Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Multiple Search Domains for VPN ?

Hi everyone,

I'm trying to add multiple search domains in the Remote Access > Advanced tab but every combination of delimiter I have tried doesn't seem to work.

Is there another place where I can specify multiple domains?

Thanks


This thread was automatically locked due to age.
  • That's not possible.  What problem are you trying to solve?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi Bob,

    We have a pretty complicated hostname naming conventions that includes information about the host in a multi-level domain fashion.

    For example:

    server1.live.internal.us-west-1.aws.company.com
    server1.beta.internal.us-west-2.aws.company.com
    server1.dev.internal.us-west-1.aws.company.com

    When logging into the VPN, I want to be able to access hostname by server1.live or server1.beta. I originally wanted to use multiple search domains. Can't do it, so I tried creating CNAMEs removing some of the information. For example:

    server1.live.internal.aws.company.com  CNAME to the FQDN

    when putting internal.aws.company.com inside the search domain field, server1.live dosen't resolve, but the CNAME and FQDN does, so I know it's hitting ROUTE53. 

    Hope that makes sense. Thanks for taking the time out to respond.
  • Thanks for posting your solution to help others faced with a similar challenge.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Actually Bob, my work around doesn't quite work as expected. My goal is to able to resolve the name using a shortened version, with the search domain "kicking in".

    Unfortuately, it does not traverse additional domains. so if i made server1.internal.aws.company.com, and try to resolve server1, it will work.

    If i created a DNS entry for server1.live.internal.aws.company.com, and try to resolve server1.live, it will not.
  • Had to resort to asking my clients to add search domains to their local machines. Ugly and impossible to manage, but there are only 4 of us. I was going to setup a bind instance for forwarding but nobody was feeling that one. Oh well. [:D]
  • You might make a suggestion at UTM (Formerly ASG) Feature Requests: Hot (1308 ideas).

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?