Solved

DNS Server Problem - DNS Not Being Updated

Posted on 2009-07-01
6
229 Views
Last Modified: 2012-05-07
Hello,

Have a problem with DNS Server, running on Windows 2008 Server and Windows 2003 Server.
Here is the scenio.

1) Primary Domain Controller was a Windows 2003 Server.  
2) Have some other Windows 2003 and 2008 domain controllers that were also DNS servers
3) PDC crashed and died this past weekend.
4) Made another Windows 2003 Server (DC) the PDC.
5) I accidently created a new PRIMARY ZONE on the PDC and lost all DNS info.
6) So, now have DNS running on 2 DCs and secondary zones running on some 2003/2008 file server/exchange servers.
7) Here is the problem.....  DNS is not updating HOST A records for PCs and I am having to manually add the HOST A records.  

Obviously I made a mistake when I created a new primary zone.....losing everything....but now it is not working properly.  The 2003 PDC and 2008 DC are both DHCP servers (1/2 the IP addresses on each server)

What have I done wrong and how can I get DNS to perform dynamic updates?

Also, want to do DNS replication to all DNS servers, but it will only allow me to do DNS replication to Domain Controllers.
0
Comment
Question by:rstuemke
  • 3
  • 3
6 Comments
 
LVL 31

Assisted Solution

by:Henrik Johansson
Henrik Johansson earned 500 total points
ID: 24755954
In zone properties, change the property of "dynamic updates" to allow either "Secure only" (AD-integrated zones can be restricted to only allow AD-members) or "Nonsecure and secure"
When having dynamic DNS-zones, also remember to enable automatic aging/scavenging (zone-properties->aging and server-properties->advanced), or you will in the time end up with orphan data when not automatically scavenge old stale records.

AD-integrated DNS-zones can only be hosted on DCs. To have member servers acting as DNS servers, you nead to configure the member servers to host secondary zones of the AD-zones.
0
 

Author Comment

by:rstuemke
ID: 24757804
Cannot replicate DNS to all servers in the domain.

Tells me  "the name limit for the local computer network adapter card was exceeded"
0
 
LVL 31

Assisted Solution

by:Henrik Johansson
Henrik Johansson earned 500 total points
ID: 24779351
As described in this KB, it sounds like you have a stub zone with the same name as the AD-integrated zone. Remove the stub zone.
http://support.microsoft.com/kb/887418

This KB includes a hotfix for the problem.
http://support.microsoft.com/kb/875520
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 

Author Comment

by:rstuemke
ID: 24842328
No stub zone in the site.  Check all of the DNS servers.  However, did have one before this problem occurred.  How would I find it?  The servers that had them, had the DNS zones deleted and had secondary zones created.  Any idea?
0
 
LVL 31

Accepted Solution

by:
Henrik Johansson earned 500 total points
ID: 24848229
AD-integrated zones will be replicated between DCs, so I guess having secondary zones on DCs can cause the same scenario as having stub zone when trying to change the replication scope.
* AD-integrated zones on DCs
* Secondary zones on DNS servers that isn't DC.
0
 

Author Closing Comment

by:rstuemke
ID: 31598823
Deleted all the secondary zones and now just use DNS servers running on DCs.   Working much better.  
0

Featured Post

Find Ransomware Secrets With All-Source Analysis

Ransomware has become a major concern for organizations; its prevalence has grown due to past successes achieved by threat actors. While each ransomware variant is different, we’ve seen some common tactics and trends used among the authors of the malware.

Join & Write a Comment

BIND is the most widely used Name Server. A Name Server is the one that translates a site name to it's IP address. There is a new bug in BIND (https://kb.isc.org/article/AA-01272), affecting all versions of BIND 9 from BIND 9.1.0 (inclusive) thro…
OfficeMate Freezes on login or does not load after login credentials are input.
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now