Configure DNS and WINS Servers for Mobile VPN with IKEv2

In Fireware v12.2.1 or higher, for DNS and WINS resolution on Mobile VPN with IKEv2 clients, you can select to:

  • Assign or not assign the Network (global) DNS/WINS settings to mobile clients
  • Assign DNS and WINS settings specified in the Mobile VPN with IPSec configuration to mobile clients

For more information about how DNS is used for lookups over a mobile VPN connection, see DNS and Mobile VPNs.

DNS forwarding is not supported for mobile VPN clients.

In Fireware v12.2 or lower, you cannot configure DNS and WINS settings in the Mobile VPN with IKEv2 configuration. Clients automatically receive the DNS and WINS servers specified in the Network (global) DNS/WINS settings on the Firebox. The domain name suffix is not inherited. Although you can specify up to three Network DNS servers, mobile VPN clients use only the first two in the list. For information about the Network DNS/WINS settings, see Configure Network DNS and WINS Servers.

For IKEv2 Mobile VPN clients, the Domain Name specified in the network DNS settings on the Firebox is not used as a domain name suffix. You can manually assign the DNS servers your PC uses for an IKEv2 VPN client connection, and specify the DNS suffix the client computer uses to resolve host names when it is connected to the VPN. For more information, see the Knowledge Base article, Configure DNS settings for L2TP or IKEv2 VPN clients.

Give Us Feedback  ●   Get Support  ●   All Product Documentation  ●   Technical Search