Hi Chris,
In general, you should check your policy and see if your client is allowed to reach DNS server through DNS protocol. I assume that your DNS is located within corporate network, so check your policy and configure it that your client not anly is possible to access corporate subnet, but also DNS server behind corporate VPN concentrator...
Milan