troubleshooting Question

Remote site DNS setup with internal & external sites

Avatar of maderosia
maderosiaFlag for United States of America asked on
Windows NetworkingWindows Server 2003DNS
5 Comments1 Solution286 ViewsLast Modified:
More DNS problems. This is my third post in a week about DNS

Corp
3- DC's that are also DNS servers
     Zone transfers between them for some domains
1- DNS server in DMZ to host external DNS (100 domain zones, 1 for each location + some for corp)

53 Remote Sites
1- DC that is DNS at each

Internal domain name xyz.com is Active Directory Integrated and on all DC's.
20 or so other names are set up on 3 DC's as primary\secondary.

Last night, I set up secondary DNS with our ISP only changing the DMZ DNS. For some reason because of my change, this morning about 20 locations were unable to connect to internal sites on doman abc.com. Here is what we did to fix but unsure if it is right. I went into the DNS console on each DC and added the DC from corp as the forwarding address where it was blank before. The sites would then resolve to the internal site. The idea was that the DNS server did not know site abc.com so asked root servers and got no response because the Host records are set up internal and not external. Appears to be working now but I do not know if that is best practice.

The domain abc.com is our comapny website but we use it as an Intranet site as well. Is it an OK setup to do this or is it common? We are using it as an internal site and an external site. How do clients know whether to look outside or internal for this setup? test.abc.com should go internal but abc.com is also an external website.

Is pointing all remote sites DC's to forward to the DC at corp the best way to fix this or is it best to make abc.com an Active Ditectory Integrated zone so that it propagates to all DC's? Really unsure of best practices. We only have the one Active Directory Integrated site that is our DC's domain name everything is a member of.

I am guessing that if you know DNS you will know what I am asking. I am new to DNS so I am unsure if I am asking the right questions. I will post any questions asked bythe Experts.
ASKER CERTIFIED SOLUTION
Log in to continue reading
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform for $9.99/mo
View membership options
Unlock 1 Answer and 5 Comments.
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
See how we're fighting big data
The Value of Experts Exchange in My Daily IT Life

Experts Exchange (EE) has become my company's go-to resource to get answers. I've used EE to make decisions, solve problems and even save customers. OutagesIO has been a challenging project and... Keep reading >>

Mike

Owner of Outages.IO
Phoenix, Arizona, United States
Member Since 2016
Join a full scale community that combines the best parts of other tools into one platform.
Unlock 1 Answer and 5 Comments.
View membership options
“All of life is about relationships, and EE has made a virtual community a real community. It lifts everyone's boat.”
William Peck

Member since 2004