Solved

registering with dns

Posted on 2009-07-10
2
245 Views
Last Modified: 2012-05-07
when a client connects via vpn with their laptop from home, they get a 10.10.50.x address from the cisco asa dhcp server.  everything works fine.  ok.  they come into the office and plug into the network, and get a new address - 10.10.10.x or 10.10.20.x..

ok, the problem is that the dns server still has the 10.10.50.x address.  i have set the scavenging/aging down to 12 hours for the refresh interval, and 12 days for the non-refresh... the defaul is 7 days for each.

in order to resolve this, i have to delete the A record and do an ipconfig /registerdns in order for the dns server to update the database with the new ip address.

any idea how i can fix this problem?
0
Comment
Question by:cmourn
2 Comments
 
LVL 70

Accepted Solution

by:
Chris Dent earned 500 total points
ID: 24826383

First things first, the 12 hours refresh: I know why you've set it, but it'll cause you problems.

Your servers, and everything else with static IP addressing only Refresh once every 24 hours. If any miss the chance the record will be removed as Stale. Because of the long no-refresh you won't bump into this often, but when you do I'd say it'll be quite irritating. Also depends on your Scavenging Period, but eventually it'll get lucky.

In your situation I would head to the DHCP server, turn off dynamic updates there and let the client deal with it (unless you have pre-Windows 2000 stuff this won't be a problem). It'll take a while to swap over, the security on the existing records is all wrong for client update, but it'll get there eventually.

Update requests (when a client changes IP) will always be allowed, even during No-Refresh.

If you're after more specific Refresh / No-Refresh intervals it tends to be best to set No-Refresh + Refresh to match the Renewal Interval of DHCP (half the lease duration), avoiding values less than 24 hours for the Refresh for the reasons above.

For example, a 20 day DHCP lease works well with 5 days No-Refresh and 5 Days Refresh.

Chris
0
 

Author Comment

by:cmourn
ID: 24827067
ok, i have turned off dynamic updating on the dhcp server, so that the client can handle updating dns.  i change the refresh interval to 24 hours, and the non-refresh to 3 days.  the lease period is 6 days.  we'll see how this works.  thanks for the feedback.... will report back shortly...
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Internet Speed Test 5 70
configuring snmp v2 or v3 on Cisco switches 2 28
Domain Share problems 5 40
MSP multi use software 4 83
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now