Ray , As far as I know only DNS queries which go to the internal DNS server (DNS queries which has the internal domain suffix) will actually go there encrypted while all other DNS queries (DNS queries which contains all DNS suffix other then the internal domain) will go to the ISP DNS.
The DNS query by default is being sent to the DNS of the ISP. If and only If the SecureClient's kernel "notice" that the suffix "belongs" to the internal server (DNS queries which has the internal domain suffix) then it will perform NAT to the internal DNS server. ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
