DNS Resolution over Site-to-Site VPN
I have an USG110 device which I use to interconnect office network with AWS VPC Network. Following the configuration file given from AWS and the guides from Zyxel Documentation the traffic was not flowing apart from gateway to gateway.
I created a Static Route and the traffic started flowing, however if I want to use VPC Hostnames as endpoints to use from Office Networks, this is not working as USG is always routing DNS Requests to Main DNS Server rather then the one I created on DNS Forwarder Tab.
How can I route certain domain ( *.example.com) DNS queries to tunnel instead to WAN ?
I created a Static Route and the traffic started flowing, however if I want to use VPC Hostnames as endpoints to use from Office Networks, this is not working as USG is always routing DNS Requests to Main DNS Server rather then the one I created on DNS Forwarder Tab.
How can I route certain domain ( *.example.com) DNS queries to tunnel instead to WAN ?
0
All Replies
-
On usg, add a domain zone forwarder and set private dns server. On AWS, a policy route to usg's vti interface needs to be configured, I guess.
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 238 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight