Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN DNS-Problem

Hello,


i have a Problem with my clients which are connecting with SSL VPN client. At my Domain-Controller the clients became the same ips :-(

When Client R716 is connecting at 8 o Clock, he gets 10.242.2.10 then he disconnects and later Client R722 is connecting and the DNS entry is often the same ip.

Why? And what can i do?


Greetings

Alex



This thread was automatically locked due to age.
Parents
  • Good Morning,

    at Remote Access -> Advanced i have the DNS-Server (DomainController) and the IP of the UTM9 right?
    These SNAT: amayer (User Network) -> any -> int-LAN-MZV
    amayer-10.243.2.113
    These DNAT: int-LAN-MZV->any->amayer-10.243.2.113
    amayer (user Network)

    At the UTM9 my Client gets an IP 10.242.2.6 and this is what is shown as DNS-Entry at the Domaincontroller. When my client connects the next time he gets an other 10.242.2.xx IP. I have thaught that the DNS-Entry will ever be the 10.243.2.113, isnt it? How can i get the DNS-Entry at the DC only once, because it is shown many times:
    Client R711 - 10.242.2.6 - 28.01.2016 - 8 o clock
    Client R712 - 10.242.2.6 - 27.01.2016 - 7 o clock

    Do you know what i mean?

    greetings
    Alex
Reply
  • Good Morning,

    at Remote Access -> Advanced i have the DNS-Server (DomainController) and the IP of the UTM9 right?
    These SNAT: amayer (User Network) -> any -> int-LAN-MZV
    amayer-10.243.2.113
    These DNAT: int-LAN-MZV->any->amayer-10.243.2.113
    amayer (user Network)

    At the UTM9 my Client gets an IP 10.242.2.6 and this is what is shown as DNS-Entry at the Domaincontroller. When my client connects the next time he gets an other 10.242.2.xx IP. I have thaught that the DNS-Entry will ever be the 10.243.2.113, isnt it? How can i get the DNS-Entry at the DC only once, because it is shown many times:
    Client R711 - 10.242.2.6 - 28.01.2016 - 8 o clock
    Client R712 - 10.242.2.6 - 27.01.2016 - 7 o clock

    Do you know what i mean?

    greetings
    Alex
Children
  • Hi, Alex, and welcome to the UTM Community!

    Since the second user only gets that IP after the first user has signed off, there shouldn't be any problem.  What difficulty is this causing you, or were you just worried that this might be an indication of a problem?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA