Re: DNS Server set to forwarder randomly going out to root servers
- From: "Kevin D. Goodknecht Sr. [MVP]" <admin@xxxxxxxxxxxxxx>
- Date: Wed, 20 Jul 2005 09:35:35 -0500
In news:46AF4F11-FBCA-4E08-92CF-4C11145E450A@xxxxxxxxxxxxx,
Fred L <FredL@xxxxxxxxxxxxxxxxxxxxxxxxx> posted this:
> We implemented the EDNS0 change to no avail.
>
> The firewall is actually acting as a caching DNS server. It has rules
> specifically to block all port 53 traffic from traversing the firewall
> regardless if it is UDP or TCP. It is meant to service the request
> of the forwarder.
>
> What I am really trying to understand is if the 2003 Server has a
> forwarder set why does it also randomly try and go to the root
> servers. What happens then is the firewall sees this attempt and
> purposely drops the traffic because of the rules we have set.
>
> Again what I don't understand is why the 2003 Server attempts to
> bypass the forwarder that is set and go to the root to traverse down
> the DNS tree. Can you stop this behaviour? I would prefer the DNS
> query just fail and then deal with the problem of why the Firewall as
> a Caching DNS server is not correctly servicing it's downstream
> clients.
You can stop the Win2k3 DNS from attempting to use Root Hints by checking
the box, "Do not use recursion" on the forwarders tab. This has the effect
of disabling root hints, so any query the Firewall cannot resolve will fail
the query instead of causing your DNS server to use its root hints.
--?
Best regards,
Kevin D4 Dad Goodknecht Sr. [MVP]
Hope This Helps
===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================
.
- References:
- DNS Server set to forwarder randomly going out to root servers
- From: Fred L
- Re: DNS Server set to forwarder randomly going out to root servers
- From: Ace Fekay [MVP]
- Re: DNS Server set to forwarder randomly going out to root servers
- From: Fred L
- DNS Server set to forwarder randomly going out to root servers
- Prev by Date: Re: dns - weir traffic - lost/no idea
- Next by Date: Re: NIC Changed
- Previous by thread: Re: DNS Server set to forwarder randomly going out to root servers
- Next by thread: Re: DNS Server set to forwarder randomly going out to root servers
- Index(es):
Relevant Pages
|
Loading