Solved

Changing from public ip addressing to private (concerns & suggestions)

Posted on 2007-12-06
2
215 Views
Last Modified: 2010-04-21
We have a 30-45 node network with public ip addresses. We plan to change our network over to a private-IP based network. I'm in charge of planning this project and make sure it goes smoothly as well as execute the steps needed to make it happen.

I'm looking for things I should be concerned about, things I should be looking out for and any suggestions.

One of my concerns at this point is making changes in DNS in regards to active directory. When you set up a domain controller, the dns usually gets set up automagically. What will I need to do to reconfigure it?
0
Comment
Question by:TrinityAssembly
2 Comments
 
LVL 2

Accepted Solution

by:
lavazzza earned 500 total points
Comment Utility
When migrating from a public to private IP addressing scheme there are several things to be aware of.  First, what kind of access, if any, is needed from the public internet into your private network.  Examples here would we Web Servers, Mail Servers, FTP, etc.  Ensure that the nat device you will be utilizing will ensure proper connectivity to whatever servers are necessary for the public to do business with you.

Next, When working with AD, Windows is very weary about the IP addresses of its DC's changing. Follow the instructions here http://technet2.microsoft.com/WindowsServer/en/library/80e432f2-10b6-4768-8a3e-54e357e8fc441033.mspx?mfr=true to change the IP address, then when it looks for DNS, make sure you use the new private IP address of the server hosting DNS (usually itself in a domain of your size).  

As for DNS, I would remove the reverse lookup zone of the current public IP address space and create a new lookup zone for the new private address space.  Allow pointer records to be dynamically created when the host records are and you will have the reverse lookup zone populated almost as fast as DHCP hands out the new information.  

For DHCP, I would remove the current scope and start over,  It's not difficult and that way no mistakes can happen.  

If WINS is involved, delete the exsisting wins lookup zone.  Since WINS is broadcast via NETBIOS, the table will rebuild in notime as well.

That is it in a nutshell,  If you are not currently running DHCP, there are scripts out there that can change via netsh a domain machine from static to dynamic and from there pull down DHCP info.  My guess on the hardest part, or the part that can be a gotcha, is the public to private natting that will occur, please make sure you have gone back and checked all services required by the public.

Good Luck!

Sean
0
 

Author Closing Comment

by:TrinityAssembly
Comment Utility
thanks
0

Featured Post

Find Ransomware Secrets With All-Source Analysis

Ransomware has become a major concern for organizations; its prevalence has grown due to past successes achieved by threat actors. While each ransomware variant is different, we’ve seen some common tactics and trends used among the authors of the malware.

Join & Write a Comment

Article by: rfc1180
The Maximum Segment size (MSS) is an important consideration when troubleshooting connectivity via the Internet/Intranet. As the packets are routed via the Internet/Intranet, the packets must traverse through multiple routers in the path between two…
If you have a multi-homed DNS setup in windows, you can have issues with connectivity to the server that hosts the DNS services (or even member servers of your domain if this same DNS server is a DC). This is because windows registers all of its IPs…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now