.  I realize there needs to be some form of DNS setup between the domains that I don’t fully understand.  I was able to setup a secondary zone on one of my office DNS servers that pulled down a copy of Corp.  I can now use a remote desktop session across the tunnel by using – computername.corp.company.com.   This works from the office to corp but not vice versa.  Do I need to do the same thing on the Corp side or is there just a better way to set all this up.
      Currently, all my servers are Microsoft Server 2012.

Would appreciate any and all help.
Thanks
John
0
Comment
Question by:hexvader
2 Comments
 
LVL 16

Accepted Solution

by:
Dirk Mare earned 500 total points
ID: 39954077
Yes it will work if you create a secondary zone on the domain side. You can also setup DNS forwarders on the domain side to FW request to another DNS server.

DirkMare
0
 

Author Closing Comment

by:hexvader
ID: 39957048
Since you were the only reply Ill give you the points.  I was aware this could be done and once I set it up it did work perfectly. I was just hoping for a better way.
0

Featured Post

Free Tool: Postgres Monitoring System

A PHP and Perl based system to collect and display usage statistics from PostgreSQL databases.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

BIND is the most widely used Name Server. A Name Server is the one that translates a site name to it's IP address. There is a new bug in BIND (https://kb.isc.org/article/AA-01272), affecting all versions of BIND 9 from BIND 9.1.0 (inclusive) thro…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question