IPSec VPN Use custom DNS

Hello,

I am using IPSec with Shrew as the clients from some windows boxes. The RB’s DNS settings have 3 dns servers, 1 is internal to the network, the other 2 are google dns servers in case the local dns goes down for some reason.

the problem is, over the vpn, users are not always resolving local network dns names. I believe it’s because i have “send-dns: yes” in my Mode Config, and sometimes the google dns is responding to their requests.

Is there a way to have VPN users get a custom list of DNS servers (ideally only the local office DNS server)? Or must I have that manually set in the Shrew client configs?

That is only working method I have figured out so far, but if someone knows better way, I’m also very interested. :slight_smile: