Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
benatnordisk
New Contributor

SSL VPN split tunnel and split DNS?

I have an SSL VPN portal set up with split tunneling, and it works just fine.  However, it doesn't do split DNS, so I basically have to hit everything by IP address.  For those things I don't have memorized, nslookup directly targeting the DNS server on the internal network works.

 

I looked through the documentation and some other forum posts, but didn't see an answer.  However, there was a forum post that suggested that such functionality is not currently implemented...

 

Many thanks in advance!

3 REPLIES 3
Christopher_McMullan

You can specify DNS servers and a domain suffix for SSLVPN connections beginning with FortiOS 5.x. What version are you running?

Regards, Chris McMullan Fortinet Ottawa

benatnordisk

Christopher McMullan_FTNT wrote:

You can specify DNS servers and a domain suffix for SSLVPN connections beginning with FortiOS 5.x. What version are you running?

I am running 5.2.2.  Where do I set this?

 

Many thanks!

Christopher_McMullan

The SSLVPN settings page will allow you to change most options. See the attached screenshot.

 

For the suffix, it's in the CLI:

config vpn ssl settings

set dns-suffix <domain_str>

end

Regards, Chris McMullan Fortinet Ottawa

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors