Solved

a dns server authoritative

Posted on 2010-08-25
9
908 Views
Last Modified: 2012-05-10
Hi
I have a remote site connected to our main site via cisco VPN, I can ping both sites by name and IP Address but when I am trying to get DNS on the remote site to connect to the main site I get the server is not authoritative for the required zone. My DNS server on the main site is working fine it is only a local DNS server, I have checked SOA and it does state that it is the authoritative server. What am I missing as I'm lost now.
Thank you in advance for any help
0
Comment
Question by:dances1960
9 Comments
 
LVL 10

Expert Comment

by:rscottvan
ID: 33528107
A few questions:

What device are you doing DNS queries from?  
Can you post the network configuration of the relevant devices?  (IP Addresses, Masks, Gateways and DNS servers.  DHCP or fixed IP.)
Is DNS traffic permitted through the tunnel?
0
 
LVL 1

Expert Comment

by:jasonlcss
ID: 33529102
Have you checked that all the relevant ports are opened bi-directionally on the cisco?
0
 

Author Comment

by:dances1960
ID: 33529613
Hi

the ports on the cisco are open for both sites and i can ping both ip address and dns name, the main site is 192.168.0.0 and the remote is 192.168.10.0 the servers are 192.168.0.15 and remote 192.168.10.235. I can remote desktop from each site to the other.
The gateway in the main office is 192.168.0.86 and remote is 192.168.10.86.
0
Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

 
LVL 10

Expert Comment

by:rscottvan
ID: 33531834
I'm confused...  you said you can ping by name from either end.  That implies DNS resolution is working.  

Your symptom is an error message:  "the server is not authoritative for the required zone"

What do you do that precipitates that error?  (Please be specific, i.e. "I type ping billy.bob from a PC in the main site.  Billy.Bob is a server in the remote site.")

Also, a recap to be sure I have the topology correct...  
Main Site
Router inside IP: 192.168.0.86
DNS Server:  192.168.0.15

Remote Site
Router inside IP:  192.168.10.86
DNS Server:  192.168.10.235

What OS is running on the servers?  
Is this Windows Active Directory?  If yes, are the servers Domain Controllers?
What DNS Domains are hosted on each server?
What DNS Domain is each server in?
0
 
LVL 7

Expert Comment

by:briandunkle
ID: 33534645
Are you trying to do a zone transfer, as in the second place is trying to be a secondary dns server for it? If so, you'll need to list both servers as nameservers in the zone file along with allowing transfers from the primary to the secondary.  
0
 

Author Comment

by:dances1960
ID: 33535790
Hi
I can ping from either side to the other but when I try to connect the dns from the remote site to main site I get the server is not authoritative message?
I have checked the topology as you asked and it is as stated
the OS on the main site is 2003 DC with AD and the remote site is a 2008 member server which has been on the domain in the main office for a week or too but only while building it, the reason for member server is I was going to use TMG but ended up not being allowed to buy it. should I take the server back to the main office and make it a DC with AD?
In answer to Brain I have the servers names in both zones with transfers allowed but still no joy.

0
 
LVL 10

Accepted Solution

by:
rscottvan earned 500 total points
ID: 33537712
"when I try to connect the dns from the remote site"

I don't understand what this means.  

It sounds like you're trying to configure the Server 2003 DC to allow DNS zone transfers to the 2008 member server.  Is that correct?

If yes, in the DNS console on the 2003 server, right-click each zone and select properties.  Click the Zone Transfers tab and fill in the information for the server 2008 server.  Also make sure the far end server is added to the Name Servers tab for each zone.

On the Server 2008 Server, are you setting up the zones as Secondary Zones?  I don't have a server I can play with right in front of me, but if you didn't set it up as secondary zones, you'll need to delete all the zones and re-create them as secondary zones.  Configure each zone to receive updates from the 2003 server.
zone-transfer.JPG
0
 
LVL 10

Expert Comment

by:rscottvan
ID: 33537721
After more thought, I imagine you have created the zones on the 2008 server as Primary zones.  Since the server is not a Domain Controller, it cannot be a Primary.  If this is right, delete the zones and re-add them as secondary zones.
0
 

Author Comment

by:dances1960
ID: 33562148
hi rscottvan
I have deceided to make this a DC in the main office and then transfer it to the remote office and then try and get the link up, thankyou for all your help so far and I shall report how I went on tomorrow.
0

Featured Post

DevOps Toolchain Recommendations

Read this Gartner Research Note and discover how your IT organization can automate and optimize DevOps processes using a toolchain architecture.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

You might have come across a situation when you have Exchange 2013 server in two different sites (Production and DR). After adding the Database copy in ECP console it displays Database copy status unknown for the DR exchange server. Issue is strange…
Resolve DNS query failed errors for Exchange
This tutorial will walk an individual through locating and launching the BEUtility application and how to execute it on the appropriate database. Log onto the server running the Backup Exec database. In a larger environment, this would generally be …
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question