DNS not accessible from P2S VPN

Jason B 6 Reputation points
2022-11-20T00:43:54.987+00:00

Hi,
I've setup a P2S VPN and Custom DNS servers for my private DNS zone.
DNS was working just fine over the VPN, but now it doesn't, and I don't know what it is I've changed.

  • DNS works fine from VMs in Azure, so I know that works okay
  • My vnet for the VPN has the DNS servers configured and is peered with the DNS vnet
  • My Private DNS Zone has the P2S VPN Vnet linked
  • When I download the VPN client, I can see the DNS servers are in the XML file
  • When I check with ipconfig, I can see the DNS servers are correct
  • When I try nslookup on a VM FQDN, it's trying to use the correct DNS server but fails
  • When I RDP to the VM using IP address, that works fine.
  • When I ping the DNS servers from a VM in Azure, that works fine
  • When I ping the DNS servers from my laptop on the P2S VPN, the ping fails

So my conclusion is that although the DNS config for the P2S VPN is correct and DNS is working, for some reason the DNS servers are not reachable from the P2S VPN.

I'm sure it's something simple causing the issue, but I'm at a loss as to what and tearing my hair out trying to fix it!!!

Thanks in advance,
Jason

Azure DNS
Azure DNS
An Azure service that enables hosting Domain Name System (DNS) domains in Azure.
593 questions
Azure VPN Gateway
Azure VPN Gateway
An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.
1,380 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Jason B 6 Reputation points
    2022-11-24T19:44:18.23+00:00

    Hi Kapil,

    I have now managed to resolve this initial issue and get the laptop on our domain. I have also managed to enrol them in Windows Autopilot.

    The laptop now shows as connected to MDM and connected to the company AD domain.

    However, I've purchased Microsoft 365 E3 licences for all users and when I log into the laptop, it doesn't activate Windows 11 Enterprise. The Windows 11 Pro Product Key is activated and was supplied with the laptop in the BIOS. Product Key Channel is OEM:DM.

    I've tried adding my account as a Workplace/School account, which shouldn't be necessary, and Enterprise still doesn't activate.

    I'm trying to setup an Always On VPN Device Tunnel and understand that I need Enterprise in order for that to auto connect when the laptop is switched on.

    How can I get Enterprise activated on the laptops please?

    Regards,
    Jason

    0 comments No comments