Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DNS Question

Status
Not open for further replies.

naifyboy

IS-IT--Management
Jan 10, 2004
62
EU
hi guys

this may sound like a silly question but i can seem to find the answer anywhere. Please can you help.

I have a domain running w2k3.
server1 has "fowarders" set up under the server properties (not as a fowarding lookup zone).
It also has reverse lookup configured for it's own subnet with a pointer so it can see resolve itself when using nslookup.

I can resolve external dns from my isp using this.

This server also runs the internal dns for the domain.

I want to know how replicate the internal dns to the other dc's and also how they will pull the external dns from server1 which in turn pulls it from my isp.

Any help greatly appreciated.

Thanks
 
If you current DNS server is setup to be Active Directory Integrated, you DNS database is stored in AD. Therefore, your other DC's already have a copy of the DNS database.

For redundacy, I would add the DNS service to at least one more DC. (all records and settings will automatically be setup for because the database is stored in AD.)

You will then have to set up Forwarders to your ISP DNS server on this new DNS server too.

Then you will have to adjust your DHCP scopes or TCP/IP settings for you clients to use BOTH DNS servers.

-Hope this helps..

Joseph L. Poandl
MCSE 2003

If your company is in need of experts to examine technical problems/solutions, please check out (Sales@njcomputernetworks.com)
 
hi joseph - thanks for that - can you tell me the difference between a forward lookup zone and just creating forwarders on the server properties if poss.

thanks again
 
Forwarders are servers that you send name queries that the local server could not resolve.

Forward Lookup Zones are where you define all the hosts that will be available for a particular zone (domain) such as domain.com. Within the Zone, you will find records that describe the server functions. For example:
A -> used for defining names of a server such as www, ftp or mail
MX -> defines which server serves a email server
NS -> Defines which server is the DNS server for this domain

Now, for your original question: Your secondary DNS server has the dns records only if you have setup the server as a DNS server and configured each Zone (domain) as Secondary Forward Lookup Zones. Just configure the 2ndary server, right click on Forward Lookup Zone, create a new Zone such as domain.com and then select secondary. After you finish, configure both server Zone Transfers and Notify properties for each zone.


Gladys Rodriguez
GlobalStrata Solutions
 
A DNZ server is usually responsible for one or more Forward Lookup Zones. A forward lookup zone is basically a domain name like company1.com

When a client queries a DNS server, the DNS server must first determine if it should respond to the request or forward the request to other DNS servers. The DNS server will respond if the query (i.e. server1.company1.com)has a domain name suffix that falls within one of its forward lookup zones. Otherwise, the DNS will either forward the request to other DNS servers or fail resolution.

If a DNS server has two forward lookup zones (for example):

company1.com
testing.com

The DNS server will only resolve queries for these two domains...This server is "Authoritative" for zones company1.com and testing.com.

if a request for company2.com was asked of this DNS server, the request would fail or get forwarded to another DNS server.

When a request is sent to a DNS server for a domain that the DNS is NOT authoritative for, the request can be forwarded to another DNS server IF FORWARDERS are configured.

In your case, you should have forwarders pointing to your ISP DNS servers. This way requests that fall outside of your internal Domain Names (like a request for are sent to your DNS server, your DNS says "nope, I am not authoritative for this domain....I must forward the request to the ISP dns servers"




Joseph L. Poandl
MCSE 2003

If your company is in need of experts to examine technical problems/solutions, please check out (Sales@njcomputernetworks.com)
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top