Jump to content

DNS + Domain + VPN problem


neptune2
 Share

Recommended Posts

Hello all,

I've a windows 2003 AD with domain name mycompany.com. The PDC runs a DNS server resolving all local address correctly.

When at home, I can connect to my company network with VPN. My problem is if I try to resolv a computer name from my company network like ping server.mycompany.com, Winodws XP use my ISP dns server first and redirect me to www.mycompany.com.

What I want is that if Windows XP detect if I try to resolv to something.mycompany.com it will use the dns received by dhcp on the wan connection, else, use my isp dns.

Sorry for this bad explanantion, english is not my mother tongue.

Thanks in advance,

Neptune

Link to comment
Share on other sites

What kind of VPN Client are you using?

[edit]Your english is great Neptune, but when you say

will use the dns received by dhcp on the wan connection
I assume you mean DHCP from your Router which would be your LAN connection, right?

If I understand right, the PC's on your Local Area Network connect to a Router/Switch which gives them IP addresses and a DNS Server's address via DHCP. Is that correct?

I think it's probably mostly a client configuration issue, unless you're VPN'ing into a Windows Server, in which case there could be some configuration required on both the Server and the Clients.

Link to comment
Share on other sites

Hmm, thanks for such a quick response, let me re-explain back, with more details (was kinda low yesterday evening...)

bigone.mycompany.com (PDC, AD, VPN Server, DNS server) Private IP

|

|

Smoothwall (Linux OS dedicated to firewall and routing, Public IP, forwards usefull ports to bigone)

|

|

Cisco 837 (ADSL)

|

|

Internet

|

|

My ISP

|

|

Cable Modem

|

|

D-Link Router

|

|

My PC

When on the local network at my company, bigone act as a DNS server and resolves correctly local address and public address like forums.neoplanet.co.uk. When deploying AD, we choose mycompany.com as domain name.

When at home, on My PC, I connect to my company with a VPN connection (using the add a new connection wizard from windows XP). When the connection is established, I issue a ipconfig /all and see that I've 4 DNS servers for 2 connection. 2 on my local network connection (those from my provider) and 2 of my company's network (bigone and another one, provided with the DHCP server running on Bigone).

What I'd like to have working is

If I try to resolve xyz.keyware.com

Then use the DNS servers specified in the VPN connection

Else use the DNS servers specified in the local netwsork connecion.

That's it. Why all this? Because we make the mistake to deploy AD with domain name mycompany.com. Because we bougth "mycompany.com" at mydomain.com and mydomain.com redirect everything to www.mycompany.com when trying to connect to xyz.mycompany.com

I hope I've given more important information in this post :-)

Thanks *a* lot in advance for reading and maybe helping ;-)

Kind regards,

Neptune

Link to comment
Share on other sites

So, you're using Microsoft's VPN Client. I want to make sure you're not set up to do split tunneling. Will you be able to get to the Internet from your companie's network when you're VPN'ed? If so, we can turn off split tunneling if it's on, and have all traffic go through the VPN connection.

Link to comment
Share on other sites

Try checking this on your client PC:

Open the VPN Connection by double clicking on it:

post-1455-1112312830_thumb.jpg

Click Properties and the connection's Properties window will open:

post-1455-1112312841_thumb.jpg

Click on the Networking tab, then highlite TCP/IP by clicking on it. Then click Properties. The TCP/IP Properties window will open:

post-1455-1112312803_thumb.jpg

Click on Advanced, and the Advanced TCP/IP Settings window will open:

post-1455-1112312789_thumb.jpg

Make sure Use default gateway on remote network is checked. If it was already checked, please post. If it wasn't, and checking it resolves the problem, please let me know.

Link to comment
Share on other sites

  • 3 weeks later...

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. Privacy Policy