Right but what type of zones are they. Are they a standard primary and secondary or AD integrated? It just sounds like they are not setup to replicate from DC1 to DC.
Yu've got AD, why not have AD interated zones on each domain controller. Then setup each server to forward out to your isp's...
That means DC2's DNS can talk to DC1's DNS. Most likely something in the way you setup DNS on DC2 is not correct. What types of zones do you have setup?
So it's just DNS then that's having the issue? If so try that telnet command, that will tell you if DC2 can talk to DC1 on port 53.
Other than that, what types of zones do you have setup on DC1 and DC2?
If i remember correctly the pdc emulator is only important with down level clients like NT4 boxes and password changes for those clients.
Might want to try setting your second server up as a Global Catalog server also. That might be part of it.
Sounds like the VPN device might be preventing Site2 from initiating communications to Site1. You can try to telnet from you DC in Site2 to the DC in Site1 one and see if you can talk to the DNS service.
telnet site1dcip 53
If it fails to connect then there is something blocking your...
Your 192.16.4.x/24 segment needs to know how to get to the 192.16.5.x/24 segment. So DC4 tries to arp and get DC5's mac, but because it's on another IP segment, it never gets that info.
There are 2 patches that you probably need to get installed, 827825 and 828153. Had the same thing happening on a citrix farm, started after we installed the dcom patch.
Crossing to another subnet usually requires talking to some sort of routing device. Two different subnets on the same switch like you have will not work.
This also happens on sp3 with the dcom vulnerablility patch installed, call msoft, they will give you 2 patches to install.
828153
827825
Install and enjoy!
What port are you using the citrix xml service on? I believe the default port is 80, that will conflict with your web services unless you aren't using port 80. We had to change to 81 to make everything work smoothly.
Might try setting up a round robin dns entry, see if this helps, search for "round".
http://www.microsoft.com/technet/treeview/default.asp?url=/TechNet/prodtechnol/windows2000serv/reskit/tcpip/part2/tcpch06.asp
You actually don't need to do anything, dcpromo will install and configure the dns service for you. doing it your way created a standard primary zone. Letting dcpromo do it automagically created an AD integrated zone.
I usually just get the DNS service installed, then dcpromo.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.