?
Solved

DNS Fails to respond properly

Posted on 2004-10-06
6
Medium Priority
?
584 Views
Last Modified: 2010-04-14
I'm working with a client right now that has an odd problem.  They are running a server with Windows 2000 server, SP4.  For some reason, the server will stop resolving DNS properly, until I do anything to the DNS entries.  Then everything will work fine for about 10-15 minutes, then it will stop again.

For example...  there are three servers in the DNS settings.  All are good addresses, all are DNS servers that are online and functional.  When the server stops resolving DNS properly (as in, addresses outside the LAN cannot be resolved), all I have to do is go into the DNS settings and change the order of the servers, and boom, eveything works well again.

For a little while.  Then it will stop, I rearrange the entries, and all is well again.  I've even tried setting it up so there's only one DNS server.  Same thing happens - resolution stops, I modify the entry to a different server, and everything works again for a short time.

Any thoughts?  This has apparently been going on for quite some time, but their last contractor was either unable to find the problem, or didn't look deep enough to try to fix it.

Many thanks in advance,

Sean
0
Comment
Question by:smconsult
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 2

Author Comment

by:smconsult
ID: 12244777
One more comment on this....

As I Describe the problem of resolution failing, I'm talking about resolution OUTSIDE the network.  Everything is working OK inside the LAN, but going to any address outside the LAN fails from the server.  (Works just fine on all of the client computers.)  I can ping an address, no sweat - it's just name resolution that fails.

Sean
0
 
LVL 85

Expert Comment

by:oBdA
ID: 12246351
You probably have set your DNS servers to point to your ISP's DNS? If so, then that's incorrect; if you have a root zone in your forward lookup zone (the single dot, "."), delete it; then configure forwarders to point to your outside DNS servers.
Are these just DNS servers or DCs as well?
Here are some links to start with:

Frequently Asked Questions About Windows 2000 DNS and Windows Server 2003 DNS
http://support.microsoft.com/?kbid=291382

Best practices for DNS client settings in Windows 2000 Server and in Windows Server 2003
http://support.microsoft.com/?kbid=825036

How To Configure DNS for Internet Access in Windows 2000
http://support.microsoft.com/?kbid=300202

HOW TO: Troubleshoot DNS Name Resolution on the Internet in Windows 2000
http://support.microsoft.com/?kbid=316341
0
 
LVL 2

Author Comment

by:smconsult
ID: 12248011
Thanks, I will check them out, and stop by the client today and see what's set up.  I can't recall of the top of my head if there's a root zone in the FLZ or not.  But yes, the DNS servers are pointing to the ISP's DNS servers.

The server in question is the DC for the client.  It is also the only server present on the domain.

I'll report back.

Sean
0
Optimize your web performance

What's in the eBook?
- Full list of reasons for poor performance
- Ultimate measures to speed things up
- Primary web monitoring types
- KPIs you should be monitoring in order to increase your ROI

 
LVL 85

Accepted Solution

by:
oBdA earned 2000 total points
ID: 12248113
In that case, make sure the DC points *only* to itself for DNS in the TCP/IP properties; the same is valid for all domain members, the only DNS server they can use is the DC. And just in case, make sure the DNS server is configured to allow Dynamic Updates for the AD zones (stop and start the DNS service if you had to enable this).
Check if the SRV records have been created; if not, stop and restart the netlogon service on the DC after enabling the DNS dynamic updates. Check if there's a host entry for the DC as well in DNS; if not, enter "ipconfig /registerdns" in a command window.

How to Verify the Creation of SRV Records for a Domain Controller
http://support.microsoft.com/?kbid=241515

SRV Records Cannot Be Registered on a DNS Server
http://support.microsoft.com/?kbid=316239
0
 
LVL 71

Expert Comment

by:Chris Dent
ID: 12248368

If DNS Forwarders aren't working it might be worth checking that Root Hints works instead.

This method will drop back to the Root DNS Servers for each TLD (Top Level Domain). As such it is not reliant on any one specific ISP DNS Server (any my preferred set-up for any DNS Server).

This article describes how to replace a broken Root Hints file - it should also point you in the right direction for checking it:

http://support.microsoft.com/default.aspx?scid=kb;EN-US;249868

This is a little FAQ on Microsoft DNS if it's useful:

http://support.microsoft.com/default.aspx?scid=kb;EN-US;291382
0
 
LVL 2

Author Comment

by:smconsult
ID: 12371782
Thanks to both of you for the information.  oBdA, your solution was the one that was right on the mark (ISP's DNS in the server).  Chris-Dent, while the problem ended up not being related to Root Hints, I very much appreciate the information you provided.

Again, I appreciate the help that you both provided.  Many thanks!

Sean
0

Featured Post

Ransomware: The New Cyber Threat & How to Stop It

This infographic explains ransomware, type of malware that blocks access to your files or your systems and holds them hostage until a ransom is paid. It also examines the different types of ransomware and explains what you can do to thwart this sinister online threat.  

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
New style of hardware planning for Microsoft Exchange server.
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …
Add bar graphs to Access queries using Unicode block characters. Graphs appear on every record in the color you want. Give life to numbers. Hopes this gives you ideas on visualizing your data in new ways ~ Create a calculated field in a query: …
Suggested Courses

800 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question