Thank you for assist. It was indeed a firewall rule. Since all of our other non-VPN subnets are assigned the gateway as their DNS server, a rule was never created for DNS egress, thus our final DENY rule was denying port 53 traffic from our Client VPN subnet. Adding Outbound rules that allow port TCP and UDP 53 from our Client VPN subnet has allowed DNS resolution to Google's Public DNS to work. Much appreciated!
... View more