Re: DNS Bogus Packet

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



On 16 juil, 23:47, "Ace Fekay [MVP]" <PleaseAs...@xxxxxxxxxxxxxx>
wrote:
Innews:1184601213.819815.133130@xxxxxxxxxxxxxxxxxxxxxxxxxxx,Qafyg<qa...@xxxxxxxxxxx> typed:







Thanks for taking the time to answer Ace,

I should have included more details in my original post.

The DNS server is a primary public DNS server (Isolated from our
internal DNS architecture). It's not hosting any AD integrated zones.

There are no fowarders configured and recursion is disabled.

Checkbox for Cache pollution is checked.

All the name of the zones appears to be valid, and request that seems
to generate the error are made for very kosher host and domain names.

Thanks for any inputs!

Martin

Martin,

COnfigure a forwarder. This way you can offload outside resolution to the
forwarder. Disabling recursion (under the Forwarders tab) will just disable
the Root HInts. If this is the case, I am surprised you are getting internet
resolution. Maybe that might be why the 'bogus' errors. Try 4.2.2.2 for
forwarder and post back.

Ace- Masquer le texte des messages précédents -

- Afficher le texte des messages précédents -

I've re-read my orignal message and realized it's not very clear.

Our DNS architecture is designed this way:

We have DCs that acts as internal DNS servers and have fowarders to
the ISPs DNS servers. They are hosting a business.internal AD
integrated zone.
We also have 2 servers in the DMZ that acts as external DNS servers.
They are hosting a business.com zone (Mainly for Websites, FTP, etc.)

If our users try to resolves some internet names, including our own
websites, etc. they go thru our ISP.

The server that is generating the errors mentionned in my original
post is the primary external DNS server when it answers queries from
the internet. Since it's only sitting there to answers queries about
his zones, we haven't enabled recursion. Everything is working fine
except it generates this event every 10 minutes or so.

Martin

.



Relevant Pages

  • Re: DNS Bogus Packet
    ... It's not hosting any AD integrated zones. ... COnfigure a forwarder. ... We have DCs that acts as internal DNS servers and have fowarders to ... If our users try to resolves some internet names, ...
    (microsoft.public.windows.server.dns)
  • Re: XP machines cannot resolve the names to IP
    ... LAN it resolves the names to IP but this issue is only for internet, ... to access unless the server is not allowed for internet also.Is this ... Your post is kind of confusing, but if your firewall is setup to block DNS ... resolution for internet names could fail unless you set a forwarder and open ...
    (microsoft.public.win2000.dns)
  • Re: Should I use DNS forwarders?
    ... I wrote a simple script that blasts DNS querys to ... Using my ISP's DNS servers as forwarders, ... WANS layout makes the forwarder more efficient. ... want your internal servers visiting the ENTIRE Internet, ...
    (microsoft.public.windows.server.dns)
  • Re: www Forwarder?
    ... >recently have had a T-1 added for internet etc. ... could I add a Forwarder named ... so the local DNS would try to resolve URURUR.com ... name the same as the externally hosted web site domain and you're not ...
    (microsoft.public.win2000.dns)
  • Re: DNS and domains
    ... > internet but it would not allow timely logons. ... I cannot place a forwarder or root hint into the DNS for the ... Using your local DNS is not an option, it is required, never use your ISP's ...
    (microsoft.public.win2000.dns)