Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DNS Host traffic through IPSec Tunnel

I have an issue where I need to be able to route a dns host from a pc connected to the vpn through the ipsec tunnel and not allow it to go out to the internet without coming back to main office.

I have a asg105 at client site, asa at main office.

Any help on how to do this is,  is it a firewall rule or a vpn remote network entry?

Thanks


This thread was automatically locked due to age.
  • I need to be able to route a dns host from a pc
    I'm having a hard time understanding what you're saying here.  Are you saying that you want to route DNS lookups from the PC through the S2S VPN?
    __________________
    ACE v8/SCA v9.3

    ...still have a v5 install disk in a box somewhere.

    http://xkcd.com
    http://www.tedgoff.com/mb
    http://www.projectcartoon.com/cartoon/1
  • Clear as mud, lol.  Sorry,  I will try to explain better,  I need to create a static route through the S2S VPN tunnel back to our main office for routing out to the internet. The problem is the dns name will resolve to the outside ip based on how it is currently setup. 

    So the flow would need to look like this,  pc-->utm-->asa-->website.

    I need to force the request to follow that route through the vpn.
  • Sorry, that's still not enough detail to give a precise response. What are the Local/Remote networks defined in the S2S VPN?  Do you want only one PC's web accesses to go through the tunnel, all remote accesses to one site to go through the tunnel, or ???

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA