cancel
Showing results for 
Search instead for 
Did you mean: 

Junos Pulse cannot resolve internal addresses - DNS issues

meh_
Frequent Contributor

Junos Pulse cannot resolve internal addresses - DNS issues

Hi I've got Junos Pulse vpn working on an iPad connecting into a MAG2600. I have spilt tunneling enabled. I can connect to external addresses (eg. Google) but I can't resolve anything internally. On a Windows laptop split tunneling doesn't work at all. I can't resolve anything externally or internally. Any ideas where I might be going wrong? It's been doing my head in. Its configured to use the IVE dns settings. I'm sure I've got a misconfiguration somewhere so I'm hoping someone could put me in the right direction. Thanks
7 REPLIES 7
SonicBoom_
Regular Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

are both your networks 192.168.x.x?
meh_
Frequent Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

Not sure what you mean by 'both'? The addresses the IVE give out to the VPN clients are on the 192.168.x.x. The internal and external interfaces of the IVE are also on a 192.168.x.x but different subnets. Internally our addresses are on 10.x.x.x subnets.
SonicBoom_
Regular Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

not sure why i'm having a brain fart trying to remember how to explain this, but i beleive it has to do with the route from 192.168.x.x to 192.168.x.x or there is no route from your external 192.168.x.x to your 10 network. that is where i would start looking. sorry i couldnt break it down further.

meh_
Frequent Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

Well there's a default route configured on the device which sends the traffic to the router that knows how to get to the right destination.
zanyterp_
Respected Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

are your dns servers configured in your ACL? are your dns servers in your split tunneling policy? on your desktop, what does your wireshark trace show on both adapters while the tunnel is up? what does your tcp dump show when you connect over the tunnel?

meh_
Frequent Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

The ACL's look fine. I've put a rule in to enable DNS.

I've noticed when doing an IPCONFIG that the DNS settings a blank, like it's not known. That possibly why DNS resolution is not working. The question is now why does the client device not know what it's DNS settings are. I've tried the option of using the IVE DNS Settings, and manually entering the DNS configuration into the NC Connection Profile section.

zanyterp_
Respected Contributor

Re: Junos Pulse cannot resolve internal addresses - DNS issues

that would be a problem, yes. when you do nslookup or dig on the PC, what do you see? is this on all flavors of windows or just a specific version?