Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
admiralsulu
New Contributor

DNS over IPSEC tunnel - issue setting domain suffix

so obviously I am an idiot cause I cannot get this to work.

I want to be able to ping via dns name across the ipsec tunnel, but it will not work, even though I have my local DNS set.

so google tells me I need to set the domain suffix, but I cant make it work, can someone tell me what I am doing wrong?

 

remote90d # config vpn ipsec phase1-interface

remote90d (phase1-interface) # show config vpn ipsec phase1-interface edit "vpntocorporate" set interface "wan1" set comments "VPN: vpntocorporate (Created by VPN wizard)" set wizard-type static-fortigate set remote-gw xxx.xxx.xxx.xxx set psksecret ********* next end

remote90d (phase1-interface) # edit vpntocorporate

remote90d (vpntocorporate) # set domain mydomain.com

command parse error before 'domain' Command fail. Return code -61

remote90d (vpntocorporate) #

1 REPLY 1
mhe
Contributor II

You must set the DNS Suffix in your DHCP configuration! Thats a Client Setting!

Labels
Top Kudoed Authors