T
T
Talyan2021-12-12 01:34:11
Domain Name System
Talyan, 2021-12-12 01:34:11

Is it possible to make a different response from the same DNS for different query sources on different subnets?

Hello. Is it possible to organize different responses for different subnets using the WINDOWS DNS server?

The fact is that due to the fact that once upon a time in the enterprise the main subnet was made like 192.168.0.0/24, which intersects with all home routers, I made a VPN service for clients, but they access our internal network from VPN via NETMAP tool from Mikrotik.

Clients in VPN receive addresses 10.10.100.0/24 and access network 192.168.0.0/24 through NETMAP translation 10.10.1.0/24-> 192.168.0.0/24.

I know that the working network needs to be changed, but so far this is not possible for certain reasons.

So, since VPN workers cannot throw a route into the 192168.0.0 network, since they most likely have a gateway in this network at home, and they don’t want to make the remote server the main gateway because of an overabundance of traffic. Plus, routes in l2tp are not sent to users at all, but routes are obtained according to the subnet class (Windows considers 10.0.0.0 to sit down immediately by mask 8.

As a result, the DNS address of our server is assigned to the VPN client, but our server, at the request of local hosts, responds with local addresses from the subnet 192.168.0.0/24.It is

necessary to make sure that the client from the VPN subnet receives a response from DNS instead of lookup servername.lan, the response is not 192.168.0.h but 10.10.1.x.

Is this possible with Windows? or is it better to make a separate pool of names for VPN users, and let them access hostnames not servername.local but for example servername.vpn and they were sent to 10.10.1.x from another A-record?

I always administer Linux, but now here is Windows, and I don’t quite know the possibilities from there. Sorry for the clumsy presentation, I'm not feeling well.

Answer the question

In order to leave comments, you need to log in

1 answer(s)
H
hint000, 2021-12-12
@flapflapjack

Yes, you can:
https://docs.microsoft.com/en-us/windows-server/ne...
https://www.google.com/search?q=windows+split+hori...

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question