EzVPN with split dns

Unanswered Question
Oct 27th, 2009
User Badges:


I am trying out EzVPN with split dns.

On the IOS EzVPN server, the split-dns is "test.com"

crypto isakmp client configuration group mine

key cisco


pool mine

split-dns test.com

split-dns www.win2003.com

I have connected IOS router as a client and brought up the tunnel with network extension mode.

Now, if I try to ping www.test.com from the EzVPN client (IOS router), it sends the DNS request to the internet DNS server (configured with "ip name-server").

But actually, it should have sent the DNS request to "", the DNS server that was sent by the EzVPN server right?

Also I also don't see the split dns list in "sh crypto ipsec client ezvpn":

client#sh crypto ipsec client ezvpn

Easy VPN Remote Phase: 8

Tunnel name : mine

Inside interface list: Loopback0

Outside interface: FastEthernet0/0

Current State: IPSEC_ACTIVE


DNS Primary:

Save Password: Disallowed

Current EzVPN Peer:

Sorry, I can't share my configuration. But this is straight forward.

Please share your inputs.

I am adding some more observations.

show ip dns view O/P doesn't have "DNS View ezvpn-internal-view parameters"

show ip dns view-list doesn't have "View-list ezvpn-internal-viewlist"

With regards


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)


This Discussion