Applies to:
Gen6: NSA E10800, NSA E10400, NSA E10200, NSA E10100
Gen5: NSA E8500, NSA E7500, NSA E6500, NSA E5500, NSA 5000, NSA 4500, NSA 3500, NSA 2400, NSA 240
Gen5 TZ Series: TZ 100, TZ 100 Wireless, TZ 200, TZ 200 W, TZ 210, TZ 210 Wireless,
Firmware/Software Version: All versions
Services: SSL-VPN NetExtender, SonicWall Mobile Connect for Apple iOS
Overview:
With regular Mac OS X/Linux/Windows based client connections, SonicWall can prioritize all DNS traffic over the VPN. However, with iOS based devices (IPhone/iPad/iPod touch) using the SonicWall Mobile Connect client, DNS requests will be sent across the VPN tunnel only when it matches the DNS Suffix configured on the NGFW appliance. This is an intended behavior, due to requirements by Apple.
The DNS Suffix on the NGFW appliance can be configured on the SSL VPN > Client Settings page.
Resolution:
1. On the NGFW appliance, browse to SSL VPN > Client Settings.
2. Ensure that all required fields are correctly filled in. In this example, we've already configured the NGFW appliance for NetExtender connectivity, and we've just configured the DNS Domain/DNS Suffix (Ex: example.local).
3. Click Accept to save your changes.
Â