Re: Slave DNS server not taking over.



techjohnny@xxxxxxxxx schrieb:
Hello, Group:

I've got an Active Directory providing the primary DNS to clients, and
the backup DNS server is running Bind 9 as a slave.

This configuration is an security risk. Change the zone type to "AD integrated" so you can permit "secure updates". For secondary DNS-Servers the "AD integrated" Zone looks like an standard primary zone.

Today, the primary DNS server failed, but the clients still couldn't
resolve, even though I was able to manually use the nslookup, change
servers, and verify that the slave responded to requests from clients.

The clients are using DHCP and have a primary and secondary dns server,
but the secondary doesn't automatically kick in when the primary fails.

The slave dns server is properly receiving requests from the primary
and the zones are all up-to-date.


Do you tested the SRV-RECORDS with nslookup on the secondary server?


For example:

http://support.microsoft.com/kb/816587/en-us


--
Viele Grüße
Frank Röder
MVP Windows Server System - Directory Services
"Ex oriente lux"
.



Relevant Pages

  • Re: AD clients can no longer connect to DC in 2003
    ... perhaps you should look at the clients. ... Verify that the clients are pointing to an existing, internal DNS server ... However it does not prove that the correct SRV records are present. ... >net start netlogin>>That should get logins going again. ...
    (microsoft.public.windows.server.active_directory)
  • Re: nslookup
    ... and switch to NetBIOS resolution so you cannot be sure what you ... NSLookup will NOT use the built-in name cache nor the hosts file NOR ... DNS server to check so you can determine if SOME DNS server is working ... servers are hosting dhcp successfully giving IP's to clients. ...
    (microsoft.public.windows.server.dns)
  • RE: NT to AD upgrade question (advanced)
    ... The DNS Server that is in the DMZ, ... I cannot manually change the DNS setting on the clients. ... transfers the AD Integrated zone from the DC. ...
    (microsoft.public.windows.server.migration)
  • Re: setup/configure internal domain dns server?
    ... the ISP provided dns servers and not the main domain controller but I ... AD must have a DNS server setup for the AD domain. ... DNS server to itself for DNS, use the actual IP address not 127.0.0.1. ... Point all AD clients to the DNS server setup for the AD domain ONLY (Servers ...
    (microsoft.public.windows.server.dns)
  • Slave DNS server not taking over.
    ... Today, the primary DNS server failed, but the clients still couldn't ... and verify that the slave responded to requests from clients. ... The clients are using DHCP and have a primary and secondary dns server, ...
    (microsoft.public.win2000.dns)