Solved

Slow DNS resolution of internet websites

Posted on 2006-10-30
10
218 Views
Last Modified: 2010-04-18
Hello All,

I have a bit of an issue with DNS and I am about to add a second domain controller and want to get this worked out ahead of time.  I will first explain the issue, and then give you as much detail as possible.

Currently there is 1 windows 2003 domain controller in this small network (25 users total) I have added the second server that will become the additional domain controller but at this point it is just a member server on the domain, no AD roles active on it.

My clients on the network, and DC included are experiencing slow internet access.  I test it and it is a  clear pause from when you make a request, it pauses, then after several seconds it comes down very fast.

I have thought it is a DNS issue, so on the member server I added, I had it get it's address through DHCP and it received the following (some blocked out for security purposes)

Windows IP Configuration



   Host Name . . . . . . . . . . . . : AddServer-02
   Primary Dns Suffix  . . . . . . . : xxxxxxxx.local
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : xxxxxxxx.local

Ethernet adapter Local Area Connection:
   Connection-specific DNS Suffix  . : xxxxxxxx.local
   Description . . . . . . . . . . . : Broadcom BCM5708C NetXtreme II GigE (NDIS VBD Client)
   Physical Address. . . . . . . . . : 00-15-C5-E8-4E-15
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IP Address. . . . . . . . . . . . : 192.168.1.187
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.3
   DNS Servers . . . . . . . . . . . : 192.168.1.3  (these are the current DC's addresses)
                                              192.168.1.4
   Primary WINS Server . . . . . . . : 192.168.1.3
   Lease Obtained. . . . . . . . . . : Monday, October 30, 2006 10:03:17 AM
   Lease Expires . . . . . . . . . . : Sunday, January 28, 2007 10:03:17 AM


When I have that website come up very slow, now if I just take the DNS server part and disable the DHCP for it and set it to:
207.173.224.3
206.13.31.12

Which are our ISP dns servers then everything is great, very fast, instant, as it should be.

My quesiton is should these addresses be configured somewhere in the existing DNS in Active Directory?  It seems like it looks all around locally for the site, then queries root hint servers, or something else?   I need to figure out when the resolution of external site is so sloooww  for the current AD environment.

Thanks

Bill
0
Comment
Question by:CRNorthAmerica
  • 6
  • 4
10 Comments
 
LVL 10

Expert Comment

by:Chris_Gralike
ID: 17837314
Do you use dns forwarding on your DNS server? or do you rely on the root hints, and is cashing enabled?
0
 

Author Comment

by:CRNorthAmerica
ID: 17837351
Where in the DNS information do I look for forwarding?  I know if you don't have forwarding then it automatically looks at root hints.  Yes, caching is enabled.
0
 

Author Comment

by:CRNorthAmerica
ID: 17837397
yes forwarders are turned on for "all other dns domains" and it is set to the dns servers that I showed above
0
 
LVL 10

Expert Comment

by:Chris_Gralike
ID: 17837516
The forwarder should actually point toward an internet dns server.

All zones ie; .google.com. (forward lookup)
All IP addresses not part of your network (in-addr-arpa)
are forwarded to the dns server(s) in the forwarding list...

Use the dns server of your internet provider as the forwarding address

regards,
0
 
LVL 10

Accepted Solution

by:
Chris_Gralike earned 125 total points
ID: 17837527
All zones ie; .google.com. (forward lookup) not part of your domain zone (mydomain.local)

typo ;)
0
Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

 

Author Comment

by:CRNorthAmerica
ID: 17837609
That is what I have -

In DNS Domain: (of the forwarders tab)
All Other DNS domains

and they forward to the IP's of the DNS server from the ISP
0
 

Author Comment

by:CRNorthAmerica
ID: 17837633
looks like there was a typo in the forwarders that a previous person had in there. Thanks Buddy!
0
 
LVL 10

Expert Comment

by:Chris_Gralike
ID: 17837646
okey try this,

go to the command prompt of any client,

Start > Execute > cmd.exe [enter]

ipconfig /flushdns [enter]   (dont do this on a server! but a client)

nslookup [enter]
>set debug [enter]
>server (inet dns ip or name) [enter]
>google.com [enter]

and see what happens in the query ;) and post that info if it doesnt make sense :D

Regards,
0
 
LVL 10

Expert Comment

by:Chris_Gralike
ID: 17837657
ps do the same against your dns server...

Regards,
0
 
LVL 10

Expert Comment

by:Chris_Gralike
ID: 17837684
Well it looks like you solved the problem yourself, that wasnt me :P

Happy it works :)
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
VCSA join to Active directory 10 105
Moving Files servers to DFS 11 43
Trasfering FSMO roles 8 96
Computer software inventory 5 79
This may not be a text book method to resolve VSS backup issues but it seemed to have worked on few of the Windows 2003 servers we had issues while performing a Volume Shadow Copy backup. If you have issues while performing a shadow copy backup usin…
Scenerio: You have a server running Server 2003 and have applied a retail pack of Terminal Server Licenses.  You want to change servers or your server has crashed and you need to reapply the Terminal Server Licenses. When you enter the 16-digit lic…
This tutorial gives a high-level tour of the interface of Marketo (a marketing automation tool to help businesses track and engage prospective customers and drive them to purchase). You will see the main areas including Marketing Activities, Design …
Migrating to Microsoft Office 365 is becoming increasingly popular for organizations both large and small. If you have made the leap to Microsoft’s cloud platform, you know that you will need to create a corporate email signature for your Office 365…

911 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

22 Experts available now in Live!

Get 1:1 Help Now