Re: Primary/Secondary DNS Issue

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: Ace Fekay [MVP] (PleaseSubstituteMyActualFirstName&LastNameHere_at_hotmail.com)
Date: 02/08/05


Date: Tue, 8 Feb 2005 00:31:05 -0500

In news:OJ2PFDSDFHA.3976@tk2msftngp13.phx.gbl,
DavidM <spam@spam.net> made a post then I commented below
> Hi --
>
> zone transfer is allowed only between the two DNS servers using the
> name of ns1.mydomain.net and ns2.mydomain.net. I'm actually running
> the NSLOOKUP from ns1 to see if I can do an LS from either.
>
> Such as:
>
> NSLOOKUP
>> server 10.246.16.50 (my secondary DNS server)
>> ls -d mydomain.net
>
> Which fails and said query refused.

QUERY REFUSED.
Exactly my point. Zone transfers may be allowed from ns1 to ns2, but not the
other way. You'll need to specifically go into the secondary zone properties
and allow zone transfers from ns2 to ns1 for that zone.

>
> Last question... Am I allowed to do a query test from the DNS Manager
> from the secondary? When I try this, it fails It works fine from
> the primary.

This I haven't tried, but don't see why it doesn't work. Do you have a
forwarder individually set on each to your ISP's DNS?

Ace



Relevant Pages

  • Re: Primary/Secondary DNS Issue
    ... > the NSLOOKUP from ns1 to see if I can do an LS from either. ... Zone transfers may be allowed from ns1 to ns2, ... Am I allowed to do a query test from the DNS Manager ...
    (microsoft.public.win2000.dns)
  • Re: FRS and DNS not replicating properly should I be worried?
    ... DNS runs as AD intigrated. ... have multiple primaries, you should have one and the rest are secondary's. ... Whereas on both the my primary dc's Zone transfers are enabled for all ... servers on the name server tab is enabled. ...
    (microsoft.public.windows.server.active_directory)
  • Re: FRS and DNS not replicating properly should I be worried?
    ... DNS runs as AD integrated. ... have multiple primaries, you should have one and the rest are secondary's. ... Whereas on both the my primary dc's Zone transfers are enabled for all ... servers on the name server tab is enabled. ...
    (microsoft.public.windows.server.active_directory)
  • Re: FRS and DNS not replicating properly should I be worried?
    ... MVP - Directory Services ... DNS runs as AD intigrated. ... Whereas on both the my primary dc's Zone transfers are enabled for all ... servers on the name server tab is enabled. ...
    (microsoft.public.windows.server.active_directory)
  • Re: DNS issue
    ... Forwarder on both side to point to each other DNS, ... I would suggest to use EITHER zone transfers or Conditional Forwarders. ... the other forest has to allow your machines to pull from ...
    (microsoft.public.windows.server.dns)