Solved

Scavenging DNS records

Posted on 2009-05-16
6
343 Views
Last Modified: 2012-05-07
Hello, I have multiple DNS entries for many IP addresses on the domain and my aim is to delete all those record/names that do not exist. I have enabled scavenging and retained the default 7 day settings. The problem is that the stale, out of date records are not scavenged. I started with 570 DNS entries of which 100 are no longer valid and after Server 2003 scavenges i am left with 570 records. What am I doing wrong? Manual scavenge does not work either. IP addresses for this domain are static.

Many Thanks, Aelara.
0
Comment
Question by:Aelara
  • 4
  • 2
6 Comments
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

Hi Aelara,

How long did you get it?

Because when you first enable Aging it sets a lock on the zone for the length of a Refresh Interval (7 days by default). Until that has passed no records can be scavenged from the zone.

You can see the next time it can be Scavenged by selecting View, Advanced then opening the Aging properties in the zone.

Chris
0
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

> How long did you get it?

Should read...

How long did you give it?

Chris
0
 
LVL 6

Assisted Solution

by:Krisdeep
Krisdeep earned 200 total points
Comment Utility
DNS scavenging has to be enable in two levels first the DNS zone second the sever DNS level.These images might give you an idea.


If the default settings is set it will scanveng in the next 7 days even if you force it  .Leave the defaults if you haven't made any changes to your DHCP lease cycles.

Let me know how it goes
image001.jpg
image002.jpg
0
6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

 
LVL 70

Accepted Solution

by:
Chris Dent earned 300 total points
Comment Utility

Kris,

Your second setting does the same as the first, but for all zones. I think you had Server Properties / Advanced in mind for that one? That's the section that actually executes the Scavenging process.

Chris
0
 
LVL 6

Expert Comment

by:Krisdeep
Comment Utility
Hey Chris,
You would have to set it in the zones as mentioned if you put it on the above zone it will not clear out all zones unless that zone has scavenging enabled. I hope this would be useful.
0
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

Hey Krisdeep,

Agreed, it's just if you have a mixture of zones, and some don't need Scavenging the first screenshot is appropriate. If you just want to do it for everything then the second is. It's either / or rather than both, if you see what I mean :)

Chris
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

If you have a multi-homed DNS setup in windows, you can have issues with connectivity to the server that hosts the DNS services (or even member servers of your domain if this same DNS server is a DC). This is because windows registers all of its IPs…
Setting up a Microsoft WSUS update system is free relatively speaking if you have hard disk space and processor capacity.   However, WSUS can be a blessing and a curse. For example, there is nothing worse than approving updates and they just have…
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now