    When I use our 2620 with IOS 12.3.1a with IPFW I have a problem with DNS
    resolution from systems outside the LAN served by the 2620 when they VPN to the
    office (not using Cisco's VPN). What happens is the private IP of the FQDN, say is translated to the public NAT IP of the static NAT mapping.
    That's a problem when I try to map a drive or printer, or use pretty much
    anything else on that box that's not allowed by the public IP's ACL. If I
    remove the 2620 and replace it with a 1710 with straight IP it works great. Is
    this some kind of "fix up" to borrow from the PIX that IPFW is doing to DNS to
    translate? If so, how do I force it to stop doing that? Thanks...

    Brian Bergin, Feb 2, 2004
