Solved

DNS on server forwards servername to outside IP.

Posted on 2009-04-14
24
451 Views
Last Modified: 2012-05-06
Server: 2003 Server Standard
Clients: 8 XP machines.

lets just say my server name is "server-name"

When I ping server-name or servername from any client the ping comes back with:
Pinging server-name.domain [8.15.7.107]

I have no idea what is at 8.15.7.107.  My local range is 192.168.4.xxx

DNS is setup on the server.
It looks to itself for DNS info.
1 forwarder is setup. The router (it gets DNS info from ISP)
 - I've tried using the ISPs DNS directly.

If I sit at the server and ping server-name my server responds.  I only have this problem from the workstations.

There is nothing in the hosts file.

I have one brand new computer as well.

Also, in my Forward lookup zones I have under _msdcs.mydomain.local then domains, then 5dcb8089....  what is this?  Can I delete it?
0
Comment
Question by:fekdep
  • 14
  • 5
  • 5
24 Comments
 
LVL 10

Expert Comment

by:Vince Glisson
ID: 24142425
Do an ipconfig /all on a client and see where the clients are getting their dns info from?
 
0
 

Author Comment

by:fekdep
ID: 24142503
from the server.

DNS and WINS.


0
 
LVL 4

Expert Comment

by:dj_relentless
ID: 24142522
Is your domain an internal domain or are you using an externally named domain inside the company? i.e are you using domain.local or domain.com
0
 

Author Comment

by:fekdep
ID: 24142536
.local
0
 
LVL 4

Expert Comment

by:dj_relentless
ID: 24142833
and when you ping the server from the server does it come back with the fqdn or a netbios name?
0
 

Author Comment

by:fekdep
ID: 24142904
fqdn
0
 

Author Comment

by:fekdep
ID: 24142926
from the server I get a response from my server IP.  server-name.mydomain.local

from a workstation I get the wrong IP and server-name.mydomain  but no .local

I've been chasing this problem down in the DNS.  Could this be a WINS issue? Do I need WINS at all?
0
 
LVL 4

Expert Comment

by:dj_relentless
ID: 24142940
Can you run ipconfig /flushdns on a client and re ping if still the wrong IP
Then goto cmd from the workstation and run nslookup, it 'should' look directly to the server for it's lookup (double check that).
type set q=a
then type the servername and see what it comes back as.
0
 

Author Comment

by:fekdep
ID: 24142976
when I flush DNS I get the same problem.

nslookup looks to the server for advice.

when I lookup server-name I get 8.15.7.107, 63.251.179, 65.200.200.47

I have no idea what those IPs are.
0
 
LVL 10

Assisted Solution

by:Vince Glisson
Vince Glisson earned 200 total points
ID: 24143035
the 8.15.7.107 is a Level 3 ip
the 65.200.200.47 is a
MCI Communications Services, Inc. d/b/a Verizon Business UUNET65
the 63. address is in valid missing an octet
0
 

Author Comment

by:fekdep
ID: 24143067
63.251.179.17

Oh Boy.  I looked up those IPs.  They are Rogers (my ISP).  When I have a failed DNS lookup it gets redirected there.

Ok, so I am getting a failed lookup from my workstations.  Why do you think that is?

Can I stop this lookup?
0
 
LVL 10

Expert Comment

by:Vince Glisson
ID: 24143103
check your forwarders on the server and see where they are pointed
0
Zoho SalesIQ

Hassle-free live chat software re-imagined for business growth. 2 users, always free.

 

Author Comment

by:fekdep
ID: 24143117
they are naturally pointed to my ISP.
0
 
LVL 10

Expert Comment

by:Vince Glisson
ID: 24143137
And you are sure that what they point to are DNS servers?
0
 

Author Comment

by:fekdep
ID: 24143191
yes.

I just changed them to OpenDNS servers at:
208.67.222.222
208.67.220.220

Now when I ping my server 208.69.36.132 tries to answer the call but times out.

If I ping the word "wingbat", the same IP comes up.  Says wingbat.mydomain

NSLOOKUP:
if I lookup server-name, I get:

Server: server-name.mydomain.local
Address: 192.168.4.200 (this is correct)

Non-authoritative answer:
Name: server-name.mydomain
Address: 208.69.36.132


0
 

Author Comment

by:fekdep
ID: 24143583
Huh...

I've removed WINS as a role, then removed and reinstalled DNS.

Currently I have no DNS and no WINS.

I can ping server-name.

Can't browse the network but I can ping the server.

0
 

Author Comment

by:fekdep
ID: 24143662
and to continue rambling

I've now reconfigured DNS and WINS.

ping and nslookup are both good.

I can navigate to \\server-name\ with explorer

I can't browse mydomain in network hood.  

I have no forwarders setup in my DNS.  I guess it is using root hints.
0
 

Author Comment

by:fekdep
ID: 24143727
Browsing error:

mydomain is not accessible.  You might not have permission to use this network resource.  Contact the Administrator of this server to find out if you have access permissions.

The network path was not found.
0
 
LVL 4

Assisted Solution

by:dj_relentless
dj_relentless earned 300 total points
ID: 24144026
Well if you can ping the server thats a good thing.

For network browsing.
Go to this from the name server
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Browser\Parameters
Verify ISDOMAINMASTER is TRUE
MainainServerList is Yes

Restart browser service on the name server and it should force an election. Then wait...Shouldn't take more than about 15 mins but you should be able to browse from the name server after that. Then try from a workstation.
0
 

Author Comment

by:fekdep
ID: 24144369
changed from FALSE to TRUE.

restarted computer browser servers.

Waited half hour.

No love.  Still can't browse.
0
 
LVL 4

Expert Comment

by:dj_relentless
ID: 24144575
Strange..Browser service doesn't rely on wins so it shouldn't have an impact on it.
In the support tools there is an app called browstat, run that(from the server) and it should tell you whats going wrong. Also look for browser announcements in the event log to make sure there isn't another server/workstation that thinks it should be the master.
0
 

Accepted Solution

by:
fekdep earned 0 total points
ID: 24336348
The whole server started acting up.  It locked, other applications hung etc.. It was old.  I put in a new one.
0
 
LVL 10

Expert Comment

by:Vince Glisson
ID: 24340317
If the help was great then you should award some points to somebody...
It is only fair...
0
 

Author Comment

by:fekdep
ID: 24340398
I did.  I split the points up among you.  You just have to say that you don't have any objections to marking the question closed.

Thanks again for the help.
0

Featured Post

Zoho SalesIQ

Hassle-free live chat software re-imagined for business growth. 2 users, always free.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…

912 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

23 Experts available now in Live!

Get 1:1 Help Now