Our employees use a cisco IPSEC client to connect to our 5520 for VPN connectivity. This system has been up and working for 3 years. Now we're getting intermittent DNS issues reported. When an employee connects from home sometimes the employee's computer will use their ISP's DNS servers instead of our internal DNS servers that are listed in the group profile. This does not happen every time. Are ISP's starting to do something that is affecting the way DNS works over VPN? Please help.
It affects some users not all. It's very difficult to recreate. And split tunneling is enabled, and default domain is specified. I'm not sure about the split dns domains. Where is that configured in the ASDM?
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...