Solved

DNS Aliases conk out

Posted on 2003-10-28
13
696 Views
Last Modified: 2010-03-19
Hi folks,

I have an internal DNS Server. It's running on Windows 2003 Server, although this problem was happening when it was on 2000 Server as well.

There are a bunch of hosts (A) in there, and several aliases (CNAME) as well. The A records seem to always work, however; the aliases will stop responding on a fairly regular basis. Maybe 3 times a week, a query for any alias will start failing. This happens to a handful of users, although I suspect that others just don't mention it. It doesn't happen to everyone at the same time, so it's not strictly a server problem. I know it has to do with client/server interaction.

I've found that issueing "ipconfig /registerdns" fixes the problem immediately. I'm running Win2K Pro SP4.

I suspected negative caching, but I don't need to flush the cache to fix it, just the registerdns (maybe this flushes the cache as well....). I know I can turn off negative caching, but I can't remember how (that's not what the points are for!).

Any ideas?
0
Comment
Question by:JammyPak
  • 5
  • 4
  • 2
  • +2
13 Comments
 

Expert Comment

by:sinexec
ID: 9637532
It seems to me that the negative caching is not the source of problems at all (presuming there is no changes made in resource records in your DNS). Even though, I am not very familiar with Windows 2003 DNS server, it seems to be a problem of DNS updates in regard with your DHCP-assigned ip-addresses.
If it is not a must to have a dynamically-assigned DNS names with accordance with DHCP, the best option is to turn the feature off and use traditional, static DNS.
0
 
LVL 35

Expert Comment

by:ShineOn
ID: 9638613
Do you have more than one DNS server configured for the clients?  Is the DNS resolver order looking at your Win2K3 DNS server as primary?  How many C records do you have for each A record, and are they frequently changed?  Is this a DDNS issue rather than a straight DNS issue?
0
 
LVL 16

Author Comment

by:JammyPak
ID: 9641618
Some responses:

1) I have a static IP address, so DHCP isn't my issue
2) I have two DNS servers configured, but my internal server is my primary one.
3) For some servers, there are 3 or 4 aliases, but the aliases are static - ie. I added them manually and they don't change.

thanks so far!
0
 
LVL 17

Expert Comment

by:John Gates
ID: 9642181
What are the CNAME entries for?  I would suggest if this is an Internet site to go to www.dnsreport.com and make sure they check out...  CNAME entries can be incorrectly done and cause problems just like you are stating.

D
0
 
LVL 16

Author Comment

by:JammyPak
ID: 9644253
This is an internal DNS server, and the aliases are only 'visible' internally....dnsreport.com can't help me.
0
 
LVL 17

Expert Comment

by:John Gates
ID: 9644313
can you show how you have your records set up>?
0
Find Ransomware Secrets With All-Source Analysis

Ransomware has become a major concern for organizations; its prevalence has grown due to past successes achieved by threat actors. While each ransomware variant is different, we’ve seen some common tactics and trends used among the authors of the malware.

 
LVL 16

Author Comment

by:JammyPak
ID: 9645738
Forward-lookup zone company.com

sam   Host(A)   192.168.2.127
cvs    Alias (CNAME)  sam.company.com.
ntp    Alias (CNAME)  sam.company.com.
intranet     Alias (CNAME)  sam.company.com.
dbm   Host(A)   192.168.2.122
issue    Alias (CNAME)  dbm.company.com.
project    Alias (CNAME)  dbm.company.com.
time    Alias (CNAME)  dbm.company.com.
0
 

Expert Comment

by:sinexec
ID: 9647660
There seems no problem with the actual records.
In my opinion, you have to make sure that the zone company.com _does not_ allow for any dynamic updates whatsoever - this might be a solution for your problem.
0
 
LVL 1

Expert Comment

by:a_pawsey
ID: 9921460
Hi,

This isn't strictly the correct comment, but we've had the same problem too.

Have you got anywhere with it JammyPak?

Thanks
Adam.
0
 
LVL 17

Expert Comment

by:John Gates
ID: 9921513
Are your clients set up with any other DNS servers besides the internal ones?
0
 
LVL 16

Author Comment

by:JammyPak
ID: 9921825
Adam: no, I haven't gotten anywhere with this yet....it still happens sporadically and to different users.

dimante: yes, right now they have an internal primary (which has the aliases in it) and the secondary is an external server. The strange thing is that it's not the internal host records that stop responding - just the aliases. So, it seems like I'm still using the internal DNS server when the failure starts happening.

This is quite an annoying problem, since it seems like everything is set up by the book....and yet I haven't seen other people reporting this problem (except you Adam!)

0
 
LVL 17

Accepted Solution

by:
John Gates earned 500 total points
ID: 9921875
Here is what I would suggest.  Use no external DNS servers on your clients.  Have your internal dns server forward to the external DNS server for queries it can't resolve.  I think this will solve your problem.


D
0
 
LVL 16

Author Comment

by:JammyPak
ID: 10212854
This *seems* to be working....it was an intermittent problem, and it hasn't happened in a while now, so maybe it's fixed.

II would still be very interested in knowing the *why* behind it...
0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Exchange 2016 : 451.4.4.0 dns query failed exchange 10 33
Guest VLAN not syncing email 13 21
active directory 3 26
DNS Woes 7 15
This is an article about my experiences with remote access to my clients (so that I may serve them) and eventually to my home office system via Radmin Remote Control. I have been using remote access for over 10 years and have been improving my metho…
Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now