Solved

Strange DNS issue.

Posted on 2009-04-02
6
191 Views
Last Modified: 2012-05-06
Hello,
I have run across one that has stumped me and I am scratching my head trying to fix it.  I have an AD domain with 2 DNS servers one is a backup to the other.  There is a website that some of my users frequent that helps them do their work.

This website is accesible from some computers but not others.  I started to track down the issue and realized that the address returns two different IP addresses when run against an NSLOOKUP.  I have not only run it against my two DNS servers but also against my providers DNS servers and it always returns with the same two IP addresses.  Which is not surprising since my DNS servers are doing lookups against my providers DNS servers.

What I can't figure out is why can some computers get to the site even though one of the ip addresses does not respond and other computers can't.  I first thought it was a Vista issue only because by chance I had found that all the Vista computers I had been on could not get to the site but the few that I had tested that could get to it were running XP.  I debunked that when I found a PC running XP that couldn't get to it as well.

Would creating a record for this domain on my DNS servers mitigate this problem?

I have flushed the DNS caches on all of the host machines that were not able to get to it and that did not help.

Any help is appreciated.

Thanks,

Jake
0
Comment
Question by:ITPIP
  • 3
  • 2
6 Comments
 
LVL 6

Expert Comment

by:Kentrix70
ID: 24055330
Could you please post the output of the reply you get in nslookup (mask the ip-adresses with xxx and yyy).
0
 

Author Comment

by:ITPIP
ID: 24055391
Is this what your looking for?

Server:  primarydns.mydomain.com
Address:  xxx.xxx.xxx.xxx

Non-authoritative answer:
Name:    www.problemdomain.com
Addresses:  xxx.xxx.xxx.xxx
          xxx.xxx.xxx.xxx
0
 
LVL 6

Accepted Solution

by:
Kentrix70 earned 200 total points
ID: 24055466
I think this dns record use something called round robin, which means, that for load balancing purposes, is resolves
different ip-adresses from the same domain name.
The problem is, that if one of these ip-adresses is not responding, your pc's will sometimes get through
and sometimes don't.
And the local dns-cache on the pc does that, when it has resolved to a non-working ip-adress, it keeps that adress, and for that
reason will not get through to the webpage.

You could temporarily put the dnszone on your local dnsserver, and resolve the domainname to just the working ip-adress,
but keep in mind, that you the will not be able to resolve other hosts in the same domain, without adding them too.
For instance if the domain is called example.com, and you have a www.example.com and a www2.example.com adress,
they should both be put in your local zone to work.

On the other hand, it is unlikely that this is the case.
You might want to add an mx-record for the domains mailserver though, if someone sends an email to their domain.
0
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

 
LVL 17

Assisted Solution

by:StrifeJester
StrifeJester earned 50 total points
ID: 24059569
Depending on your organization size you can always add it to the hosts file which wouldn't cause all of the other issues with DNS.
0
 
LVL 6

Expert Comment

by:Kentrix70
ID: 24062814
You can do that by start -> run and type notepad c:\windows\system32\drivers\etc\hosts

Then you can make an entry on a new line, like

xxx.xxx.xxx.xxx     www.problemdomain.com

where you use the ip-adress, which are working.

You should do that on every pc, and the problem should be solved until the company has 2 working ip-adresses,
then you might want to remove the entry again to regain the possibility of using the loadbalancing functionality
of roundrobin DNS.
If the provider changes the DNS record, you will not be able to access the server before you update the hosts file
or removes the entry, and let DNS take care of it.
0
 

Author Closing Comment

by:ITPIP
ID: 31566032
Thanks for the input guys.  I thought both solutions were good ideas but centralizing it on the DNS server is the easier to manage of the two.  Adding the zone to my local DNS with a www record worked for everything except this wierd application the website provides for quotes.  It tries to connect to a url but fails like the page did before.  I only have problems on one PC with this though so it looks like my bigger problem is solved.  I am contacting the company to troubleshoot their software.  Thanks again for the help.
0

Featured Post

3 Use Cases for Connected Systems

Our Dev teams are like yours. They’re continually cranking out code for new features/bugs fixes, testing, deploying, testing some more, responding to production monitoring events and more. It’s complex. So, we thought you’d like to see what’s working for us.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
LibreNMS - unable to connect. 2 73
Public DNS? 10 77
What is doing the required checks on the SPF and DMARC records? 11 28
DNS propagation 5 21
If you have a multi-homed DNS setup in windows, you can have issues with connectivity to the server that hosts the DNS services (or even member servers of your domain if this same DNS server is a DC). This is because windows registers all of its IPs…
I've written instructions for one router type, but this principle may be useful for others of the same brand and even other brands of router. Problem: I had an issue especially with mobile devices that refused to use DNS information supplied via…
This Micro Tutorial will give you a basic overview how to record your screen with Microsoft Expression Encoder. This program is still free and open for the public to download. This will be demonstrated using Microsoft Expression Encoder 4.
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question