Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Same Internal and external domain name, DNS issues, resolve with A records?

Posted on 2010-08-29
23
684 Views
Last Modified: 2012-06-27
I realize now I shouldn't have named my internal domain name the same as our external domain, but I did, and I now we have various issues like GPO's not applying, host names not resolving, and randomly we can't load our extenral website. Renaming the domain isn't an realistic option so I'm hoping to fix this with DNS A records (set www.company.com to the external site and everything else to the internal destinations?). How can I do this? If it matters, it's a small company, just 1 server (the DC / DNS) and 15 PC's. Thanks for your help.
0
Comment
Question by:canalicomputers
  • 10
  • 9
  • 2
  • +2
23 Comments
 
LVL 4

Accepted Solution

by:
slushm earned 250 total points
ID: 33555543
http://support.microsoft.com/default.aspx?scid=kb;en-us;304491

read this article or you can put the www.company.com entry in dns to a specific ip address to all requests get sent to the address you want them to go to.
0
 
LVL 4

Expert Comment

by:netF
ID: 33555545
You should use split DNS when using the same domain name for accessing both internal and external resources.

 See the below link for how to implement split DNS.
http://www.isaserver.org/tutorials/You_Need_to_Create_a_Split_DNS.html
0
 
LVL 59

Assisted Solution

by:Darius Ghassem
Darius Ghassem earned 250 total points
ID: 33558364
You need to create an "A" record in your DNS Forward lookup zone called www with the external IP address of your external website.

Having the same name internally and externall will NOT cause GPO issues. Make sure you are only pointing to internal DNS servers which are your DCs in your clients', DCs', and servers' TCP\IP settings. You should NOT have external DNS servers listed in your TCP\IP settings.
0
Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

 

Author Comment

by:canalicomputers
ID: 33558475
I just created the www A record ... will that only handle the issue of accessing the external website or will that also resolve internal host name resolution issues too?
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33558509
This will fix the external issue this will point all www.company.com DNS requests to the external web server holding the website by directly pointing to the server with the external IP address you setup in the A record.

I have used the same name internally and externally many of times without issue this will not cause internal name resolution problems.

Again make sure you are only pointing to internal DNS servers.
0
 

Author Comment

by:canalicomputers
ID: 33558551
Where exactly are all the places in Windows Server 2008 that I need to confirm which are only listing the internal DNS server / pushing that to the PC's? Thanks
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33558603
ALL systems should only be pointing to your DCs for DNS in their TCP\IP settings for primary DNS
0
 

Author Comment

by:canalicomputers
ID: 33558695
Ok, and I just realized I had 2 entries of external DNS IP's in my DNS Forwarders tab ... long story how they got in there, but I just deleted them, leaving no Forwarder entries ... what impact could those have had if they were useless?
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33558718
You should have DNS forwarderss setup to forward to your ISP DNS servers for external DNS resolution you need to make sure they are updated ones. You should always have forwarders that are current in the DNS server.

http://www.windowsnetworking.com/articles_tutorials/DNS_Conditional_Forwarding_in_Windows_Server_2003.html
0
 

Author Comment

by:canalicomputers
ID: 33558747
... when I try remote desktop to various computers, either just using their host name or FQDN I'm not able to connect (not a permissions issues, it just doesn't find them).
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33558892
Post ipconfig /all for DC and clients this is a DNS issue have you checked your TCP\IP settings?
0
 

Author Comment

by:canalicomputers
ID: 33558943
Here's ipconfig /all from the DC (I replaced the real name with company.com), next post will have client's ipconfig...


Windows IP Configuration

   Host Name . . . . . . . . . . . . : dc
   Primary Dns Suffix  . . . . . . . : company.com
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : company.com

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Broadcom BCM5716C NetXtreme II GigE (NDIS VBD Client)
   Physical Address. . . . . . . . . : 84-2B-2B-16-C1-B8
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 10.100.101.236(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 10.100.101.1
   DNS Servers . . . . . . . . . . . : 127.0.0.1
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{F1948C29-9976-4763-BBB2-871CEBB85608}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 11:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
0
 

Author Comment

by:canalicomputers
ID: 33558978
The client's ipconfig /all ...


