Need instructions on how to set up a split DNS

Need instructions on how to set up a split DNS.

Currently traffic originating within our internal network is being redirected out onto the internet before it reaches its destination which is also on the internal network.

I need to know how to set up a split DNS that will fix this issue.

How can this be done?

The Server OS is Windows Server 2008 R2
IT GuyNetwork EngineerAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

p_nutsCommented:
just point your clients to the local dna server and set it up to forward requests to the arpa servers.

that way clients will first get internal dns. if that dont work dna will forward the requests to the arpa servers.
0
IT GuyNetwork EngineerAuthor Commented:
Can anyone give me more detailed instructions on how to set up a split DNS zone?
0
BBGNCommented:
sorry, its getting late so i might be missing something...

i wouldnt have thought you needed to do anything special to your DNS config, it sounds more like a user config problem.

is your DNs server on the same subnet as the client thats making the request?
when you type in ipconfig/all into a command prompt are you presented with your internal DNS server first?

if the target is a web address you need to make sure you have the correct pointer record in your own DNS configuration, containing the internal IP, otherwise, your DNS server will runn off to the internet first to get it.  for instance if your target is www.website.com, that destination has 2 IP's, 1 internal and 1 external.  you need to make sure you have a pointer record for that entry in your internal dns, pointing to the internal IP.

hope im making sense.
0
ON-DEMAND: 10 Easy Ways to Lose a Password

Learn about the methods that hackers use to lift real, working credentials from even the most security-savvy employees in this on-demand webinar. We cover the importance of multi-factor authentication and how these solutions can better protect your business!

IT GuyNetwork EngineerAuthor Commented:
is your DNs server on the same subnet as the client thats making the request? Yes.
when you type in ipconfig/all into a command prompt are you presented with your internal DNS server first? Yes.
The primary DNS server IP address is the IP address of my company's internal DNS server.
The secondary and third IP address are IP addresses of DNS servers out on the internet.

The problem is that if we remove the external IP addresses of the DNS servers on the internet, (although this fixes the problem with network traffic not being routed out to the internet) then the client computers are unable to connect to any internet webpages.

I had initially planned to try to fix this problem by setting up a Windows Server 2008 R2 proxy server, but when I researched on how to do this, I discovered that Windows 2008 R2 does not have any way being set up as a proxy server unless a special third party application is installed to do this.

So, I was advised to set up a split DNS zone, which is what I am asking for help on how to do.
0
BBGNCommented:
aha!  dont have your secondary DNS as the internet DNS server...

instead there is an error on your DNS configuration.

in DNS, rightclick on the server and select properties, change the tab to "forwarders" and in the bottom section type in your internet DNS server IPs, that should work
0
BBGNCommented:
sorry... if you adamant on mayking a split DNS Zone, then linked below is a detailed description in how to do it, and under what circumstances its needed.

http://www.isaserver.org/tutorials/You_Need_to_Create_a_Split_DNS.html
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Server 2008

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.