Re: strange dns client errors

Tech-Archive recommends: Fix windows errors by optimizing your registry



There are no GPO's with DNS settings.

Have performed a google search for "dnsapi 10.1.1.1" (web or group search)
and there are a lot of people having exactly the same problem.
Unfortunately, no solutions are posted, but the following thread is
interesting:
http://groups.google.ch/group/microsoft.public.windows.server.dns/browse_frm/thread/2a6859603ae4d742/6c52e5adf6ce8fcb?lnk=st&q=dnsapi+10.1.1.1&rnum=1#6c52e5adf6ce8fcb

Another MVP mentions in this thread the follwing: "As I previously stated,
all members of your AD domain must use only the DNS servers that support the
AD domain, ONLY. No external or ISP's DNS allowed in any position on any
interface. "

But this requirement is impossible when connecting to an ISP and then
connecting to the internal domain over a VPN connection. The Ethernet NIC
has got external DNS server entries when the initial ISP connection over
ADSL is performed. The VPN interface will finally get the internal DNS
Servers as I described in this thread. But again, even the ISP will never
assign addresses like 10.1.1.1.

Why we are digging these errors: A customer application needs a working
reverse lookup function for it's notebooks for printing functions over a
central host application. And it happens sometimes, that the PTR records are
not deleted when a notebook disconnect it's VPN connection. When these
notebooks are connected later over the LAN, it happens that more than one
PTR record with different IP addresses is registred for the same computer.
We suspected security issues and have configuered the DNS reverse lookup
zones for accepting any dynamic updates (not only secure updates), but it
doesn't solve the problem.

Thank you all in advance for any futher hints
Franz


"Ace Fekay [MVP]" <PleaseAskMe@xxxxxxxxxxxxxx> schrieb im Newsbeitrag
news:ujVTMepCHHA.144@xxxxxxxxxxxxxxxxxxxxxxx
In news:Oax5MeJCHHA.3448@xxxxxxxxxxxxxxxxxxxx,
Franz Schenk <franz.schenkNOSPAM@xxxxxxxxxxxxxxxx> stated, which I
commented on below:
Thank you for your feedback, some additional information:

- Client IP configuration:
DHCP enabled. . . . . . . . . . : Yes
IP Adress. . . . . . . . . . . . : 10.42.0.140
Subnet Mask. . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 10.42.0.15
DHCP Server . . . . . . . . . . . : 10.42.0.16
DNS Servers. . . . . . . . . . . . : 10.42.0.16
10.42.0.23
Primary WINS Server. . . . . . . : 10.42.0.16
Secondary WINS-Server. . . . . . : 10.42.0.23

- There are no forwarders configured on both DNS Servers
- There are three correctly configured reverse lookup zones for the
networks 10.42.0.0/24, 10.42.2.0/24 and 10.42.3.0/24.
- There is absolutly no host with an address 10.1.1.1, and a network
that begins with 10.1 is unknown. All networks are in the range of
10.42.x.x - ICS was never configured on the network
- Both DNS Servers are not mulithomed
- DHCP is only configured on the server 10.42.0.16 for all scopes


Thank you in advance for any further help!
Franz

Interesting Franz, that it's not specified anywhere. Strange. Curious, how
about in a GPO? If I can think of anything else, I'll let you know.

Ace



.



Relevant Pages

  • Re: No DNS resolution with ICS
    ... >> Windows 2000 IP Configuration ... >Broadband Router and let it be the connection to your DSL ... Testing DNS ... Directed Pkts Recd: 1992 ...
    (microsoft.public.win2000.dns)
  • Re: cannot access external dns server
    ... DNS Suffix search list: sedco.local ... Ethernet adaptor Server Local Area Connection ... DNS Servers: 192.168.1.254 ... SBS Standard or Premium ...
    (microsoft.public.windows.server.sbs)
  • Re: Clients cannot acces internet
    ... Along with DNS, RPC over HTTP proxy and WINS. ... Windows IP Configuration ... Ethernet adapter Server Local Area Connection: ...
    (microsoft.public.windows.server.sbs)
  • Re: Can a bad Etherlink card effect browser ability to access the net?
    ... Primary DNS and Secondary DNS IP ... While I can't access the Internet via my DSL ... Try repairing the connection (contl panel-network ... that might identify if the problem is your providers DSL DNS servers or some ...
    (alt.comp.hardware.pc-homebuilt)
  • Re: reverse lookup zone corrupt
    ... Ethernet adapter Server Local Area Connection: ... Is this DC using an ISP's DNS address in it's IP configuration? ... AD integrated zone, the deletion is domain or forest wide, depending ont he ...
    (microsoft.public.windows.server.dns)