ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    DNS Update Issue

    IT Discussion
    windows server 2012 r2 dns active directory
    12
    267
    33.8k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • wirestyle22W
      wirestyle22
      last edited by wirestyle22

      So the reference to the website is on a local dns server and since the local server has no A record it's never hitting the forwarders because it's assuming it doesn't exist

      coliverC DashrenderD 2 Replies Last reply Reply Quote 3
      • coliverC
        coliver @wirestyle22
        last edited by coliver

        @wirestyle22 said in DNS Update Issue:

        So the reference to the website is on a local dns server and since the local server has no A record it's never hitting the forwarders because it's assuming it doesn't exist

        If it's a Primary Zone (which it probably is) it will never go to forwarders from itself. It just assumes it knows everything about the Zone.

        1 Reply Last reply Reply Quote 3
        • DashrenderD
          Dashrender @wirestyle22
          last edited by

          @wirestyle22 said in DNS Update Issue:

          So the reference to the website is on a local dns server and since the local server has no A record it's never hitting the forwarders because it's assuming it doesn't exist

          Correct.

          To fix this, you need to add the records for that domain to your local DNS. The main issue you will likely run into is the no host domain name. i.e. microsoft.com... this would belong to your AD servers I believe, and you don't want to change that to point to your web server.

          1 Reply Last reply Reply Quote 3
          • wirestyle22W
            wirestyle22
            last edited by wirestyle22

            Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

            DashrenderD 1 Reply Last reply Reply Quote 0
            • DashrenderD
              Dashrender @wirestyle22
              last edited by

              @wirestyle22 said in DNS Update Issue:

              Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

              What do you normally use for your top level domain on an AD build?

              wirestyle22W JaredBuschJ 2 Replies Last reply Reply Quote 0
              • wirestyle22W
                wirestyle22 @Dashrender
                last edited by wirestyle22

                @Dashrender said in DNS Update Issue:

                @wirestyle22 said in DNS Update Issue:

                Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                What do you normally use for your top level domain on an AD build?

                ad.domain.com theoretically. Everything I've ever touched is already in place. Although i'd love to rebuild my families infrastructure from the ground up.

                JaredBuschJ 1 Reply Last reply Reply Quote 0
                • JaredBuschJ
                  JaredBusch @Dashrender
                  last edited by

                  @Dashrender said in DNS Update Issue:

                  @wirestyle22 said in DNS Update Issue:

                  Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                  What do you normally use for your top level domain on an AD build?

                  He's too young to know the old days.

                  wirestyle22W 1 Reply Last reply Reply Quote 0
                  • wirestyle22W
                    wirestyle22 @JaredBusch
                    last edited by wirestyle22

                    @JaredBusch said in DNS Update Issue:

                    @Dashrender said in DNS Update Issue:

                    @wirestyle22 said in DNS Update Issue:

                    Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                    What do you normally use for your top level domain on an AD build?

                    He's too young to know the old days.

                    wat explain old man

                    1 Reply Last reply Reply Quote 0
                    • JaredBuschJ
                      JaredBusch @wirestyle22
                      last edited by

                      @wirestyle22 said in DNS Update Issue:

                      @Dashrender said in DNS Update Issue:

                      @wirestyle22 said in DNS Update Issue:

                      Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                      What do you normally use for your top level domain on an AD build?

                      ad.domain.com theoretically. Everything I've ever touched is already in place. Although i'd love to rebuild my families infrastructure from the ground up.

                      If it looks like this, then it owns domain.com

                      0_1541003666906_37e6ed15-1833-4522-b29e-14a6a5f9fb5b-image.png

                      wirestyle22W PhlipElderP 2 Replies Last reply Reply Quote 1
                      • wirestyle22W
                        wirestyle22 @JaredBusch
                        last edited by

                        @JaredBusch said in DNS Update Issue:

                        @wirestyle22 said in DNS Update Issue:

                        @Dashrender said in DNS Update Issue:

                        @wirestyle22 said in DNS Update Issue:

                        Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                        What do you normally use for your top level domain on an AD build?

                        ad.domain.com theoretically. Everything I've ever touched is already in place. Although i'd love to rebuild my families infrastructure from the ground up.

                        If it looks like this, then it owns domain.com

                        0_1541003666906_37e6ed15-1833-4522-b29e-14a6a5f9fb5b-image.png

                        It does

                        1 Reply Last reply Reply Quote 0
                        • JaredBuschJ
                          JaredBusch
                          last edited by

                          The red box not masking, is the A record for domain.com

                          Everything here is subdomain.domain.com and has matching records on CloudFlare for when not in the office...

                          0_1541003917152_181b885d-e0ce-4288-8c0e-aaa795316397-image.png

                          1 Reply Last reply Reply Quote 1
                          • PhlipElderP
                            PhlipElder
                            last edited by

                            Are these Active Directory based domain controllers with AD integrated DNS set up?

                            Then DNS0 on all DCs should point to itself only. By default no other DNS server IP entry should be set on the NIC other than 127.0.0.1. Ever.

                            AD integrated DNS takes care of replicating changes and IDs among the DCs in a given forest/domain.

                            Never, ever, put a public DNS server anywhere but in the Forwarders location on an AD integrated DNS server.

                            DHCP should be handing out DNS entries for the AD DC DNS servers local to them or a tertiary if need-be for redundancy.

                            It sounds like whomever set things up had no idea how DNS works. 😛

                            JaredBuschJ wirestyle22W 2 Replies Last reply Reply Quote 1
                            • JaredBuschJ
                              JaredBusch @PhlipElder
                              last edited by

                              @PhlipElder totally.

