Solved

help urgent need help with exchange 2003 SP2

Posted on 2007-11-14
7
169 Views
Last Modified: 2010-03-06
i have taken over for a contractor at one of my companies locations.  they were using groupwise 6.5 and netware 6.5 and they wanted to move to windows and exchange.  so i migrated them to windows 2003 and exchange 2003.  the setup is like follows:  one domain controller with windows and exchange 2003 on it.  they have a watchguard firewall.  the internal domain is .local.  everything on the domain controller is working fine and the way it should.  i have found out that the location has been having their isp host their dns.  which is fine.  they are a .org.  how do i properly setup exchange 2003 internally for this situation.  i need exact details if possible.  i am having off an on problems with exchange in my situation.  some users are getting errors of not having permissions to send to certain recipients.  on the domain controller i have dns running but i have the isp ip's in the forwarders.  i do not have reverse lookup zones.  do i need one???  can anyone tell me what i am missing and how to correct any mistakes.  do i have to put anything specific in the internal dns since the dns of .org is hosted offsite for the location??  

please help
0
Comment
Question by:amoos
  • 3
  • 3
7 Comments
 
LVL 7

Expert Comment

by:chafer
ID: 20280228
Here are several things you need to do.  It's fine to have the ISP host the DNS for everyone else.  You also need to setup DNS on one of your servers.  The ISP will have the MX record for your mail server that points to the external address.  Your DNS will have a zone with the external zone name and you will setup a record that points to the internal IP address of the mail server that corresponds to the external name (for example - mail.yourname.org might point at 192.168.0.10 on your internal zone that you setup on your server).  Make sure that all of your workstations and your server is taking DNS resolution from your server, not the ISP - that's for the rest of the world.
As to reverse DNS - only the ISP that owns the line can set this up.  It is different from all other DNS records.  You must have it setup and it should resolve to the name by which the world knows you.  Many ISPs don't know what they are doing and will tell you to contact your DNS provider - this will not work - IT MUST BE DONE BY THE ISP THAT ACTUALLY OWNS THE LINE (not you, you are leasing the line, you don't own it).
0
 

Author Comment

by:amoos
ID: 20280273
please tell me how to do this on the internal DNS.  All the workstations look to the domain controller. For DNS. Please tell internally how to do this with dns.
0
 

Author Comment

by:amoos
ID: 20280382
I am the only one working on this since they got rid of the contractor and I need help from you guys to fix this.  I have forwarders going to the ISP in the forward lookup zone.  Is this correct???  Screen shots would be awesome if you can provide them.  They are a nonprofit organization and money is tight.  Please help as much as you can
0
Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 7

Expert Comment

by:chafer
ID: 20280390
It's not quite as simple as telling you how to do it.  The basic scenario of what to do has already been set forth.  If you can't setup an internal DNS zone, you may need to get someone to help you locally.  You almost need a tutorial on DNS before trying to do the project you are doing.  If you have specific questions, we can try to help, but a complete tutorial on DNS is beyond the scope of what happens on these boards.  The instructions for how to do it are already in my first posting.
0
 
LVL 7

Accepted Solution

by:
chafer earned 500 total points
ID: 20280420
I just read your last post.  Lack of money or not, you have enough issues that you should be hiring someone to help you.  I'm not trying to be offensive, but it's a little like trying to algebra to someone who still needs to master multiplication.  For your own sake, you need local help who can look at your entire situation.  If you keep playing with DNS without understanding it, you can make thigns much wrose very quickly.
0
 

Author Comment

by:amoos
ID: 20280806
i understand.  my situation is really tough to handle.  everything is working fine on the domain.  i was just trying to see if i set up the dns properly since their isp is hosting their dns.  when i do nslookup it returns unknown so that raised a flag to me.  i got all the info from the isp as far as mx, host, and soa, and so forth.  on the dns internally i know there are just a few things that i have to enter in to fix the nslookup problem. how do i properly configure a smarthost for the mail??  the location is very small so it is not a huge orgaization.  so if i can find out what exactly i need to put into internal dns for the isp that would be it.  everything else is done correctly.  i was pressured into convertling everything from novell over to windows and i did it very fast so now i am in the cleanup stage.  i am looking for some advice.  dns is the only problem/issue that i think i am having.
thanks
0

Featured Post

Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Lotus Notes – formerly IBM Notes – is an email client application, while IBM Domino (earlier Lotus Domino) is an email server. The client possesses a set of features that are even more advanced as compared to that of Outlook. Likewise, IBM Domino is…
In-place Upgrading Dirsync to Azure AD Connect
In this video we show how to create a Distribution Group in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >>…
In this video we show how to create a mailbox database in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Servers >> Data…

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question