Solved

Slow DNS resolution of internet websites

Posted on 2006-10-30
10
224 Views
Last Modified: 2010-04-18
Hello All,

I have a bit of an issue with DNS and I am about to add a second domain controller and want to get this worked out ahead of time.  I will first explain the issue, and then give you as much detail as possible.

Currently there is 1 windows 2003 domain controller in this small network (25 users total) I have added the second server that will become the additional domain controller but at this point it is just a member server on the domain, no AD roles active on it.

My clients on the network, and DC included are experiencing slow internet access.  I test it and it is a  clear pause from when you make a request, it pauses, then after several seconds it comes down very fast.

I have thought it is a DNS issue, so on the member server I added, I had it get it's address through DHCP and it received the following (some blocked out for security purposes)

Windows IP Configuration



   Host Name . . . . . . . . . . . . : AddServer-02
   Primary Dns Suffix  . . . . . . . : xxxxxxxx.local
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : xxxxxxxx.local

Ethernet adapter Local Area Connection:
   Connection-specific DNS Suffix  . : xxxxxxxx.local
   Description . . . . . . . . . . . : Broadcom BCM5708C NetXtreme II GigE (NDIS VBD Client)
   Physical Address. . . . . . . . . : 00-15-C5-E8-4E-15
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IP Address. . . . . . . . . . . . : 192.168.1.187
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.3
   DNS Servers . . . . . . . . . . . : 192.168.1.3  (these are the current DC's addresses)
                                              192.168.1.4
   Primary WINS Server . . . . . . . : 192.168.1.3
   Lease Obtained. . . . . . . . . . : Monday, October 30, 2006 10:03:17 AM
   Lease Expires . . . . . . . . . . : Sunday, January 28, 2007 10:03:17 AM


When I have that website come up very slow, now if I just take the DNS server part and disable the DHCP for it and set it to:
207.173.224.3
206.13.31.12

Which are our ISP dns servers then everything is great, very fast, instant, as it should be.

My quesiton is should these addresses be configured somewhere in the existing DNS in Active Directory?  It seems like it looks all around locally for the site, then queries root hint servers, or something else?   I need to figure out when the resolution of external site is so sloooww  for the current AD environment.

Thanks

Bill
0
Comment
Question by:CRNorthAmerica
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 6
  • 4
10 Comments
 
LVL 11

Expert Comment

by:Chris Gralike
ID: 17837314
Do you use dns forwarding on your DNS server? or do you rely on the root hints, and is cashing enabled?
0
 

Author Comment

by:CRNorthAmerica
ID: 17837351
Where in the DNS information do I look for forwarding?  I know if you don't have forwarding then it automatically looks at root hints.  Yes, caching is enabled.
0
 

Author Comment

by:CRNorthAmerica
ID: 17837397
yes forwarders are turned on for "all other dns domains" and it is set to the dns servers that I showed above
0
Ransomware: The New Cyber Threat & How to Stop It

This infographic explains ransomware, type of malware that blocks access to your files or your systems and holds them hostage until a ransom is paid. It also examines the different types of ransomware and explains what you can do to thwart this sinister online threat.  

 
LVL 11

Expert Comment

by:Chris Gralike
ID: 17837516
The forwarder should actually point toward an internet dns server.

All zones ie; .google.com. (forward lookup)
All IP addresses not part of your network (in-addr-arpa)
are forwarded to the dns server(s) in the forwarding list...

Use the dns server of your internet provider as the forwarding address

regards,
0
 
LVL 11

Accepted Solution

by:
Chris Gralike earned 125 total points
ID: 17837527
All zones ie; .google.com. (forward lookup) not part of your domain zone (mydomain.local)

typo ;)
0
 

Author Comment

by:CRNorthAmerica
ID: 17837609
That is what I have -

In DNS Domain: (of the forwarders tab)
All Other DNS domains

and they forward to the IP's of the DNS server from the ISP
0
 

Author Comment

by:CRNorthAmerica
ID: 17837633
looks like there was a typo in the forwarders that a previous person had in there. Thanks Buddy!
0
 
LVL 11

Expert Comment

by:Chris Gralike
ID: 17837646
okey try this,

go to the command prompt of any client,

Start > Execute > cmd.exe [enter]

ipconfig /flushdns [enter]   (dont do this on a server! but a client)

nslookup [enter]
>set debug [enter]
>server (inet dns ip or name) [enter]
>google.com [enter]

and see what happens in the query ;) and post that info if it doesnt make sense :D

Regards,
0
 
LVL 11

Expert Comment

by:Chris Gralike
ID: 17837657
ps do the same against your dns server...

Regards,
0
 
LVL 11

Expert Comment

by:Chris Gralike
ID: 17837684
Well it looks like you solved the problem yourself, that wasnt me :P

Happy it works :)
0

Featured Post

What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

by Batuhan Cetin In this article I will be guiding through the process of removing a failed DC metadata from Active Directory (hereafter, AD) using the ntdsutil tool in a Windows Server 2003 environment. These steps are not necessary in a Win…
Numerous times I have been asked this questions that what is it that makes my machine log on so slow, there have been cases where computers took 23 minute exactly after taking password and getting to the desktop. Interesting thing was the fact th…
In this video, viewers will be given step by step instructions on adjusting mouse, pointer and cursor visibility in Microsoft Windows 10. The video seeks to educate those who are struggling with the new Windows 10 Graphical User Interface. Change Cu…
Add bar graphs to Access queries using Unicode block characters. Graphs appear on every record in the color you want. Give life to numbers. Hopes this gives you ideas on visualizing your data in new ways ~ Create a calculated field in a query: …

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question