                              1 Reply Last reply Reply Quote 0
                              • PhlipElderP
                                PhlipElder @JaredBusch
                                last edited by

                                @JaredBusch said in DNS Update Issue:

                                @wirestyle22 said in DNS Update Issue:

                                @Dashrender said in DNS Update Issue:

                                @wirestyle22 said in DNS Update Issue:

                                Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                                What do you normally use for your top level domain on an AD build?

                                ad.domain.com theoretically. Everything I've ever touched is already in place. Although i'd love to rebuild my families infrastructure from the ground up.

                                If it looks like this, then it owns domain.com

                                0_1541003666906_37e6ed15-1833-4522-b29e-14a6a5f9fb5b-image.png

                                Oh man, what a mess.

                                JaredBuschJ 1 Reply Last reply Reply Quote 0
                                • JaredBuschJ
                                  JaredBusch @PhlipElder
                                  last edited by

                                  @PhlipElder said in DNS Update Issue:

                                  @JaredBusch said in DNS Update Issue:

                                  @wirestyle22 said in DNS Update Issue:

                                  @Dashrender said in DNS Update Issue:

                                  @wirestyle22 said in DNS Update Issue:

                                  Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                                  What do you normally use for your top level domain on an AD build?

                                  ad.domain.com theoretically. Everything I've ever touched is already in place. Although i'd love to rebuild my families infrastructure from the ground up.

                                  If it looks like this, then it owns domain.com

                                  0_1541003666906_37e6ed15-1833-4522-b29e-14a6a5f9fb5b-image.png

                                  Oh man, what a mess.

                                  Meh, not bad actually. Perfect? No. But small enough to not be a problem really.

                                  Definitely not what I would do now if I set it up new.

                                  PhlipElderP DashrenderD 2 Replies Last reply Reply Quote 1
                                  • PhlipElderP
                                    PhlipElder @JaredBusch
                                    last edited by PhlipElder

                                    @JaredBusch said in DNS Update Issue:

                                    @PhlipElder said in DNS Update Issue:

                                    @JaredBusch said in DNS Update Issue:

                                    @wirestyle22 said in DNS Update Issue:

                                    @Dashrender said in DNS Update Issue:

                                    @wirestyle22 said in DNS Update Issue:

                                    Simple case of me never doing this wrong I guess. What a weird thing to screw up. Didn't really have time to sift through it all.

                                    What do you normally use for your top level domain on an AD build?

                                    ad.domain.com theoretically. Everything I've ever touched is already in place. Although i'd love to rebuild my families infrastructure from the ground up.

                                    If it looks like this, then it owns domain.com

                                    0_1541003666906_37e6ed15-1833-4522-b29e-14a6a5f9fb5b-image.png

                                    Oh man, what a mess.

                                    Meh, not bad actually. Perfect? No. But small enough to not be a problem really.

                                    Definitely not what I would do now if I set it up new.

                                    Okay, the masking threw me off.

                                    _msdcs.domain.local
                                    domain.com
                                    domain.local
                                    ^^Zones?

                                    Why domain.com?

                                    When we split DNS we usually leave domain.com to Internet DNS even if Location.Domain.Com is internal.

                                    Then we set up the required internal DNS FLZs for services:
                                    Remote.Domain.Com
                                    SharePoint.Domain.Com
                                    Mail.Domain.Com
                                    LoB.Domain.Com

                                    Application Request Routing (ARR) is used to parlay incoming HTTPS calls to their respective owners (RDS, Exchange, SharePoint, LoB) so we only require one WAN IP address with Internet DNS A records for the above pointing to the WAN IP address.

                                    EDIT: To get around the AutoDiscover.Domain.Com we use the _autodiscover SRV record method.

                                    JaredBuschJ 1 Reply Last reply Reply Quote 0
                                    • wirestyle22W
                                      wirestyle22 @PhlipElder
                                      last edited by wirestyle22

                                      @PhlipElder said in DNS Update Issue:

                                      Are these Active Directory based domain controllers with AD integrated DNS set up?

                                      Then DNS0 on all DCs should point to itself only. By default no other DNS server IP entry should be set on the NIC other than 127.0.0.1. Ever.

                                      loopback address on multiple domain controllers as primary? Contrary to everything I have read. Discussing with Jared right now.

                                      1 Reply Last reply Reply Quote 0
                                      • wirestyle22W
                                        wirestyle22
                                        last edited by

                                        I have no idea why I had this misconception. So I have been doing this incorrectly. Loopback addresses on all DC's. I just realized that there is no benefit to anything else.

                                        1 Reply Last reply Reply Quote 0
                                        • JaredBuschJ
                                          JaredBusch @PhlipElder
                                          last edited by

                                          @PhlipElder said in DNS Update Issue:

                                          Why domain.com?

                                          I didn't set it up. THis is how I acquired it.

                                          Not worth the effort to change everything.

                                          Exchange 2007 was also installed on a DC. /sigh

                                          wirestyle22W 1 Reply Last reply Reply Quote 0
                                          • wirestyle22W
                                            wirestyle22 @JaredBusch
                                            last edited by

                                            @JaredBusch said in DNS Update Issue:

                                            Exchange 2007 was also installed on a DC. /sigh

                                            That's especially rough. I thought a file server was bad.

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 4
                                            • 5
                                            • 13
                                            • 14
                                            • 1 / 14
                                            • First post
                                              Last post