Re: Does Microsoft DNS support GSLB?



rbl@xxxxxxxxxxxxxxxxxxxxxxx wrote:
Hi Kevin, thanks for the reply.

I have been told by the infrastructure team (I am a developer) that
subnet proximity of the client and host is not a reliable indicator of
physical proximity. Prior usages of this assumption resulted in
clients in certain branch offices being redirected to a completely
different office, not to their "local" server. They admit the network
was not planned out well at the start, now they are living with it.

Hence for other requirements like this, they have begun to use and
maintain a Sites & Services based list of subnets at each Site, and
have encouraged me to design my solution around Sites & Services,
since this is their reliable and always maintained "lookup table" of
which client IP subnet ranges are found in which physical locations.
They suggest I then add my web site as a custom defined Service (e.g.
_intranet._tcp) in each Site. The idea would be that a logical scan of
all subnets in the Sites list would identify which Site the client is
at, and then the client should be directed to the host defined as
hosting the _intranet._tcp service at that site.

So is there any way for DNS to leverage the correct "physical
proximity" knowledge embedded in AD Sites & Services? I could write a
custom ISAPI filter that runs on all web servers that redirects
clients to the right host, but then they are jumping across the WAN
just to be redirected back to a local host. I would prefer to avoid
this penalty if possible, which is why I am looking to DNS...

The only way DNS can do this is by using Netmask ordering, then DNS will
return the IP addresses in the order that is the closest match for the
client first.
As for using AD Sites and Services, I can't say whether you can or cannot
get the correct site, it is not in my field of expertise. You might try
posting this question in the Active Directory group, I'm sure if it can be
done, someone has done it.
I do know there is a DHCP option for giving a list of available web servers
(option 072) I've never used it or tried to use it, I just know it is there.

There is one other option, you can use a Group Policy for the individual
sites, then publish a different home page, link, or favorite in each GPO, I
do use this one, but to guarantee the user gets the correct site, would
require each of the servers to have a slightly different URL. The
unfortunate part of this is the GPO is applied according to the OU the user
is in, if the users roams, they get the GPO from the AD site the user is in
AD Sites & Services.



--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps
===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
https://secure.lsaol.com/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


.



Relevant Pages

  • having problems with dhcpd and bootp clients
    ... BOOTP from dynamic client and no dynamic leases ... uses within a much larger subnet. ... None of these clients are DHCP clients, they are only BOOTP. ... all of the host entries are: ...
    (freebsd-questions)
  • Re: Linux FreeS/WAN road warrior problem
    ... > to host you will have no difficulties. ... > road warrior client, or if it has a net hanging off of it. ... linux2 is only a single linux client without a subnet behind it. ... >> Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts! ...
    (Security-Basics)
  • RE: ICS clients cannot connect
    ... I've got this from the ICS host: ... I turned off ICS host and then enabled it. ... the client and entered "ipconfig /release". ... goto one of the client machines and do the same, ...
    (microsoft.public.windowsxp.general)
  • Re: Does Microsoft DNS support GSLB?
    ... physical proximity. ... client IP subnet ranges are found in which physical locations. ... and then the client should be directed to the host defined as ...
    (microsoft.public.windows.server.dns)
  • Re: HTTPS; SSL-Tunnel
    ... Referring Server Destination Host Name Transport MIME Type Object Source ... Source Proxy Destination Proxy Bidirectional Client Host Name Filter ... > SSL-tunnel OFT Website anonymous Internal External ...
    (microsoft.public.isa)