Proxy DNS Server Support
When the VPN connection to the corporate network is up, the
enterprise DNS servers should resolve domain names to IP addresses. But when the
VPN connection to the enterprise is down, the ISP or cable provider DNS servers
should be used to resolve DNS requests.
An Easy VPN Remote Phase Two router can be configured to act as a
proxy DNS server. As a proxy DNS server for LAN, the router receives DNS queries
from local users on behalf of the enterprise DNS server. The DHCP server sends
out the router’s LAN address as the DNS server IP address. When the VPN tunnel
connection comes up, the router forwards the DNS queries to the enterprise DNS
server. Otherwise, they’re forwarded to the ISP DNS.
To enable the proxy DNS server functionality with the ip dns server command in Global Configuration mode, use the
following commands beginning in Global Configuration mode.
PIX Interoperability Support
Cisco Easy VPN Remote Phase Two more fully supports the
Cisco PIX Firewall v6.2 features than the original implementation of Easy VPN
Remote.
Cisco IOS Firewall Support
Cisco Easy VPN Remote Phase Two more fully supports the
Cisco IOS Firewall feature set than the original implementation of Easy VPN
Remote.