Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


davidesharpe

7 posts

Wannabe Geek


#154469 29-Oct-2014 10:48
Send private message

Hi, 

   I'm on Slingshot , and use GlobalMode successfully, but I have found that it stops working when I connect to another VPN I use (Sonic Wall to an office in the states). Obviously when this VPN is established it adds in new DNS settings (supposedly for that VPN and beyond), and these are interferring with the Slingshot Global Mode DNS's . 

  Does anyone know how to fix this ? Maybe some kind of routing to ensure that certain traffic will always go through the Slingshot DNS's 

  Cheers

Create new topic
NZCrusader
646 posts

Ultimate Geek
+1 received by user: 230


  #1164247 29-Oct-2014 12:39
Send private message

Here are a few potential solutions.


Solution #1

How it works:
- Hosts file is checked before remote DNS (do this on the windows / linux PC itself).
- When you need to connect to the remote office website(s) over the VPN, it is resolved locally to the static mapping in the hosts file.


Actions:
- First learn the IP(s) of the web server(s) hosting the remote office's sites.
- Edit the host file on the PC ( http://en.wikipedia.org/wiki/Hosts_%28file%29 )
- Create a summary route on the sonic wall box (or specific routes if required) for the remote branch, forcing the branch only traffic to use the VPN tunnel.  (Look up your vendors documentation on how to do this as there is an assortment of different configurations.)






Solution #2  (Much better, but no current examples of how to implement)

How it works:
- DNS lookups for destinations at the remote office will use the VPN DNS.
- DNS lookups for destinations for the rest of internet traffic will use the Slingshot DNS.


Actions:
- Not sure, never done this myself. But it involves what is known as "split DNS".
- There might be some control for this under the microsoft ethernet interface TCP/IP controls.  (If I find anything I will update the thread)
- I would anticipate that there should be something for mapping domains to specific DNS servers.






Solution #3 (Unverified / Experimental)

How it works:
- Microsoft windows will first try to resolve the web address via the primary DNS server.
- If the sites across the VPN cannot be resolved via the first DNS server, it will then use the second DNS server.
- Downside is that you lose the redundancy by having the second DNS server in case Slingshots first one goes down.


Actions:
- Set the primary DNS on the router as the Slingshot DNS server.
- Set the secondary DNS server on the router as the VPN DNS server.




NZ / AU Battlefield 4 Gaming Community
http://www.sonsofvalour.net/forums/forum.php



davidesharpe

7 posts

Wannabe Geek


  #1164437 29-Oct-2014 15:50
Send private message

Hi, 

   Thanks for the reply, that gives me some ideas to play with.

   Just FYI if it is of any help.

  ipconfig /all shows

  PPP adapter SonicWALL SSL-VPN NetExtender:
  DNS Servers . . . . . . . . . . . : 195.135.3.15
                                             195.135.3.230

  & 

  Wireless LAN adapter Wireless Network Connection 3:
  DNS Servers . . . . . . . . . . . : 202.180.64.10
                                             202.180.64.11

   If I understand #3 correctly you are saying set the DNS on both adapters to 202.180.64.10 and 195.135.3.15 ?

Cheers
 
 


NZCrusader
646 posts

Ultimate Geek
+1 received by user: 230


  #1164502 29-Oct-2014 17:11
Send private message

davidesharpe: Hi, 

   Thanks for the reply, that gives me some ideas to play with.

   Just FYI if it is of any help.

  ipconfig /all shows

  PPP adapter SonicWALL SSL-VPN NetExtender:
  DNS Servers . . . . . . . . . . . : 195.135.3.15
                                             195.135.3.230

  & 

  Wireless LAN adapter Wireless Network Connection 3:
  DNS Servers . . . . . . . . . . . : 202.180.64.10
                                             202.180.64.11

   If I understand #3 correctly you are saying set the DNS on both adapters to 202.180.64.10 and 195.135.3.15 ?

Cheers
 
 




That's right.

Its a gamble (cringe worthy - don't judge me people!) but might work until you find out how to make solution #2 work (that is if #3 is your choice for now).



Gees I am turning into Slingshot's unofficial support.  :)




NZ / AU Battlefield 4 Gaming Community
http://www.sonsofvalour.net/forums/forum.php



NZCrusader
646 posts

Ultimate Geek
+1 received by user: 230


  #1164511 29-Oct-2014 17:22
Send private message

I think I might have found something.

Give this a go.



https://support.software.dell.com/sonicwall-e-class-nsa-series/kb/sw11559




NZ / AU Battlefield 4 Gaming Community
http://www.sonsofvalour.net/forums/forum.php

Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.