Re: Inconsistant DNS resolution problems on 2003 RRAS server

From: Herb Martin (news_at_LearnQuick.com)
Date: 12/26/04

  • Next message: Gordon J. Rattray: "tracking IP's"
    Date: Sat, 25 Dec 2004 23:34:51 -0600
    
    

    > However, some clients are resolving DNS names differently that others.
    >
    > Once connected to the VPN, pinging a either FQDN or just machine name
    these
    > names resolve to the IP address internal to the network. I.e
    > pioneer.mydomain.com and PIONEER both resolve to 192.168.100.9.

    That is to be expected for EITHER of these two cases:
            Broadcasts work for the basic machine name, OR
            the machine uses this DNS suffix (mydomain.com)
            which is automatically suffixed and tried.

    > This is what I want to happen.
    > On some other VPN clients, however, when pinging the address, these
    clients
    > are getting back the Globally routable IP address of this server.

    What does that mean? When pinging an ADDRESS you
    get back some other address?

    I suspect you have mistated this (perhaps you mean pinging
    the name or something else.)

    IF you meant name, then "this server" is ambiguous. You
    need to give us some clean differentiation of the machines
    involved -- assume we are blind (we are) and you must
    be explicit. (You don't have to tell us every detail of your
    machines but you need to clearly differentiated each pronound,
    e.g., this that it or generic noun "the server" etc.

    > As stated above, the VPN settings on each client are exactly the same.
    > I've verified this with WebEx sessions to check the settings myself.

    Keep trouble shooting simple unless something likes
    you webex is your target app AND it works.

    Give us (and yourself) the clean indications from tools
    like Ping, Tracert, NSLookup, or from telneting to
    application specific ports: e.g., testing an SMTP server
    by: telnet serverIP 25

    > I don't know if this is related, but I've noticed that when VPN clients
    > connect, they always get the same IP address they had from prior
    > connections.

    Nice but not likely to cause any problem.

    > I've not set anything up explicitly to do this in the RRAS server, so I
    > suspect some kind of caching.

    Caching of what?

    Is it possible your DHCP server is dynamically registering
    the addresses given to the RRAS server -- but it only knows
    about the RRAS server, not the other machines?

    You need to get the clients to do their own registration if
    this is the case.

    > I need all clients to resolve names to the internal IP addresses.
    > Does anyone know of any fixes or work-arounds for this.?

    Focus on the DNS server, the DNS clients, and
    how they use and register DNS.

    You may have to debug log the DNS server (easy
    in the GUI.)

    nslookup is a crappy tool but it works and it is
    ubiquitous on NT class machines.


  • Next message: Gordon J. Rattray: "tracking IP's"

    Relevant Pages

    • RE: VPN Clients Not Registering in AD DNS
      ... via VPN, the DNS records of the VPN clients are unable to be registered. ... Windows 2003 server? ... please let me know whether the clients get the IP ...
      (microsoft.public.windows.server.sbs)
    • Re: How to enable communication between Two different lans (subnets)/ domains 2003 server based? Ass
      ... You will also almost certainly have DNS problems running a domain behind ... server domain, with a DHCP server running on one of the 2003 boxes. ... the "inner" subnet can see the original subnet and the Internet, ... The .227 machines can see the machines on the 192.168.1.0 subnet and the ...
      (microsoft.public.windows.server.networking)
    • Re: Permissions across 2 Forrest
      ... Primary DNS server on 1.x and the 18.x network along with DHCP and WINS. ... For instance ForrestA DNS is now a secondary for Forrest B and vise versa. ... WINS clients must use the same "WINS Database"* ...
      (microsoft.public.windows.server.active_directory)
    • Re: Still strange not fully working DNS server
      ... On none of the computers (both DC and clients) no firewall software is ... For the rest nothing happens in the DNS forward lookup zone. ... Is the new server Global catalog? ... The config you mentioned was not configured so I have configured ...
      (microsoft.public.windows.server.dns)
    • Re: Client installation frustration.
      ... not, apparently, any DNS lookup issues on my network. ... connection's addresses in DNS" and "Use this connection's DNS suffix in DNS ... is a file and print server that we have at one of our secondary sites. ... Is there any way to cancel all current requests to install clients? ...
      (microsoft.public.sms.admin)