Windows IP Configuration

        Host Name . . . . . . . . . . . . : D7KGH7D1
        Primary Dns Suffix  . . . . . . . : company.com
        Node Type . . . . . . . . . . . . : Hybrid
        IP Routing Enabled. . . . . . . . : No
        WINS Proxy Enabled. . . . . . . . : No
        DNS Suffix Search List. . . . . . : company.com
                                                           company.com

Ethernet adapter Local Area Connection:

        Connection-specific DNS Suffix  . : company.com
        Description . . . . . . . . . . . : Broadcom 440x 10/100 Integrated Controller
        Physical Address. . . . . . . . . : 00-1A-A0-2C-42-C5
        Dhcp Enabled. . . . . . . . . . . : Yes
        Autoconfiguration Enabled . . . . : Yes
        IP Address. . . . . . . . . . . . : 10.100.101.211
        Subnet Mask . . . . . . . . . . . : 255.255.255.0
        Default Gateway . . . . . . . . . : 10.100.101.1
        DHCP Server . . . . . . . . . . . : 10.100.101.1
        DNS Servers . . . . . . . . . . . : 198.6.1.1
                                                      198.6.1.2
        Primary WINS Server . . . . . . . : 10.100.101.236
        Lease Obtained. . . . . . . . . . : Monday, August 30, 2010 10:02:27 AM
        Lease Expires . . . . . . . . . . : Tuesday, August 31, 2010 10:02:27 AM
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33559037
On DC change this to the actual IP address of the DC DNS Servers . . . . . . . . . . . : 127.0.0.1. Run ipconfig /flushdns, ipconfig /registerdns, and dcdiag /fix.

On client point this to the DC IP address.

 DNS Servers . . . . . . . . . . . : 198.6.1.1
                                                      198.6.1.2

Why do you have those IPs in the TCP\IP settings? This is wrong and is causing you all the problems.
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33559042
On client run ipconfig /flushdns and ipconfig /registerdns once you change the DNS settings.
0
 

Author Comment

by:canalicomputers
ID: 33559066
Because I'm a noob... according to the ipconfigs it looks like they already have those setting though? am I not reading them right? and the clients are currently set to auto detect the settings.
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33559128
You need to go to your DHCP server then and change the setting so it will lease the proper DNS server IPs. Looks like your router is handing out the DHCP IP addresses. You need to go into the router then change the DHCP settings once you have done this run ipconfig /release and ipconfig /renew you should see the proper settings you set in the DHCP settings on the router. Then run through the ipconfig commands I gave you above this should fix it all.
0
 

Author Comment

by:canalicomputers
ID: 33559462
I just ran ipconfig /all on a different PC and that one has the DC listed as the DNS, which I guess it good, but why would different PC's have different DNS settings if they are all in the same DHCP Scope?
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33559731
They aren't in the same scope you must have 2 different DHCP servers running on the same network. Check the ipconfig /all see what the IP address is on the DHCP server line if it is different then your default router then you have 2 DHCP servers running.
0
 
LVL 13

Expert Comment

by:markusdamenous
ID: 33563154
Your router is very likely configured to also be a DHCP server.  You need to turn this off, and allow the server to do the work.  This totally explains your internal dns issues.  Just add the A record to your DNS server for the complete solution.
0
 

Author Comment

by:canalicomputers
ID: 33566169
O ok, I will check out the router and will post back, may not be until the weekend, thanks for all the help guys.... markusdamenous: the A record you are referring to is just the www record right?
0
 
LVL 13

Expert Comment

by:markusdamenous
ID: 33602460
Yes, just a record for WWW.
0
 

Author Closing Comment

by:canalicomputers
ID: 33671282
Thanks
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
When you try to share a printer , you may receive one of the following error messages. Error message when you use the Add Printer Wizard to share a printer: Windows could not share your printer. Operation could not be completed (Error 0x000006…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

790 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question