AD & BIND: domain listing is slow



Hi,

I have a set of 3 windows standard edition servers. All are domain
controllers for a single forest domain. I'm currently using BIND 9.x for
DNS.

The current service records are listed below.
---------------------------------------------------------------
;
; Active Directory Service Records
;
_ldap._tcp.foobar.com. SRV 0 0 389 ponzi.foobar.com.
_kerberos._tcp.foobar.com. SRV 0 0 88 ponzi.foobar.com.
_ldap._tcp.dc._msdcs.foobar.com. SRV 0 0 389 ponzi.foobar.com.
_kerberos._tcp.dc._msdcs.foobar.com. SRV 0 0 88 ponzi.foobar.com.

_ldap._tcp.foobar.com. SRV 8 8 389 bluechip.foobar.com.
_kerberos._tcp.foobar.com. SRV 8 8 88 bluechip.foobar.com.
_ldap._tcp.dc._msdcs.foobar.com. SRV 8 8 389 bluechip.foobar.com.
_kerberos._tcp.dc._msdcs.foobar.com. SRV 8 8 88 bluechip.foobar.com.
---------------------------------------------------------------

The resolution of machines on the domain is very slow in the Network Places.
I know the machines have no problems
resolving DNS names. Is there a way of speeding this up?

Also, although there is a verified trust between this domain and another
Win2k domain. I can't seem to access machines on the other domain(access
denied). Can
someone give me some pointers on troubleshooting this issue. I suppose once
BIND is configured correctly it should work better.

Any help would be appreciated.

Thanks,


.



Relevant Pages

  • Re: Nameserver
    ... >I'd like to set up BIND locally to resolve names between machines on my ... >primary nameserver. ... configure your local machines to point to this box as their DNS server. ... Or you can read the DNS HOWTO at The Linux Documentation Project ...
    (RedHat)
  • Re: Integrated versus non-integrated DNS
    ... How are you getting multi-mastered registration with BIND? ... DNS I loose this, ... not going to be available to non-AD aware applications, or servers. ... You can still point non-AD machines to a site-local DNS, ...
    (microsoft.public.windows.server.dns)
  • [NEWS] BIND 9 DNS Cache Poisoning
    ... BIND 9 DNS Cache Poisoning ... source UDP port and DNS transaction ID can be effectively predicted. ... address of the target name server), and the destination UDP port (53 the ...
    (Securiteam)
  • [UNIX] Multiple Remote Vulnerabilities in BIND4 and BIND8
    ... ISS X-Force has discovered several serious vulnerabilities in the Berkeley ... Internet Name Domain Server (BIND). ... majority of DNS servers on the Internet. ... deployed recursive DNS servers on the Internet. ...
    (Securiteam)
  • Re: How to enable communication between Two different lans (subnets)/ domains 2003 server based? Ass
    ... You will also almost certainly have DNS problems running a domain behind ... server domain, with a DHCP server running on one of the 2003 boxes. ... the "inner" subnet can see the original subnet and the Internet, ... The .227 machines can see the machines on the 192.168.1.0 subnet and the ...
    (microsoft.public.windows.server.networking)

Loading