Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DNS forwarding 1

Status
Not open for further replies.

RockChalk

Technical User
Sep 18, 2003
136
US
We are using DNS forwarding to an external DNS server. In my event log it's giving me this error:

Event Type: Error
Event Source: DNS
Event Category: None
Event ID: 7063
Date: 6/14/2004
Time: 8:31:09 AM
User: N/A
Computer: ServerName
Description:
The DNS server is configured to forward to a non-recursive DNS server at "IPADDRESS".

DNS servers in forwarders list MUST be configured to process recursive queries.
Either
1) fix the forwarder (IPADDRESS) to allow recursion
- connect to it with DNS Manager
- bring up server properties
- open "Advanced" tab
- uncheck "Disable Recursion"
- click OK
OR
2) remove this forwarder from this servers forwarders list
- DNS Manager
- bring up server properties
- open "Forwarders" tab
- remove (IPADDRESS) from list of forwarders
- click OK

Any ideas on this one?

RC
 
The server that you are forwarding all DNS requests to is not configured to allow recursion from your server. You either need to ask your ISP if they do have a server that you can use for recursion or configure your server not to use forwarders and resolve DNS itself.

Chris.


**********************
Chris Andrew, CCNA, CCSA
chris@iproute.co.uk
**********************
 
Thanks Chris,
I tried to explain this error to my provider and they don't understand the error.

I'm thinking about setting up our server to reslove on it's own. Which I think it might be doing anyway.

I'll try shutting off forwarding and report back.

RC
 
Do I want to allow my dns server thru the firewall to any address? Is that safe becuase that is what it wants to do.

RC
 
Yes, you will need to allow DNS to anywhere as your server will need query other servers in order to find the authoratative servers for the domain that you are querying. 99% of the time you can get away with just allowing UDP 53 although occasionally your server may need to make a request on TCP 53 if the reply to the original request is truncated.

Chris.


**********************
Chris Andrew, CCNA, CCSA
chris@iproute.co.uk
**********************
 
Chris,
Thanks for your help. We are up and running. I don't think that the forwarding was ever working. Our internet is running a little slow but I'm guessing that the DNS server will need to run for awhile to build.

RC
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top