Solved

DNS Server Setup

Posted on 2009-07-15
15
319 Views
Last Modified: 2012-05-07
I have one DNS server up & working fine hosting many domains.
I would like to setup a new server in parallel to this DNS server under differnent ISP.

I would like to know to setup a DNS server what are the basic necessary things required or should i consider for setting up the DNS server.

0
Comment
Question by:SrikantRajeev
  • 8
  • 7
15 Comments
 
LVL 70

Expert Comment

by:Chris Dent
ID: 24867646

Typically you will have one Primary DNS Server and a number (one or more) Secondary DNS Servers. The Secondary DNS servers take a copy of a zone from the Primary server (Zone Transfer).

If Zone Transfers are not permitted then you would have to maintain two separate copies of the same zone. Making sure the two match manually. That's not ideal because it's rather more work (and has more room for something to be wrong).

There are a few rules that should be obeyed:

1. All Authoritative DNS servers should be listed in the NS Records
2. All Name Servers used should be listed at the parent (set with your domain registrar)

Will you be managing the DNS Server yourself? Or are you paying for a hosting solution?

Chris
0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 24945775
Hi Chris

I will be managing the servers by myself. I am planning for 2 servers 1 is primary & the 2nd will be the secondary. It will be installed under ISP2 network. For setting up these servers what should i ask frolpm the ISP2 & what help will be required from them.
I will be using the exixting domains which is currenlty used. All the services are running under the ISP1 network. Currentky I have A record , NS record & Cname  . I will be maintaing the same,
Like for MX record i need to do delegation should i cater any thing like this from my both ISPs to have this done. I will be using 2 servers with linux & BIND latest version
0
 
LVL 70

Expert Comment

by:Chris Dent
ID: 24954186

It depends, from your previous pictures they were just providing the connection, is that correct?

If so, for forward lookup ISP2 don't need to do anything. You will need to modify the NS records listed with your registrar so the server on ISP2 is used in addition to the server at ISP1.

That differs from reverse lookup if you're going to manage it, that needs to be delegated as per our previous discussions on this.

Chris
0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 24957179
My current DNS entry for NS  is
                IN      NS      mydnshostname1.abc.com.
                IN      NS      mydnshostname2.abc.com.
                IN      NS      ISP1DNS1.
                IN      NS      ISP1DNS2.

So I need to change as below. Let me know if this is right.

                IN      NS      mydnshostname1.abc.com.
                IN      NS      mydnshostname2.abc.com.
                IN      NS      ISP1DNS1.
                IN      NS      ISP1DNS2.
                IN      NS      ISP2DNS1.
                IN      NS      ISP2DNS2.



0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 24957180
yes they are just providing the connection. But they can also provide secondary DNS functionality
0
 
LVL 70

Expert Comment

by:Chris Dent
ID: 24958690

Okay, makes sense.

Your NS records look good, I guess all of those servers will be listed on the parent (with your registrar)? Or do they only allow you to list two?

You should also have glue for your name servers in there. At least some of the A records are out-of-zone data, but Glue is only handed out when NS records are requested to save further lookups.

Chris
                IN      NS      mydnshostname1.abc.com.

                IN      NS      mydnshostname2.abc.com.

                IN      NS      ISP1DNS1.

                IN      NS      ISP1DNS2.

                IN      NS      ISP2DNS1.

                IN      NS      ISP2DNS2.
 

; Glue for NS Records

mydnshostname1.abc.com.  IN A  1.2.3.4

mydnshostname2.abc.com.  IN A  1.2.3.5

ISP1DNS1.  IN A  2.3.4.5

ISP1DNS2.  IN A  2.3.4.6

ISP2DNS1.  IN A  3.4.5.6

ISP2DNS2.  IN A  3.4.5.7

Open in new window

0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 24958768
Your NS records look good, I guess all of those servers will be listed on the parent (with your registrar)? Or do they only allow you to list two?

I am not sure of it . Should i ask my ISP1 regarding this.

