Solved

Problems DNS after scavening dns

Posted on 2009-07-15
10
239 Views
Last Modified: 2013-12-01
Hello,

I am running to some dns problems every 21 days.

When i run a dcdiag /test:dns i get the following results (i will put the full log later on)

 Summary of DNS test results:
         
                                            Auth Basc Forw Del  Dyn  RReg Ext  
               ________________________________________________________________
            Domain: domain.local
               serverdc2                 PASS FAIL PASS PASS WARN FAIL n/a  
         
         ......................... domain.local failed test DNS

After a dcdiag /fix everything works fine again.

DNS Scavening is set to every 7 days but after 21 days we receive this error.
There are 2 domain controllers, serverdc1 is the primairy server and serverdc2 is the secondairy.

Does anybody had any idea why this is happening every 21 days.

some other errors in the log :

Domain Controller Diagnosis

Performing initial setup:
   * Verifying that the local machine serverdc2, is a DC.
   * Connecting to directory service on server serverdc2.
   * Collecting site info.
   * Identifying all servers.
   * Identifying all NC cross-refs.
   * Found 2 DC(s). Testing 1 of them.
   Done gathering initial info.

Doing initial required tests
   
   Testing server: domain\SERVERDC2
      Starting test: Connectivity
         * Active Directory LDAP Services Check
         The host e3a31358-75b4-41b4-886d-8660f088e000._msdcs.domain.local could not be resolved to an
         IP address.  Check the DNS server, DHCP, server name, etc
         Although the Guid DNS name

         (e3a31358-75b4-41b4-886d-8660f088e000._msdcs.domain.local) couldn't be

         resolved, the server name (serverdc2.domain.local) resolved to the IP

         address (**.**.**.**) and was pingable.  Check that the IP address is

         registered correctly with the DNS server.
         ......................... SERVERDC2 failed test Connectivity

Thanks for the help!
0
Comment
Question by:fmecwm
  • 5
  • 5
10 Comments
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

Could you let us know the Aging intervals have you set please?

Chris
0
 

Author Comment

by:fmecwm
Comment Utility
The aging intverval is set to 7 days

Is this what you want to know?

Stefan
0
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

Yep, it is, that's both of them?

Are you able to verify if the "e3a31358-75b4-41b4-886d-8660f088e000._msdcs.domain.local" exists in DNS at the point of failure?

Chris
0
 

Author Comment

by:fmecwm
Comment Utility
This is on both servers yes.

i'm not able to check this because we have already runned the fix so everything is working fine again.

But when this problem occurs the _msdcs.fmecwm.local in forward lookup zones is empty.

I hope this is enough information for you, otherwise i have to wait 21 days.

Stefan
0
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

I meant both Aging intervals (No-Refresh and Refresh) :)

We can theorise that it gets Scavenged, it fits into a multiple of the scavenging period. But the NetLogon service should be sending a Refresh for that record (and all other service records) once every 24 hours.

Do you have any other DNS servers listed in TCP/IP configuration?

And do you see any errors in the event log for DNS record registration?

The Host (A) and PTR records are still present when this problem occurs aren't they? Although those are maintained by DHCP Client rather than NetLogon the same 24 hour refresh applies.

Chris
0
What Is Threat Intelligence?

Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

 

Author Comment

by:fmecwm
Comment Utility
The host and ptr records are still present yes.

In the dns event this is the only information log :

15 juli 18:00
The DNS server has completed a scavenging cycle:
Visited Zones     = 14,
Visited Nodes     = 722,
Scavenged Nodes   = 0,
Scavenged Records = 0.
 
This cycle took 0 seconds.
 
The next scavenging cycle is scheduled to run in 168 hours.

0
 
LVL 70

Expert Comment

by:Chris Dent
Comment Utility

Is that the cycle immediately preceding the last failure?

Chris
0
 

Author Comment

by:fmecwm
Comment Utility
Yes
this is the olny event in de eventlog and i did not checked it yesterday after 18:00 but this morning.
This happends every 21 days.
i hope this is an answer on your question (my english is not that good)
0
 
LVL 70

Accepted Solution

by:
Chris Dent earned 250 total points
Comment Utility

Do any of the Scavenging events have values for "Scavenged Nodes" or "Scavenged Records"?

You might consider creating a new Forward Lookup Zone for _msdcs.fmecwm.local. Then apply very long Aging Intervals to the new zone.

Chris
0
 

Author Comment

by:fmecwm
Comment Utility
Hi Crhis thanks for the help!
I'm considering to create a new forwared lookup zone.
The scavening is set to 7 days, will it help to set this to 21 days? we have about 300 systems here.

Thanks for the help.

0

Featured Post

IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Suggested Solutions

Occasionally you run into the website or two that will not resolve properly using your own DNS servers.  Some people simply set up global forwarders for their DNS server.  I don’t recommend doing this because it can cause problems resolving addresse…
I previously wrote an article addressing the use of UBCD4WIN and SARDU. All are great, but I have always been an advocate of SARDU. Recently it was suggested that I go back and take a look at Easy2Boot in comparison.
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now