DNS Resolution over Site-to-Site VPN
I have an USG110 device which I use to interconnect office network with AWS VPC Network. Following the configuration file given from AWS and the guides from Zyxel Documentation the traffic was not flowing apart from gateway to gateway.
I created a Static Route and the traffic started flowing, however if I want to use VPC Hostnames as endpoints to use from Office Networks, this is not working as USG is always routing DNS Requests to Main DNS Server rather then the one I created on DNS Forwarder Tab.
How can I route certain domain ( *.example.com) DNS queries to tunnel instead to WAN ?
I created a Static Route and the traffic started flowing, however if I want to use VPC Hostnames as endpoints to use from Office Networks, this is not working as USG is always routing DNS Requests to Main DNS Server rather then the one I created on DNS Forwarder Tab.
How can I route certain domain ( *.example.com) DNS queries to tunnel instead to WAN ?
0
All Replies
-
On usg, add a domain zone forwarder and set private dns server. On AWS, a policy route to usg's vti interface needs to be configured, I guess.
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 148 Nebula Ideas
- 96 Nebula Status and Incidents
- 5.7K Security
- 262 USG FLEX H Series
- 271 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.4K Consumer Product
- 249 Service & License
- 387 News and Release
- 84 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.5K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 73 Security Highlight