Hi,
wanted to ask your experiences as admins and this situation with homeoffice. So we have users working in homeoffce with their laptops, and I regularly see that the same IP address is given to two machines. This happens only in the VPN scope. We are now working on a solution with an external company, but so far not luck.
I personally tried the following:
- Shorten the aging for forward lookup zone to 1 day, both in no-referesh and refresh interval.
- In VPN reverse lookup zone we have shorten the scavange interval to 4/4.
- On the new VPN DHCP scope, lease duration is set to 4 hours, DHCP name protection was activated but only 1 day in effect so it could be that it needs time?
- DNS dynamic updates are set to "Dynamically update DNS recoreds only if requested by the DHCP clients
- DNY dynamic update registration credentials were all over the place, from our 4 DCs some had the credential some did not - i managed to correct this.
Dynamic updates are set to secure only. We use Cisco Firewall, and we did not have, until yesterday this VPN scope in Windows DHCP Server, don't ask me why. Now we do have it in our DHCP. Cisco AnyConnect is being used as a VPN client.
Is there anything from the DHCP or I am leaning towards DNS setting that can be improved so we don't have this double entries. They are not for all currently connected clients, just some.
Cheers