Re: _msdcs.<ForestName> - Help Pls



Felix wrote:
Hi,

I would like to know whether we need to have the _msdcs.<Forestname>
on all the additional domain controllers DNS servers. Is this a
necessity? Because, I have my main dnsname which actually gets
transferred from the primary server when I install DNS on an
additional DNS server. But, I do not see _msdcs.<ForestName> getting
transferred.

I spoke to a MS Tech Support person, and he checked the other domain
controllers. He then manually added the _msdcs.<ForestName> onto
these new domain controllers. According to some tech doc what I came
across, I saw that, this is not supposed to be manually added.

But, should this be made available on the additional domain
controllers which are residing on the remote sites for DNS to
function properly? or Is it suffiicent just to have the domain.com
which was transferred from the primary server to have DNS function
properly?

Please, I really need this information. As, I tried adding this
_msdcs.<ForestName> on the new domain controller (Win2K3) I built,
and found that it is adding but it does not load and it errors out.
It says "Zone Not loaded by DNS server". I tried refreshing,
reloading from Master, nothing worked.

Help Please! Thanks in advance

It would help to know what OS the other DCs that had the zone added was. The
replication partition the zone is in by default does not replicate to Win2k
DCs. So, if the zone is to be on a Win2k DC, it must be added as a
secondary. However, it would be replicated to all Win2k3 Dcs in the forest,
and you would not need to add it. If you are trying to add it as a secondary
zone on the Win2k3 DC, or if you are adding it in the wrong partition, I can
see why you would see the error.

The records in this zone must be available at all times to all DCs.

817470 - HOW TO: Reconfigure an _msdcs Subdomain to a Forest-wide DNS
Application Directory Partition When You Upgrade from Windows 2000 to
Windows Server 2003
http://support.microsoft.com/default.aspx?scid=kb;en-us;817470&sd=RMVP

--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps
===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
https://secure.lsaol.com/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


.



Relevant Pages

  • Re: Error 4515 on reboot of DC/DNS Svr - normal?
    ... I did run dcdiag on all DCs, ... I do believe you are correct that the "old" zone is still there. ... (replication is for all DNS servers in the forest) ... The key is that your clients have to be able to go to ANY DNS server ...
    (microsoft.public.windows.server.dns)
  • Re: SRV records
    ... Keep in mind replication scope of an AD integrated zone properties. ... If you set it to All DNS server in the domain on one of the DCs, and to all DNS servers in the Forest, this can cause a major problem and would be a cause of the problems you were seeing. ...
    (microsoft.public.windows.server.dns)
  • Re: Adding an additional DC/DNS to existing domain
    ... the existing DCs have to integrated DNS..... ... Or do you have to create the zone manually and designate it as AD integrated, then wait for it to populate? ... simply go to add remove programs - add the DNS server ... ... replication would never occur. ...
    (microsoft.public.win2000.active_directory)
  • Re: secondary _msdsc zone & 6525 errors
    ... There are 2 Domain Controllers in the root and under the Zone Transfer tab ... "To any server" selected. ... Domain Controllers in the child domain as a secondary zone. ... Reviewing the DNS logs on the root master DNS server, ...
    (microsoft.public.windows.server.dns)
  • Re: Configure the DNS Server
    ... On the Apac.domain.com DNS server - that same zone says it is a secondary domain. ... For a correct answer I need to know, are both of these DCs for the same ... Under Windows 2000 AD Integrated zones will only replicate to DCs within the ...
    (microsoft.public.win2000.dns)