我们在测试 VPN 远程访问时遇到了上述错误。当我们在窗口 CMD 中运行 nslookup "router_IP" 时,它成功返回了域名,但是当我们通过 Cisco Any Connect 3.1 连接时,它一直提示错误窗口。我们有路由器 cisco 3925,iOS 版本 15.1(1)T1。请帮忙。
更新 1:路由器的配置
aaa new-model
aaa authentication login AuthenList local
aaa authorization network vpn-group local
username vpn1 secret 5 xxxx
crypto isakmp policy 10
encr 3des
hash md5
authentication pre-share
group 2
ip local pool remote-pool 10.223.131.35 10.223.131.50
crypto isakmp client configuration group cisco
key xxxx
pool remote-pool
crypto ipsec transform-set set1 esp-3des esp-md5-hmac
crypto dynamic-map map1 10
set transform-set set1
reverse-route
crypto map map1 client authentication list AuthenList
crypto map map1 isakmp authorization list vpn-group
crypto map map1 client configuration address respond
crypto map map1 10 ipsec-isakmp dynamic map1
interface GigabitEthernet0/1
ip address A.B.C.D xxxx
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
crypto map map1
错误:
The VPN connection failed due to unsuccessful domain name resolution
当我从nslookup(服务器8.8.8.8)输入路由器接口g0/1的域名时**
更新2:
我可以做正向 nslookup 但反向查找(域名 -> IP)返回失败。这是个问题吗?
Update3:
在路由器的配置中:
ip name-server 8.8.8.8