Regarding A record i will take care to include all the currently available A record
0
3 Use Cases for Connected Systems

Our Dev teams are like yours. They’re continually cranking out code for new features/bugs fixes, testing, deploying, testing some more, responding to production monitoring events and more. It’s complex. So, we thought you’d like to see what’s working for us.

 
LVL 70

Expert Comment

by:Chris Dent
ID: 24958777

If ISP1 are who maintain the domain registration for you yes.

You should be able to have up to 13 DNS servers listed, more than enough room to cover those mentioned above.

Chris
0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 24958820
yes ISP 1 is maintaining the domain registration.

u have mentioned that i need to include 13 DNS servers . Instead of that can i list the DNS servers of  my second ISP < ISP2>
WIll it help
0
 
LVL 70

Expert Comment

by:Chris Dent
ID: 24958878

Not quite, the maximum you could include is 13 (limitations on UDP packet size, or why there are 13 root DNS servers). Those you have are more than enough :)

Chris
0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 24967386
I am planning to install the new DNS servers in parallel to the existing DNS server for the smmoth phasing out of the old server.
My plan is install the new server under the ISP2 network. We have multiple zone files in our existing DNS server.
Move only 1 Zone under this newly setup DNS server.
The zone file will have the following.

                IN      NS      mydnshostname1.abc.com.
                IN      NS      mydnshostname2.abc.com.
                IN      NS      ISP1DNS1.
                IN      NS      ISP1DNS2.
                IN      NS      ISP2DNS1.
                IN      NS      ISP2DNS2.
 
; Glue for NS Records
mydnshostname1.abc.com.  IN A  1.2.3.4
mydnshostname2.abc.com.  IN A  1.2.3.5
ISP1DNS1.  IN A  2.3.4.5
ISP1DNS2.  IN A  2.3.4.6
ISP2DNS1.  IN A  3.4.5.6
ISP2DNS2.  IN A  3.4.5.7
Internet DNS IN A 1.1.1.1

In case of shifting the MX record ISP2 should provide the delegation.

Please let mw know if i am right
0
 
LVL 70

Expert Comment

by:Chris Dent
ID: 24967936

The MX will appear in the file you have above as below.

Remember that Forward Lookup Zones follow the delegation path from root to top level domain (.com, .net, etc) to your own name servers. ISP2 isn't involved in that delegation path at all.

All you need to do is ensure the MX entry is correct in the zone file.

Chris
                IN      NS      mydnshostname1.abc.com.

                IN      NS      mydnshostname2.abc.com.

                IN      NS      ISP1DNS1.

                IN      NS      ISP1DNS2.

                IN      NS      ISP2DNS1.

                IN      NS      ISP2DNS2.

 

; Glue for NS Records

mydnshostname1.abc.com.  IN A  1.2.3.4

mydnshostname2.abc.com.  IN A  1.2.3.5

ISP1DNS1.  IN A  2.3.4.5

ISP1DNS2.  IN A  2.3.4.6

ISP2DNS1.  IN A  3.4.5.6

ISP2DNS2.  IN A  3.4.5.7

Internet DNS IN A 1.1.1.1
 

; MX Record

@               IN      MX   10   mail.domain.com.

Open in new window

0
 
LVL 1

Author Comment

by:SrikantRajeev
ID: 25002556
Hi Chris - How to make one server as primary & the other server as secondary.
Is this DNS settgins to make one server as primary & the other server as secondary
0
 
LVL 70

Accepted Solution

by:
Chris Dent earned 500 total points
ID: 25011929

It'll be in named.conf in the zone definition.

Chris
0
 
LVL 1

Author Closing Comment

by:SrikantRajeev
ID: 31604073
Thanks
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

One of the most often confused topics in the area DNS is the idea of GLUE records. Specifically, what they are, when they are needed, when they are provided, and how they are created. First, WHAT IS GLUE? To understand GLUE, you must first under…
Resolve DNS query failed errors for Exchange
This video demonstrates how to create an example email signature rule for a department in a company using CodeTwo Exchange Rules. The signature will be inserted beneath users' latest emails in conversations and will be displayed in users' Sent Items…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

914 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now