Link to home
Start Free TrialLog in
Avatar of shayneg
shaynegFlag for United Kingdom of Great Britain and Northern Ireland

asked on

Set up external DNS in Windows 2003 Server OS

I have a server running as a DC on mydomain.local. This works fine but recently I decided I want to host DNS for my friends domain name. which will be hisdomain.com. Where he purchased the domain they charge to point mx records etc to my server. I logged into the control panel of where he bought the domain and pointed the name servers to my static i.p address of my server running server 2003. There are 2 name servrs called ns0.hisdomain.com and ns1.hisdomain.com which point to my server. How do I st DNS up in 2003 to host mx, www records etc. I have allowed port 53(DNS) through the firewall t the internal i.p of the server(192.168.1.1). I can see on the firewall logs the DNS query is hitting my server but records like www. and mail.hisdomain.com are not resolving from outside of my network. So far I have created a new forward lookup zone in DNS. I have added ns0.hisdoamin.com and ns1.hisdomain.com as CNAME records and I ca ping these externally. I have added www and mail. as hosts records pointing to the internal i.p of my server but they do not respond to a ping. I have added an mx record in dns but this also seems to fail. What am I missing or have I done wrong ?
ASKER CERTIFIED SOLUTION
Avatar of Jeremy Weisinger
Jeremy Weisinger

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of shayneg

ASKER

if someone from the outside type "nslookup ns1.hisdomain.com" they will get the name resolved, right?
Correct I can get a Non-authoritative answer: which points to the wan i.p of my firewall. www. and mail.hisdomain.com fail
Avatar of Jeremy Weisinger
Jeremy Weisinger

Hmmm, where are the A records for ns1.hisdomain.com? Were they added to the DNS through the registrar's CP?
what happens when you type

nslookup -type ns hisdomain.com
OK, I reread your initial post and it looks like that's what you did.

You need to transfer control of the domains DNS to your server. There should be a place in the CP where you can specify the NS or name server. There you would enter either the external hostname of your server or its IP address.

If you tell us what company your friend used then we might be able to give you more specific instruction on how to change the name server.

Also, you'll need to change the IP addresses from internal to external as specified in earlier posts.
Avatar of shayneg

ASKER

the ns records are setup at the registrar and point to my wan i.p. the domain name is versatilevaleting.com. when I go to dnsstuff.com and run a dns check many errors show up like soa record missing etc. The Registrar charges for the dns forwarding which is what I want to avoid. I thought if te name servers pointed to my wan i.p I could host everything related to that domain including dns records etc
It looks like your name servers (84.92.142.215) does not allow connection from the outside or it's down at the moment

make sure that your firewall allows UDP traffic on port 53
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of shayneg

ASKER

strange DNS port 53 is open UDP and TCP and translate to internal i.p. This works as I can see it being allowed through on he firewall log.
make sure that your DNS server, firewall and router allow access from all external clients.

here is what I see

www.versatilevaleting.com.
Server:  mgill.plus.com
Address:  84.92.142.21

------------
SendRequest(), len 43
    HEADER:
        opcode = QUERY, id = 10, rcode = NOERROR
        header flags:  query, want recursion
        questions = 1,  answers = 0,  authority records = 0,  additional = 0

    QUESTIONS:
        www.versatilevaleting.com, type = A, class = IN

------------
DNS request timed out.
    timeout was 2 seconds.
timeout (2 secs)
SendRequest failed
*** Request to mgill.plus.com timed-out
I just clicked the link www.versatilevaleting.com and has opened a page with lots of pictures.So it works from outside...
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of shayneg

ASKER

Thanks all, I didn't get it working but my friend was eager to get this done so unfortunately resorted to paying to be hosted at regisrar. I have a spare domain name so I will be testing this again soon. I split the points as you all tried to help :0)