The symptom is that DNS requests to internal resouces fail (read: resources held by DNS zones served by the internal DNS servers defined on the virtual Checkpoint NIC).Īll DNS requests are made to the external DNS server(s), besides the internal DNS servers. Endpoint Security VPN client connects successfully to security gateway.Client has one or more IPv6 DNS server addresses defined.Internet facing NIC(s) on client has an IPv6 address (besides IPv4 because it is dual-stacked).It seems related, but then again not, so while I have your attention, here goes: FWIW, I can share another finding, but the issue below is also present in earlier clients (like E83.20) and still is.