DNS Cache corruption?

Tech-Archive recommends: Speed Up your PC by fixing your registry



I'm getting close to production.. I've gotten internal IT on to my DNS server, and all is going well, but today I lost connectivity to www.cnn.com.. however could get to other sites and a different machine at my desk, using a different DNS server could get to cnn.com. This happened to me a few weeks or a month ago with www.aol.com.. my AIM lost connectivity, I couldn't resolve any hosts at aol.com and the resolution was to clear the DNS cache.

The question is... what is causing this, and why? Right now I have 4 users on my DNS server... I expect this issue to become far more frequent and worse when I have 200 users on it.

The current setup right now is 2 servers (for simplicity of testing..) Amer-DNS1 is my stub zone server that points to amereast-dc5 (my ionaglobal.com DC/DNS server). I have a bunch of secondary zones on amer-dns1 from my other dns server in dublin, and a bunch of stub zones, pointing to the ADI zones and Primary zones on amereast-dc5.

As far as configuration goes... everything should be configured properly. I have secured only updates on my ionaglobal.com zone and the rest of the primary zones I have non-secure updates (since they aren't ADI yet.)

I just don't get why every once in a while I seem to get some corruption in my DNS cache.. I don't see anything weird when I look through the cache and there's no errors in the event log.

Does anyone have any ideas? Has this happened to anyone else? I've set things up for production pretty much by the book.

Cheers,
-Derek

.



Relevant Pages

  • Re: Cannot get access to router on SBS server
    ... point the DNS server setting to the IP of the SBS ... calling CNetCommit::ValidateFulltimeConnectionProperties. ... Call to Reading web publishing selection returned ok. ...
    (microsoft.public.windows.server.sbs)
  • Re: Herb Martin...Global Catalog SRV record missing!
    ... Error: Root hints list has invalid root hint server: ... DNS server: 128.63.2.53 ... PTR record query for the ...
    (microsoft.public.windows.server.dns)
  • dns resolving itself
    ... Master lists of secondary zones does not contain itself. ... server unless subzone is also on this server - can someone clarify this? ... The DNS server should never be sending a packet to itself. ...
    (microsoft.public.win2000.dns)
  • help with dns resolving to itself warnings
    ... Master lists of secondary zones does not contain itself. ... server unless subzone is also on this server - can someone clarify this? ... The DNS server should never be sending a packet to itself. ...
    (microsoft.public.windows.server.dns)
  • [UNIX] Hardening the BIND DNS Server
    ... Hardening the BIND DNS Server ... Your Domain Name Service is the road sign to your systems on the Internet. ...
    (Securiteam)