


To query split dns server like other processes (such as browser), use scutil –dns to check list of resolver and dns-sd -G v4 to query like other processes.On Mac and possibly linux, utility such as nslookup, host, dig doesn’t query server for split DNS domain, it just query those assigned to physical interface.Set two-factor enable on MAC and Linux and to SSL VPN interface on windows (ipconfig /all to check) When a PKI user is created, a new menu is added to the GUI under User & Authentication > PKI.Ensure that the subject matches the name of the user certificate.Import CA cert which issued client certificate: Go to System -> Certificates and select ‘Import ‘ -> CA Certificate.Using userPrincipalName so username will be.
