Re: Unable to access site with same dns name as domain

From: Kevin D. Goodknecht Sr. [MVP] (admin_at_nospam.WFTX.US)
Date: 10/05/04


Date: Mon, 4 Oct 2004 19:30:13 -0500

In news:1d9401c4aa2b$ac6bd440$a501280a@phx.gbl,
Steve <Steve.Slawson@actsofkindness.org> commented
Then Kevin replied below:
> I just upgraded to server 2003, from server 2000. In
> doing so I changed the name of the Domain to more
> accurately reflect the organization.
>
> The new domain name is (for example) is mycompany.org.
> The web site for the company is www.mycompany.org. The
> web site server is on a bastion segment of a PIX, with a
> totally diffent IP address than what is used on the Srv 03
> domain, NAT is run from the firewall.
>
> The DNS server is a PDC, with DNS and MSX 03 on it. I
> have root hints and forwarders enabled on the DNS server.
>
> I cannot get to the web site (which is also using host
> headers) by either IP address or by name. PTR's, A
> records, host file changes - nothing has worked. I also
> for some reason cannot hit yahoo. Virtually evey other
> site works though.

Since you thankfully volunteered the info that you have a Pix firewall, a
good guess is that it is an EDNS issue, fix the Pix to allow UDP packets
over 512 bytes (recommended) or disable EDNS, preferrably fix the Pix.

828731 - An External DNS Query May Cause an Error Message in Windows Server
2003
http://support.microsoft.com/default.aspx?scid=kb;en-us;828731

825036 - Best practices for DNS client settings in Windows 2000 Server and
in Windows Server 2003
http://support.microsoft.com/default.aspx?scid=kb;en-us;825036

323380 - HOW TO: Configure DNS for Internet Access in Windows Server 2003
http://support.microsoft.com/default.aspx?scid=kb;en-us;323380

>
> Is there some way to make the DNS server point to the www
> web site, when it is the same as the AD domain name?

You won't be able to use http://mycompany.org, the record for that name
_MUST_ point to the IP address on your DC that has file sharing enabled.
This is for the SYSVOL DFS share at \\mycompany.org\SYSVOL
For the www open the mycompany.org forward lookup zone, create a new host,
name it www give it the IP address you need to access the site by. If you
must use http://mycompany.org you would have to install IIS on all DCs and
redirect the site to http://www.mycompany.org

>
> Has anyone else seen this issue on 2003? It was not
> present on Srv 2000.

-- 
Best regards,
Kevin D4 Dad Goodknecht Sr. [MVP]
Hope This Helps
===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


Relevant Pages

  • RE: NT->AD2003 upgrade
    ... server to Windows Server 2003. ... If the existing DNS zones are AD-integrated, ... Method 1: Zone Transfer ... Create a secondary zone on the Windows Server 2003 system for the zone ...
    (microsoft.public.windows.server.migration)
  • Re: One DC cant resolve all external addesses
    ... > We originally had our only DC (with DHCP and DNS) running Exchange ... Then we DCPROMOd the original server to a member ... > display page" when we tried to go to the web site. ... You should turn off friendly HTTP errors so you can see the exact error. ...
    (microsoft.public.windows.server.dns)
  • Re: Massivly slow internet connection
    ... >>> server, the Internet connections becomes very slow on all client ... We can configure the DNS ... >>> If the Internet connection speed is normal on this client computer, ... >>> functionality that is supported in Windows Server 2003 DNS. ...
    (microsoft.public.windows.server.sbs)
  • Re: JRNL_WRAP_ERROR on SBS2003 R2 Standard
    ... Let's focus on the DNS event at first. ... DNS Manager may show a Red X over the DNS server with no zones loaded ... install Windows Server 2003 Service Pack 2 or the hotfix in KB 909249. ... Windows 2003 DNS servers should also have a _msdcs.<forest root zone> ...
    (microsoft.public.windows.server.sbs)
  • Re: JRNL_WRAP_ERROR on SBS2003 R2 Standard
    ... Let's focus on the DNS event at first. ... DNS Manager may show a Red X over the DNS server with no zones loaded ... install Windows Server 2003 Service Pack 2 or the hotfix in KB 909249. ... The DNS service does not load all its zones on a DNS server that is running ...
    (microsoft.public.windows.server.sbs)