Solved

DNS issue with website from inside network

Posted on 2009-04-02
6
368 Views
Last Modified: 2012-05-06
Hi all,

I am having a very weird issue. My client just had their website moved to another location out on the internet. The OLD ip address of their website was: 207.99.0.121. The NEW address is 66.7.204.76. My client's internal network continues to see: 207.99.0.121

If I manually map the hosts file on the server I can get there. I've checked, rechecked, and checked again through DNS and cannot find an entry for www.domain.com with the old IP, nor do I have one for the new IP. The internal FQDN is natrelusa.local, external domain name is natrelusa.com. I've also just done something as simple as "ipconfig /flushdns /registerdns" and it's good for a few days... then reverts back to the old address.

Any floggin ideas?

Running Websense, PIX firewall, Server 2003.
0
Comment
Question by:tamaneri
  • 3
  • 2
6 Comments
 
LVL 6

Expert Comment

by:grandebob
ID: 24054056
Their DNS server may have a zone for their external DNS address. Check that and update the entry.
0
 
LVL 3

Author Comment

by:tamaneri
ID: 24054065
Hi guys,

I just created another forward lookup server in DNS on my server. I created it natrelusa.com and then gave it a www A record for the proper IP address. I then did a /flushdns /registerdns. This resolved it momentarily (flushing and re-registering, as it has in the past).

Wonder if the new forward lookup server for natrelusa.com will resolve it for good?
0
 
LVL 10

Expert Comment

by:Darylx
ID: 24057798
That should fix it for good.  There is an issue to be aware of.  If the only entry in the external natrelusa.com zone is www, then that's ok.  However, if you send email to someone@natrelusa.com, that will fail within the network.  The reason for this is that there are no MX records for natrelusa.com on your internal DNS server.

A better fix would be to create a new zone on your internal DNS server and name the zone www.natrelusa.com.  Then within that zone, create a blank A record pointing to the appropriate address.
0
Do You Know the 4 Main Threat Actor Types?

Do you know the main threat actor types? Most attackers fall into one of four categories, each with their own favored tactics, techniques, and procedures.

 
LVL 3

Author Comment

by:tamaneri
ID: 24058862
Having no issues sending internal e-mail since I made the change. Do you suggest I make this change now?
0
 
LVL 10

Accepted Solution

by:
Darylx earned 500 total points
ID: 24059464
I would change it to what I said earlier just to avoid any problems in the future.  If you set it up my way, any requests for anything other than www.natrelusa.com, for example ftp.natrelusa.com will be forwarded to the correct external DNS server.  

If you leave it the way you've set it up, any future changes to the external natrelusa.com zone will need to be replicated on the internal natrelusa.com zone otherwise the changes won't work from within the LAN.
0
 
LVL 3

Author Closing Comment

by:tamaneri
ID: 31576393
Have not had an issue since this fix. You are the man!
0

Featured Post

What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

Join & Write a Comment

Suggested Solutions

Numerous times I have been asked this questions that what is it that makes my machine log on so slow, there have been cases where computers took 23 minute exactly after taking password and getting to the desktop. Interesting thing was the fact th…
Learn about cloud computing and its benefits for small business owners.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now