ipsec and dns

Hi all,

I use openswan as a road-warrior. No issues with the connection, all is
good. However, when the VPN is up, I'd like to use a different DNS
server (one across the VPN) than the one that the local DHCP server
provides. I have:

supersede domain-name-servers 192.168.168.10

in dhclient.conf, but this breaks when I'm out and about with no VPN
(such as roaming with a 3G card - but why that doesn't work is a
different matter).

Anyone know of anything that I can investigate to make this work more
seamlessly? In summary, when the VPN is up, I want DHCP to use the
above server. Down, I want it to use whatever DHCP suggests.

Antony

--

No votes yet

Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.

ipsec and dns

I’m pretty sure the only way to do this is to do L2TP
over IPSec, and just configure your /etc/ppp/options.l2tpd file to specify your
DNS servers.  l2tpns may have similar options.

 

-- Kevin

Syndicate content