Solved

DNS resolution very slow

Posted on 2008-09-30
24
471 Views
Last Modified: 2013-12-14
Hi

Users on my lan are complaining that there when they click onto ie for the first time it takes a very long time for the homepage to appear. We have a DSL connection to the internet and a vigor router connected to a sonicwall. It seems as if takes time to recognise the inital web site for example at the bottom right of ie it says web site found but then takes a good few to display. We run our own windows 2003 AD with internal DNS with forwarders pointing to our DSL provider DNS servers.

What could be wrong or how would i go about finding out what is making the internet for users so slow.

ta
0
Comment
Question by:kingcastle
  • 10
  • 4
  • 3
  • +3
24 Comments
 
LVL 5

Expert Comment

by:mredfelix
ID: 22603552
troubleshooting

Are you using a proxy?
trying pluging a PC/laptop into the back off the sonicwall and see if it takes a long time.
Change to a different isp dns servers.
0
 

Author Comment

by:kingcastle
ID: 22603559
no proxy invloved here at all.

i tried actually plugging my laptop directly into the vigor rotuer and it was fast enough but then again i would expect that i was the only one plugged into that device.

cheers
0
 
LVL 5

Expert Comment

by:mredfelix
ID: 22603578
how fast is it on the windows server?

have you cleared the dns cach?
0
Migrating Your Company's PCs

To keep pace with competitors, businesses must keep employees productive, and that means providing them with the latest technology. This document provides the tips and tricks you need to help you migrate an outdated PC fleet to new desktops, laptops, and tablets.

 

Author Comment

by:kingcastle
ID: 22603604
windows server is much the same as lan and yes cleared the cache
0
 
LVL 70

Expert Comment

by:KCTS
ID: 22603644
If your DSL router supports DNS proxy - most do, then you may be better off pointing the forwarder at the router, that way, if the ISP updates the DNS servers, the proxy will update automatically and you will not have to re-configure the forwarder
0
 

Author Comment

by:kingcastle
ID: 22603643
would implementing a proxy server on the lanb help this situation?
0
 

Author Comment

by:kingcastle
ID: 22603651
kc how would i do that then, sound like a good plan becuase every thime the isp changes the dns server i have to call them up.

ta
0
 
LVL 5

Expert Comment

by:mredfelix
ID: 22603739
are you lan pc's pointed to the gateway or the server?

If it is the gateway does it still take  along time when you are plugged into the first switch/hub the router is plugged in.

with the router set your nics dns to point to the router and imagine there is a tick box on the web console to turn it on.
0
 

Author Comment

by:kingcastle
ID: 22604820
all gateways are pointed to the firewall
0
 
LVL 11

Expert Comment

by:Bertling
ID: 22605089
if you log in to your sonicwall admin can you see how many conections are present? this is under the status section where you can see the serial and model etc.

if it is over 16000 then this could be your problem, as it will wait for a session to end before the next node is can access.

i have had this issue when one of our nodes had a virus on it. creating 1000s of sessions. it was being used to ddos or something allong those lines.
0
 

Author Comment

by:kingcastle
ID: 22616303
hi all yeah the thing is that my dsl router is in front of my sonicwall in other words its on a differnt subnet so say my dsl router is on 192.168.10.100 but my sonicwall which is my lan default gateway is on 172.16.1.0 so how would i be able the point my dns forwarders from my AD DNS server on 172.16.1.0 to the router?cheers
0
 
LVL 70

Expert Comment

by:KCTS
ID: 22616357
You make sure all the machines on the domain point to the internal DNS server ONLY and then set up a forwarder as detailed at http://www.petri.co.il/configure_dns_forwarding.htm
0
 

Author Comment

by:kingcastle
ID: 22616697
hi kcts, yip i know that bit ok but at the mo my forwarders are pointing to my isp and i was interested when you said you could point them to your router and your router would handle it when the isp changed these dns settings, but on my last post i mentioned that all my lan clients point to the firewall and not the router so i was wondering how i get your way to work in that situation.

ta
0
 
LVL 9

Expert Comment

by:Press2Esc
ID: 22616928
I am wondering if you are not having a line issue...  By default, when you repeatedly visit the same website (eg., homepage) your browsers work off of local cache.  

Have you ran a speed test recently?
Have you checked for packet loss recently (e.g., ping -t myhomepage.com)?
Have you added any new hardware or software?  Any network config changes?

P2E
0
 
LVL 11

Expert Comment

by:Bertling
ID: 22617622
can you please advise the number of sessions on your firewall, as requested to rule this out
0
 

Author Comment

by:kingcastle
ID: 22618189
no its defo not the number of connections, and its not a line problem either i dont think.

that dns automatically changing as and when the isp cahnges their dns server sounds good tho but i cant see where to do it as explained earlier
0
 
LVL 38

Expert Comment

by:ChiefIT
ID: 22621657
DCdiag /fix:DNS
0
 
LVL 38

Accepted Solution

by:
ChiefIT earned 500 total points
ID: 22621678
Or you could try to flush the DNS cache of the server and remove all HOST file records except the 127 loopback address. The server will go to its DNS cache and HOST records before HOST A records in the forward lookup zone, then to an outside server.

To flush the DNS cach: type IPconfig /flushdns at the command prompt
To edit the HOST file, use a text editor (like wordpad), and delete all records except the loopback address. The host file is found in C:\Windows\system32\drivers\ect\Host
0
 

Author Comment

by:kingcastle
ID: 22668044
im going give chiefit the points here as this turned out to be a dns issue. the first dns forwarder we had on our internal dns server was one our isp had taken offline once we moved to the proper dns forwarder from the isp it all worked well again.

so thanks all
0
 
LVL 70

Expert Comment

by:KCTS
ID: 22668057
My comment was :!

" If your DSL router supports DNS proxy - most do, then you may be better off pointing the forwarder at the router, that way, if the ISP updates the DNS servers, the proxy will update automatically and you will not have to re-configure the forwarder "
0
 

Author Comment

by:kingcastle
ID: 22668368
oh good point, but my point was how would i do that, if my gateway on the lan was actually my firewall and not the router.

anyway how can i re assign some of these points
0
 
LVL 70

Expert Comment

by:KCTS
ID: 22668385
Its up to you - but if you want to, select "Request attention" and ask for the question to be re-opened.
0
 
LVL 38

Expert Comment

by:ChiefIT
ID: 22765821
Well done KCTS: (ID: 22603644)

That's a good idea using a proxy to allow the outside DNS to dynamically update any changes. I like that idea.




0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
DHCP scope restore question Server 2003 to 2012R2 6 81
WebSite Direction 1 54
CENTOS DHCP Server / PXE/TFTP 14 157
Bandwidth issues? 5 42
This solves the problem of diagnosing why an internet connection is no longer working. It also helps identify the likely cause of the lost connection if the procedure fails to re-establish your internet connection. It helps to pinpoint the likely co…
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …
In an interesting question (https://www.experts-exchange.com/questions/29008360/) here at Experts Exchange, a member asked how to split a single image into multiple images. The primary usage for this is to place many photographs on a flatbed scanner…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question