Re: A Reverse Lookup Zone is necessary?

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Well Ace thanks. Unfortunately I do not know what I should add as a Reverse
Lookup zone. What is my Network ID? I know my Domain Name and that is it.
The Server is Windows 2000 not Windows 2003. I don't have any PTR entries.
What should they be? P(oin)T(e)R(s) to what? The Router uses 192.168.2.1
that is the Gateway and my DNS Server is 192.168.2.34. DHCP is NOT
installed. The machines get the DHCP automatically.

--
George Hester
_________________________________
"Ace Fekay [MVP]"
<PleaseSubstituteMyActualFirstName&LastNameHere@xxxxxxxxxxx> wrote in
message news:OvXWv6fvFHA.3452@xxxxxxxxxxxxxxxxxxxxxxx
> In news:%23hriTeavFHA.2792@xxxxxxxxxxxxxxxxxxxx,
> George Hester <hesterloli@xxxxxxxxxxx> made this post, which I then
> commented about below:
> > Sometime ago I asked about setting up the DNS Server in Windows 2000
> > correctly. I had an article on it:
> >
> > http://support.microsoft.com/default.aspx?scid=kb;en-us;300202
> >
> > and was given suggestions here. I recall that it was not necessary
> > to make a new Reverse Lookup zone for my situation so I didn't touch
> > it.
> >
> > In one of my domain clients Windows XP SP2 I have this warning in the
> > Event Viewer:
> >
> > In the Event Viewer | System I have a LSASRV Warning Category SPNEGO
> > (Negotiator) Event 40961 and this is its Description:
> >
> > The Security System could not establish a secured connection with the
> > server DNS/prisoner.iana.org. No authentication protocol was
> > available
> >
> > So I wrote to a Windows XP newsgroup and this was the response:
> >
> > This usually means your DNS server is misconfigured and does not have
> > a reverse lookup zone. - Kerry Brown
> >
> > So now I am a little confused. Do I have to set up a Reverse Lookup
> > zone in my DNS Server and if so how do I do it? It wants a Network
> > ID. Which I haven't the slightest idea what that is. Or it wants a
> > Reverse lookup zone name and again I haven't the slightest idea what
> > that is or if it is even necessary. My DNS Server has been
> > configured EXACTLY the way the articles said to do it. And so far I
> > have had no issues with the DNS server in my Windows 2000 clients.
> > It is only the Windows XP client where this issue has cropt up. How
> > do I fix the warning above? Thanks.
>
> Some applications require a reverse zone, but they are few. Win2003 uses a
> reverse zone for the SPNEGO function, a way to ID itself with Kerberos. To
> eliminate the 40961 errors, create a reverse zone and make sure the DCs
have
> PTR entries.
>
> --
> Regards,
> Ace
>
> If this post is viewed at a non-Microsoft community website, and you were
to
> respond to it through that community's website, I may not see your reply.
> Therefore, please direct all replies ONLY to the Microsoft public
newsgroup
> this thread originated in so all can benefit.
>
> This posting is provided "AS-IS" with no warranties or guarantees and
> confers no rights.
>
> Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
> Microsoft Windows MVP - Windows Server - Directory Services
> Infinite Diversities in Infinite Combinations.
> =================================
>
>

.



Relevant Pages

  • Re: Email- reverse DNS problem
    ... Typically the IP block you purchased from your ISP manages the reverse ... lookup zone for the network of IP's that your block belongs too. ... We own our public netblock and we have the DNS server here. ...
    (microsoft.public.exchange.connectivity)
  • Re: dns issue on windows 2000 server
    ... There is definitely some problems with my dns server in terms of the dns ... There should be many folders under the forward lookup zone that is created ... I suspect the dns server was not setup properly. ... additional domain controller to my existing windows 2000 dc it ...
    (microsoft.public.windows.server.dns)
  • DNS 2008 Import from Windows 2000 DNS
    ... Is there a way to import all the zones forward and reverse from a windows 2000 DNS server? ... Rick ...
    (microsoft.public.windows.server.dns)
  • Re: DNS Forward lookup problem - now having problems with a period (.)
    ... > we were able to recreate the forward lookup zone on our AD-integrated ... > DNS Server, ... If you post the output from netdiag /test:dns /v from both DCs and run ...
    (microsoft.public.windows.server.dns)
  • Re: DNS Forward lookup problem - now having problems with a period (.)
    ... we have had sporadic problems on our network. ... Chances are you have some that are still pointing at the lost DNS ... If you have more than one Domain, every DNS server must ... > recreate the forward lookup zone on our AD-integrated DNS Server (which ...
    (microsoft.public.windows.server.dns)