Infoblox’s global team of threat hunters uncovers a DNS operation with the ability to bypass traditional security measures and control the Great Firewall of China. Read about “Muddling Meerkat” and the many other threat actors discovered by Infoblox Threat Intel here.

NIOS DNS DHCP IPAM

Reply

Issue with incorrect DNS records for Anyconnect VPN clients

New Member
Posts: 1
333     0

We are having an issue where clients are not updating DNS records when using VPN.  We have an Cisco Anyconnect  VPN solution and the firewall acts as the DHCP server.  The A records and PTR records are not being updated, which is creating issues for our SCCM team trying to connect to clients on the network.  I'm engaging our firewall team to see if DDNS can be enabled to have the FW send updates on behalf of the client, but so far they are not sure it will solve the issue.  Another option the firewall team and I are discussing is moving the DHCP to the Infoblox server, but there are other potential external issues that may prevent that from working.  Anyone have any other suggestions?   Our grid master is a 1410 DDI and we are running version 8.4.8

 

Thanks for any assistance anyone can provide.

Re: Issue with incorrect DNS records for Anyconnect VPN clients

New Member
Posts: 1
333     0

Have the same issue. Would have been keen to see the resolution on this question.


 

Re: Issue with incorrect DNS records for Anyconnect VPN clients

New Member
Posts: 5
333     0

If configuring static records (Host) in DNS server is not an option, we suggest enabling DDNS in the DHCP server. DHCP server can update the DNS records on behalf of clients. You can start by referring Admin Guide section "Configuring DHCP for DDNS". If you have a lab environemnt, testing the same would help to know if there are any potential issues arising for your clients.

Re: Issue with incorrect DNS records for Anyconnect VPN clients

New Member
Posts: 5
333     0

go to Zone  delegated for workstation DDNS

suppose wks.org.com

 

go to zone properties of this domain ,refer "updates"  and verify "Allow Updats from"

 

there 3 option Non, Named ACL, Set of ACE's

 

depending upon option selection proceed with next action

 

ACL is just restriction in place to allow DDNS 

 

Showing results for 
Search instead for 
Did you mean: 

Recommended for You