I'm running a 3020 concentrator with 4.7.2.E and SSL VPN client 126.96.36.199. Sometimes it works fine. Other times, DNS is not working. I receive the correct DNS entries, I can ping the DNS servers, I connect and do nslookup, but I cannot use IE, outlook, ping by FQDN, etc.
I may want you to send me the following information:
- Network Topology
- Where is your DNS located? (inside or outside)
- Specify the traffic flow
- DNS logs on vpn3020
As one of my suggestions, have you tried doing Split DNS?
Split DNS Names
Split DNS lets an internal DNS server resolve a list of centrally-defined Local Domain Names, while ISP-assigned DNS servers resolve all other DNS requests. It is used in split-tunneling connections; the internal DNS server resolves the domain names for traffic through the tunnel, and the ISP-assigned DNS servers resolve DNS requests that travel in the clear to the Internet.
The VPN Concentrator does not support split-DNS for Microsoft VPN Clients; however, it does support split DNS for the Cisco VPN Client operating on Microsoft Windows operating systems.
Enter each domain name to be resolved by the internal server. Use commas but no spaces to separate the names.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...