[vpn-help] Split DNS issue

Larkin Lowrey llowrey at nuclearwinter.com
Sun Oct 12 17:27:09 CDT 2014


I am connecting to a Cisco ASA using Mutual PSK + XAuth and trying to 
use split-dns. The ASA is configured for split-tunneling and split-dns. 
This works fine with the official Cisco client. When running the Shrew 
client all DNS goes to the tunnel's DNS server. That's a problem for me 
since this causes my local hostnames to resolve to their public IPs 
instead of their internal private IPs when using the tunnel's DNS server.

I've tried with the default settings of "Enable Split DNS" and "Obtain 
Automatically" as well as with manual entries to match the ASA's config. 
Neither work.

I see the following in the IKE trace:

ii : split DNS is disabled

When searching the list archive I came across a thread from last year 
where someone said that split DNS had been removed from the Shrew 
client. Is that true? Seems hard to believe, especially since I bought a 
license to get split DNS support since the website said a Professional 
Edition license was required for split DNS.

Are there any workarounds? Is there a particular older version I can 
install that does support split DNS?

I'm running Shrew 2.2.2 Professional Edition on Windows 7 SP1 x64

--Larkin


More information about the vpn-help mailing list