Re: Some DNS server names will not resolve using internal servers



"Brillmike" <brillmike@xxxxxxxxx> wrote in message
news:A5F49CB3-FA14-4EFA-8C96-F587A2788AC2@xxxxxxxxxxxxxxxx
We have two W2003 AD/DNS server replicating. From our client XP machines I
can go to support.microsoft.com but not WWW.microsoft.com. I can go to
WWW.gsionline.com but not LOGON.gsionline.com. We use forwarding so all
internal machines are pointing to our internal DNS server. We do not seem
to
have any issue with any other server names, just WWW for microsft.com and
LOGON for gsionline.com.

Ok, then somewhere those (2) records are being
overridden or picked up (hosts file, explicit zones,
trojan/virus, etc.)

What to do?

When you face such issues the first thing to do is
to test each DNS server involved EXPLICITLY
(from the clients):

nslookup www.Microsoft.com ISP.DNS.Server.IP
nslookup www.Microsoft.com Internal.DNS.Server.IP

(Do the first one for EACH and EVERY internal DNS
server.)

If both of these work, then likely you have something
(screwy) in a local Hosts file (%systemroot%\system32\
drives\etc\hosts). Such MIGHT be put there by a
malicious program or user who hates MS.

BTW: if i set the client to bypass the local DNS servers and resolve to
the
DNS server we forward lookup to, then i can resolve the addresses.

You must never do this (except for test purposes) --
internal machines must use STRICTLY the internal
DNS servers which can resolve both internal and
external names.




--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]


Thanks, Mike


.



Relevant Pages

  • Re: W2K3 Enterprise R2 servers not accessible
    ... "Are you able to resolve their IP addresses using ... I have gone to a DOS prompt on my server in Domain B. I type nslookup and ... it now brings back the DNS server information. ...
    (microsoft.public.windows.server.dns)
  • Re: Nslookup Wed
    ... When I use the nslookup < host> lets say msn.com I am able to resolve it ... Technically it means your client is set to use a DNS server ...
    (microsoft.public.windows.server.dns)
  • Re: Ghost DNS record
    ... Our DNS is AD integrated and is allowing only Secure Dynamic Update on ... AD we are able to resolve IP. ... PTR record on all DNS server and I cannot find that record ... When you use nslookup, it tells you which server it is using. ...
    (microsoft.public.windows.server.dns)
  • Re: Cant resolve mx records
    ... If I do a nslookup using my isp's ... nslookup against my dns server the mx record lookup times ... lookup of the mx record still fails. ... >> Earthlink but 30 minutes later it wouldn't resolve. ...
    (microsoft.public.win2000.dns)
  • Re: Can not resolve www.microsoft.com or www.yahoo.com
    ... Same type of search works via nslookup against a fully patched ... Windows 2003 DNS server. ... have also tryed with Netware DNS and it can also resolve. ... a friend of mine at another company also running windows 2003 DNS server ...
    (microsoft.public.windows.server.dns)