Re: nslookup - sometimes working, sometimes get a time out

From: aks (aks_at_discussions.microsoft.com)
Date: 02/26/05


Date: Fri, 25 Feb 2005 18:53:02 -0800

Your msg was certainly helpful. Some questions embedded preceded with "aks"

> NSLookup is set pretty quick, and you can always
> use the -time= switch.
         aks>>>>> My fear is when AD is installed on three systems, and
replication is performed, there would be no control to increase that
"-time=switch" value when one DC in first domain tries to contact another DC
in the second domain. Unless embedded within the replication code fpr AD
there is a firm retry mechanism in place. Or maybe am thinking too far on
this...

> > I have 2 questions, moving forward:
> >
> > 1. On the server side, I have Forwarders and Zone Transfers configured (in
> > my case both have same set of IP addresses).
> Probably wrong...
>
> > Could you help me know if one
> > supercedes the other or both are needed.
>
> No, they are unrelated. (Except that I can GUESS they probably shouldn't be set >to the same values).
>
> Zone transfer settings on the Secondary to say
> where you GET your copy of a particular zone
> (usually to the Primary but it can be another
> secondary for that same zone). On the Primary
> the corresponding tab is to say which DNS
> servers (secondaries probably) are ALLOWED
> to tranfer FROM the primary.
>
> [This latter setting can be used on Secondaries
> if they also ALLOWS transfers to other secondaries.]
>
> Note that zone transfers are STRICTLY about YOUR
> OWN zones and about TRANSFERRING them among
> your DNS servers for that ONE zone.
         aks>>>>>> hmmm, am confused a bit. In my case, I would have a total
of three DC's, and 3 domains, one DC and DNS server for a each domain. Each
DC would be configured with a primary DNS server (running on the same DC,
lets say DC1) and a secondary DNS server running on another DC(lets say DC2),
in another domain. Does this look ok?

          aks>>>>> If the above is ok, then the zone transfers will involve
the DNS server on DC1 and DC2 or just DC1 only ? Also, for primary and
secondary zones, is there a recommended naming convention ?
 
> As for Forwarders, they are a more general setting on
> the SERVER (as a whole, not a particular zone) are
> refer to finding name resolution for zones YOU DON'T
> own on that server set. They are largely about resolving
> the Internet as opposed to YOUR stuff.
        aks>>>>> So with my AD integrated DNS setup (as mentioned above), I
would not require Forwarders ? Or have I misunderstood something here.

Would appreciate your help.

Thanks.



Relevant Pages

  • Re: Stop Win2k DNS Server Resolving External DNS Requests
    ... > adm.uow.edu.au is your zone name, ... > asking MY DNS server to ask your DNSb or DNSc? ... and xfer'd back to the secondaries. ... Maybe the poster will cross post his response and you can find out what the ...
    (microsoft.public.win2000.dns)
  • Re: nslookup - sometimes working, sometimes get a time out
    ... >> Zone transfer settings on the Secondary to say ... >> Note that zone transfers are STRICTLY about YOUR ... > of three DC's, and 3 domains, one DC and DNS server for a each domain. ... server to be secondaries. ...
    (microsoft.public.windows.server.dns)
  • Re: Secondary DNS: Depends on Primary?
    ... able to load the zone files. ... Was I incorrect in presuming that ns2 is a "secondary" DNS server and should ... Any other recommendations for secondaries I should ...
    (microsoft.public.win2000.dns)
  • Re: Pri & Sec DNS questions
    ... "Joe" wrote in message ... The primary is the ONLY DNS server that can change ... Secondaries pull changes from their primary ... zone which lists YOUR RESOURCES. ...
    (microsoft.public.win2000.dns)
  • Re: DNS - Public/Private
    ... If a zone transfer are established between the providers dns server for ... and your own dns server that means both your local own dns server ... have a replica stored of the zone and the hosting provider. ...
    (microsoft.public.windows.server.active_directory)