Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

What's the impact of DNS settings in General SSL VPN settings

Hi,

I've deployed doznes of SSL VPN clients, having DNS set to on-premises AD LAN DNS server 10.1.1.10 in General SSL VPN settings for all clients. Now when client with laptop connects to SSL VPN, I can see his/her default DNS resolving goes through VPN tunnel, while traffic does not (because it is NOT set as default gateway). I wanna know what's the impact of such setting?

Is it wise to have DNS setup under SSL VPN for all clients? I guess this might not be best practice, because:

  • DNS queries might take longer
  • our company AD DNS is under more pressure

But this might be unsignificant. What do you think? Good or bad practice?



Added TAGs
[edited by: Raphael Alganes at 2:40 AM (GMT -7) on 8 Jul 2024]