?
Solved

Secondary DNS server does not give FQDN on ping -a

Posted on 2008-06-13
9
Medium Priority
?
555 Views
Last Modified: 2008-06-16
I set up a secondary DNS server for redundancy and used the wizard so it should have pulled the DNS settings from the current DNS server. It seems to be working fine but while troubleshooting a Blackberry issue I found if a PC/server used dns02 (the new one) as the logon server when I ping then ping -a from that device I do not get the FQDN, only the name. If I ping from a device that used dns01 as the logon server then I do get the FQDN. I have compared settings on the 2 dns servers and cannot see any difference. What should I look for?

Both servers are MS 2003 SP1
0
Comment
Question by:LarryDAH
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 4
9 Comments
 
LVL 13

Expert Comment

by:martin_babarik
ID: 21779352
Hi, when you use "ipconfig /all" on both servers, do you see the same primary DNS suffix? If not, change it My computer -> Properties -> Computer name -> Change -> More.
Also if you want to ping by IP and get the FQDN as a result, you should create a reverse lookup zone and create PTR records there.
0
 

Author Comment

by:LarryDAH
ID: 21779533
ipconfig /all shows the same primary DNS suffix on both servers and the new server does have a reverse lookup zone and it has the same PTR records as the primary DNS server.

What else can I check?
0
 
LVL 13

Expert Comment

by:martin_babarik
ID: 21779604
Thanks. Just to get a more clear idea about your network: are both servers domain controllers and is the zone AD integrated on both of them?
What is the ipconfig of both servers?
0
Introducing the WatchGuard 420 Access Point

WatchGuard's newest access point includes an 802.11ac Wave 2 chipset, providing the fastest speeds for VoIP, video and music streaming, and large data file transfers. Additionally, enjoy the benefits of strong security as the 3rd radio delivers dedicated WIPS protection!

 

Author Comment

by:LarryDAH
ID: 21779762
Both servers are Dcs and both have AD installed. Below is the ipconfig for the old server:

Windows IP Configuration
   Host Name . . . . . . . . . . . . : dah01
   Primary Dns Suffix  . . . . . . . : ourdomain.org
   Node Type . . . . . . . . . . . . : Unknown
   IP Routing Enabled. . . . . . . . : Yes
   WINS Proxy Enabled. . . . . . . . : Yes
   DNS Suffix Search List. . . . . . : ourdomain.org

Ethernet adapter Local Area Connection:
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : HP NC7760 Gigabit Server Adapter
   Physical Address. . . . . . . . . : 00-0F-20-12-23-56
   DHCP Enabled. . . . . . . . . . . : No
   IP Address. . . . . . . . . . . . : 192.168.0.10
   Subnet Mask . . . . . . . . . . . : 255.255.252.0
   Default Gateway . . . . . . . . . : 192.168.0.3
   DNS Servers . . . . . . . . . . . : 192.168.0.10
                                                 192.168.1.10
-------------------------------------------------------------------

The new server is:

Windows IP Configuration

   Host Name . . . . . . . . . . . . : do-dns01
   Primary Dns Suffix  . . . . . . . : ourdomain.org
   Node Type . . . . . . . . . . . . : Unknown
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : ourdomain.org

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : HP NC7761 Gigabit Server Adapter
   Physical Address. . . . . . . . . : 00-15-60-12-23-56
   DHCP Enabled. . . . . . . . . . . : No
   IP Address. . . . . . . . . . . . : 192.168.1.10
   Subnet Mask . . . . . . . . . . . : 255.255.252.0
   Default Gateway . . . . . . . . . : 192.168.0.3
   DNS Servers . . . . . . . . . . . : 192.168.1.10
                                                 192.168.0.10
0
 
LVL 13

Expert Comment

by:martin_babarik
ID: 21779918
Thanks a lot. Are the zones AD integrated? If they are they will contain identical information.
Ipconfig output seems to be very correct, if I didn't overlooked something.
I recommend to try using "ipconfig /flushdns" on the computer from which you are trying to ping. Also check manually if there was created the PTR record in reverse lookup zone for both servers.
0
 

Author Comment

by:LarryDAH
ID: 21780116
How do I check if the AD zones are integrated? I used the wizard on the new server when I set up AD and DNS and I do not remember that it asked about intetration, I assume they would be.

Flushdns did not change the ping -a from just the server name on the new server. It still does not bring back the FQDN and it is using the new server as the logon server.

The servers are in different subnets. Both DNS servers are listed as Name Servers in the DNS for all subnets in the Reverse Lookup zones (and also as name servers under the domain name in the forward look up zones on both servers). Each DNS server is also listed in its own reverse lookup zone in its own subnet with a PTR and as a Name server, however in all the other subnets both DNS servers only have Name Servers and no PTR records.
0
 
LVL 13

Accepted Solution

by:
martin_babarik earned 2000 total points
ID: 21780667
I also think so, but just to make sure: open the DNS console, expand forward lookup zones, select your zone, right click and choose "Properties". On the first tab you will see the zone type (should see Active Directory integrated).
Do the same for your reverse lookup zone on both servers.

Regarding the records - I think that's correct the way you have it.
But one thing that might be the cause of the problem - you have only Name servers record and no Host record - you need to have this one, otherwise the name resolution will not succeed. I think when you create these, it will work.
0
 

Author Comment

by:LarryDAH
ID: 21781451
I found the problem, but first to answer your questions. I looked and both DNS servers are marked as AD integrated. While under properties I looked under Zone Transfers and on the old server transfers are allowed to other servers listed on the Names servers tab (which does show the new DNS server) but on the new server that is not checked. Should I allow zone transfers from the new server to the old also?

Doing some research on FQDN I remembered that I can do nslookup to see my named servers and when I did that on the Blackberry server (where my original problem started)  that has used the new DNS server as the logon server it showed my a named server that was on the public side. I found that I had ATT (4.2.2.1) as my 3rd choice for a forwarder on the new server. Somehow the Blackberry server picked 4.2.2.1 and that is why my FQDN was not working. I had to change it in the registry to get it to go away but after I did that my Blackberry server could ping the new DNS server and get a FQDN
0
 
LVL 13

Expert Comment

by:martin_babarik
ID: 21781696
Good to hear you found a solution.
Regarding your question - to be honest I'm not sure, but as both zones are AD integrated, as far as I know there will be no more standard transfers and everything will be replicated through AD, so I guess you don't need to allow zone transfers at all.
0

Featured Post

Enroll in September's Course of the Month

This month’s featured course covers 16 hours of training in installation, management, and deployment of VMware vSphere virtualization environments. It's free for Premium Members, Team Accounts, and Qualified Experts!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I've always wanted to allow a user to have a printer no matter where they login. The steps below will show you how to achieve just that. In this Article I'll show how to deploy printers automatically with group policy and then using security fil…
Resolve DNS query failed errors for Exchange
In this video, Percona Director of Solution Engineering Jon Tobin discusses the function and features of Percona Server for MongoDB. How Percona can help Percona can help you determine if Percona Server for MongoDB is the right solution for …
How to fix incompatible JVM issue while installing Eclipse While installing Eclipse in windows, got one error like above and unable to proceed with the installation. This video describes how to successfully install Eclipse. How to solve incompa…

719 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question