Re: W2K DNS Forwarding

Tech-Archive recommends: Fix windows errors by optimizing your registry



Read inline please.


In 740795ab63d79@uwe">news:740795ab63d79@uwe,
knsljo via WinServerKB.com <u35220@uwe> typed:
I could do with some help regarding DNS!

[quoted text clipped - 14 lines]
forwarding pointed to each of the DNS servers to service DNS
requests regarding their domains from HQ. Thanks again!!

By following Kurt's recommendation, the only forwarding you may want
would be to your ISP's DNS servers, because by having Secondary
zones for each remote domain on each DNS server, all DNS server will
be able to resolve all domains without forwarding.

It is not a good idea to forward back and forth between DNS servers
because if you aren't careful, you could start DNS looping. DNS
loops occur when two or more DNS servers forward to each other, with
each telling the other to resolve unknown names.

I have tried to set up a secondary zone on the main HQ DNS server's
forward lookup zone and reverse lookup zone for one of the remote
domains but get this error:
"The DNS server encountered an error while attempting to load the
zone. The transfer of zone data from the Master server failed."
It creates the zone but no zone data from the remote domain's DNS
server gets entered. How do i get this to work?

On the primary zones, you need to allow zone transfers to the IP addresses
of the servers with the secondaries.


Do i also need to
create a secondary zone for the HQ DNS servers on the remote domains?

I would on the Win2k servers, it isn't necessary to create secondary zones
on the Win2k3 servers, on those servers you can add Conditional forwarders,
with "Do not use recursion for this domain" for their remote domains.

By configuring the servers this way, you can forward internet requests to
your ISP's DNS servers.


--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps

===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
http://message.wftx.us/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


.



Relevant Pages

  • Re: DNS and active directory
    ... my other two w2k3 DNS servers are listed so I am guessing ... on my Root domain dns server is set to replicate to "All DNS servers in the ... SHOULD be set to replicate to the forest so that the updates for each zone ... DNS data can be replicated in various application directory partitions (in ...
    (microsoft.public.windows.server.dns)
  • Re: Nameserver scenario with advertisers and resolvers - Solution Sum
    ... These are the two "hidden" DNS servers. ... I setup two more DNS servers in a Primary/Secondary configuration ... I created the zone for the internal domain. ...
    (microsoft.public.windows.server.dns)
  • Re: Secondary Zone Resolution Problem
    ... on my network and another Secondary zone for intranet name resolution. ... resolves these issues, but I want to fix the issue with DNS. ... What are the preferred and alternate DNS servers listed in TCP/IP ...
    (microsoft.public.windows.server.dns)
  • Re: AD integrated/secondary zone entry discrepancies in W2k forest
    ... The DNS servers are clients too, ... The child domain DNS servers need to be able to query the root domain ... zone, and one way to do that is by having an active-directory integrated ... confusing and it may be simpler to make them all standard secondaries. ...
    (microsoft.public.windows.server.dns)
  • Re: DNS resolving issues
    ... When you configure a child domain you either create a sub domain or delegate ... to do this would be to create a secondary zone that pulls the AD-Integrated ... the zone transfers tab is only used for DNS servers ...
    (microsoft.public.win2000.dns)