Cisco Secure Access Help

PDF

Cisco Secure Access Help

Manage DNS Servers

Want to summarize with AI?

Log in

Use DNS servers to resolve DNS requests from to internet resources.


You can add DNS servers to resolve DNS requests to internet resources. When adding these DNS servers, DNS Server 1 resolves before DNS Server 2. These DNS Server objects can be applied to RA-VPN IP pools, and selected in private resource definitions for ZTA access.

Prerequisites

  • Full Admin user role. For more information, see Manage Accounts.

  • Have the details of DNS servers capable of resolving both IPv4 and Ipv6 is applicable.


Add a DNS Server

Add an IP address or address range for a DNS server. Your DNS traffic routes through the DNS servers managed by Secure Access.

Procedure

  1. Navigate to Connect > End User Connectivity > Virtual Private Network, then click Add IP Pool.


    End User Connectivity page showing Add IP Pool option under Virtual Private Network tab
  2. Click Add IP Pool.

  3. Enter the IP pool parameters, including the required DNS Server.

    During the initial deployment before any IP pools have been configured, there is no DNS configuration. You must provide a valid DNS server.


    Checking for valid DNS Server configuration
  4. Click + Add to configure a new DNS server.

    1. Input a Name.
    2. DNS Server 1: Provide the IP address of the primary DNS server.
    3. DNS Server 2 (optional): Provide the IP address of the secondary DNS server.

    Configuring a new DNS Server
    Note
    DNS server fields cannot use addresses/networks listed in IP Address
Restrictions.
  5. Click Save, then click Close.


View DNS Servers

You can view the DNS servers that are configured for your organization. Your DNS traffic routes through the DNS servers managed by Secure Access.

Procedure

  1. Navigate to Connect > End User Connectivity, click Manage Servers and choose DNS Servers.


    End User Connectivity page showing option to view configured DNS Servers
  2. The list of configured DNS servers is displayed.


    DNS Servers page showing configured DNS Servers
  3. From the list you can click Add to add a new entry, or click the ellipsis (...) to Edit or Delete a DNS server entry.

  4. Click Close to dismiss the list.


Edit a DNS Server

You can edit the attributes for a DNS server entry.

Procedure

  1. Navigate to Connect > End User Connectivity, click Manage Servers and choose DNS Servers.


    End User Connectivity page showing option to view configured DNS Servers
  2. Click the ellipsis (...) to Edit a DNS server entry.


    DNS Servers page showing option to edit DNS Server attributes
  3. You can modify the label for the DNS server in the Name field as well as modify the IP address of the primary and secondary DNS servers as needed for DNS Server 1 and DNS Server 2.


    Edit DNS Servers page showing editable attributes
  4. Click Save and then click Close.


Delete a DNS Server

You can delete a DNS server entry.

Procedure

  1. Navigate to Connect > End User Connectivity, click Manage Servers and choose DNS Servers.


    End User Connectivity page showing option to view configured DNS Servers
  2. Click the ellipsis (...) to Delete a DNS server.


    DNS Servers page showing confirmation popup for deleting DNS Server
  3. Review the Delete DNS server message and then click Delete.

  4. Scan the DNS server list to confirm that the DNS server is removed.


    DNS Servers page showing updated list confirming DNS Server removal
  5. Click Close.