Solved

Cisco VPN clients unable to resolve names through VPN connection

Posted on 2014-04-05
4
1,027 Views
Last Modified: 2014-04-09
Hello - we just recently changed Operations Masters from our old 2003 AD/DNS server to a new 2008 AD/DNS server that we've been using on the network for some months now, and are now trying to switch the network onto for the primary AD server, so the 2003 server can soon be decommisioned.  AD and DNS works fine on the network with local desktops and servers, but remote laptop users are having naming resolution problems through their VPN connection.  In the ASDM, the DNS Client setting has the old DNS server, as well as the new one added to it, but it does not help.  The strange thing I am seeing is that no matter what I set for the DNS servers in the ASDM, I continue to see old entries on an IPCONFIG /ALL command on clients when connected via VPN.  I cannot figure out where the old entries are coming from.  Here is a screenshot link to show you the DNS settings that seem to be stuck.  For reference - 192.168.1.134 is our old 2003 server, 192.168.1.7 is an old secondary AD server which no longer exists and should be removed, and the new server is 192.168.1.9 (not showing).  
http://screencast.com/t/Tko8ehX2N    (link to screenshot)
0
Comment
Question by:Damian_Gardner
  • 2
  • 2
4 Comments
 
LVL 57

Expert Comment

by:Pete Long
ID: 39981114
Brave the command line you will have it fixed on no time

what VPN? IPEC or AnyConnect/SSL?

find the gorup policy thats assigned to your VPN

show group-policy 

Open in new window


will tell you, lets say its called MY-VPN-POLICY

simply issue a

group-policy MY-VPN-POLICY attributes
dns-server value 192.168.1.1 192.168.1.2
default-domain value yourdomain.local

Open in new window


obviously inset your DNS/Domain Values

Pete
0
 

Author Comment

by:Damian_Gardner
ID: 39982043
tried this and it worked!  Thank you Pete.
0
 
LVL 57

Accepted Solution

by:
Pete Long earned 500 total points
ID: 39982850
Thanks Damien, is there anything else I can help you with ?


Pete
0
 

Author Closing Comment

by:Damian_Gardner
ID: 39989162
I thought I closed this.  sorry.
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

I wrote this article to explain some important DNS concepts that should be known to avoid some typical configuration errors I often see in forums. I assume that what is described here is the typical behavior of Microsoft DNS client. I don't know …
This is an article about my experiences with remote access to my clients (so that I may serve them) and eventually to my home office system via Radmin Remote Control. I have been using remote access for over 10 years and have been improving my metho…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now