DNS Zone Tranfer

Posted on 2009-03-31
Last Modified: 2012-05-06
Hi Experts

My Event Viewer / DNS Server Log keeps saying :
Source:  DNS
Event ID: 6527
Zone has expired before it could obtain a successful zone transfer or update from a master server acting as its source for the zone. The zone has been shut down.

But zone transfers from Primary to Secondary are happening fine.
Then why do i get the above error message???.   :-(
Pls help.

Thanks & Regards
Question by:aliomarb
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
LVL 71

Expert Comment

by:Chris Dent
ID: 24030525

Has it actually Expired? What is the Expiry set to?


Author Comment

ID: 24030633
Hi Chris

I was just googling on the net.
In the SOA Tab, the Expiry was set to 1 minute.
I just changed that to 1 hour. (I think this is recommended)  right !!???
Please advise...

LVL 71

Expert Comment

by:Chris Dent
ID: 24030718

Depends on how you're using it. I'll happily use anything from 1 hour to a month. If it's more important to maintain access to the zone I'd set the value to least 8 hours.


Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.


Author Comment

ID: 24030739
But what does this setting actually mean or do ??
LVL 71

Accepted Solution

Chris Dent earned 500 total points
ID: 24030811

It says how long the Secondary server should hold onto the zone before it's considered invalid and has to be discarded. Normally that only applies when zone transfer requests fail continually (because normally the Expiry is quite long).

However, with it set to 1 minute the Secondary server would have been discarding the zone if it didn't successfully Transfer from the Primary during within a minute of the last transfer.

Expiry works with the Refresh interval in the SOA which states how often the Secondary should check in with the Primary for an update. If the Refresh is greater than the Expiry the zone will be discarded as invalid long before it has a chance to attempt to transfer again.


Author Closing Comment

ID: 31564890

Featured Post

Ready to trade in that old firewall?

Whether you need to trade-up to a shiny new Firebox or just ready to upgrade from whatever appliance you're using now, WatchGuard has the right appliance for you! Find your perfect Firebox today with appliance sizing tool!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I will assume you are running a non-server version of some sort of Windows throughout this article. There are many flavors of Windows since Windows Server 2000 - 2008, XP Home & Pro, Vista Home & Pro, and Windows 7 Starter, Home, Pro, Ultimate, etc.…
One of the most often confused topics in the area DNS is the idea of GLUE records. Specifically, what they are, when they are needed, when they are provided, and how they are created. First, WHAT IS GLUE? To understand GLUE, you must first under…
Michael from AdRem Software outlines event notifications and Automatic Corrective Actions in network monitoring. Automatic Corrective Actions are scripts, which can automatically run upon discovery of a certain undesirable condition in your network.…
Monitoring a network: why having a policy is the best policy? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the enormous benefits of having a policy-based approach when monitoring medium and large networks. Software utilized in this v…

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question