Domain Name Resolution Cisco Anyconnect



[solved] how to resolve the Cisco Anyconnect error message “VPN connection failed due to unsuccessful domain name resolution”

The above message is a very common message caused by the local internet provider DNS resolution failure and cane be fixed very easily.

below is the error message that you may get when trying to connect to the VPN while connected to the home internet.

Jul 27, 2020 Clients from both campuses are intermittently experiencing errors getting on the Cisco VPN. Current Status IS&T teams have not yet identified the cause of this incident, but continue to investigate. Next Update: 08:00pm Previous Update Incident Discovery Time: 05:05pm on Services Impacted: Network Services Description of Impact.

  1. solved Unable to add the NetApp cluster data source. This can occur if the clocks on the systems are not synchronized and the Unified Manager HTTPS certificate start date is later than the date on the cluster, or if the cluster has reached the maximum number of EMS notification destinations.
  2. It is stored in C: ProgramData Cisco Cisco AnyConnect Secure Mobility Client Profile (Windows 7). If you open up that hidden directory and look for the profile you can examine the xml file for the host name that AnyConnect uses in that profile. Look for a section like.

You will see that Cisco Anyconnect displays an error message where it is not able to connect to the VPN host using the hostname.

Anyconnect

The first thing you will need to confirm is if the DNS resolution is working and in order to confirm that you will need to run the command prompt.

Launch the command prompt by going “start” “run” type “cmd” – see the screenshot for reference.

You can test the resolution by pinging espn.com.

  1. type “ping” and you can see Ping espn.com is not resolving.
  2. nslookup for cnn.com does not resolve and shows a loop back address as a dns server.

Domain Name Resolution Cisco Anyconnect

One good place to see more logs is by going to the gear icon on the Cisco Anyconnect. see the screenshot below for reference.

Cisco Anyconnect Vpn Install

Go to the VPN tab and message history and you can see how many times, the client tried to connect and failed..

Name

Start the command prompt again to test the DNS resolution.

This time use the DNS lookup using the google DNS server and you will see a response and that confirms that is the DNS server.

Cisco Anyconnect Troubleshooting

You can update the DNS server by manually adding the google DNS server for a temporary fix until your internet provider fixes the issue.

CSCtn14578 - AnyConnect To Support True Split DNS; Not Fallback

Issue

Cisco Anyconnect Profile Settings

Thanks for ready this.