"chrbar" <(E-Mail Removed)> wrote in message
news:0A81B8AC-954D-40D2-9776-(E-Mail Removed)...
> Hi,
>
> I've set a VPN (IKE and IPsec) between two offices via two Dlink DI-804HV
> routers.
> WAN side, each router has a fixed IP address from my ISP.
> The LAN IP addresses of the routers are 192.168.1.254 in one side and in
> the
> 192.168.2.254 second side.
>
> I've a server Windows Server 2003R2 SP2 (AD, DHCP, DNS, WINS...) which
> manages the Domain for both LAN (192.168.1.0 et 192.168.2.0).
> How do I have to set my DNS to allow all servers and all workstations to
> use
> the VPN to communicate between two LAN, and to navigate on the Web via the
> Internet access of each office.
>
> Thanks a lot for your help,
> Chris
>
If you only have one DC, all machines must use the DC for DNS. To allow
this DC to resolve foreign URLs you need to set the local DNS to forward to
a public DNS service.
Each workstation should use the DC for DNS but use its local router for
its default gateway. That should be all you need to to. The routers should
automatically send traffic for the "other" private subnet through the tunnel
and everything else out to the Internet.
|