Solved

Multiple Domains, Multiple DNS, over VPN

Posted on 2013-01-28
5
594 Views
Last Modified: 2013-01-31
Hello,

we have two facilities connected by an open VPN tunnel between them.  Each one has its own AD, DC and its own DNS.  but of course we need to share information between the two.

I have been working to get the DNS for DomainA available to DomainB and vice versa, and i have been 50% successful to this point.  

for some reason, I have been able forward the DNS from DomainA to DomainB, but I cannot get the DNS on DomainB to load on the DomainA server.  

When I attempt to add this zone to the DomainA server I get an error stating that "the server with this ip is not authoritative for the required zone"

which is where my confusion is....to my knowledge I have the same settings on both servers, so I am not sure why this one won't set up?

I have DomainA listed as a Name server on DomainB and setup DomainB to allow zone transfers to any servers listed as a NS.

anything glaring that I should check?

one other thing I have noticed is that when at DomainB, if I want to search for a computer on DomainA, I have to enter the FQDN and not just the DNS name in order to find it?  is that normal?
0
Comment
Question by:redekopmfg
5 Comments
 
LVL 79

Accepted Solution

by:
David Johnson, CD, MVP earned 500 total points
ID: 38828603
I have DomainA listed as a Name server on DomainB and setup DomainB to allow zone transfers to any servers listed as a NS.

not the way I'd do it.. I'd keep the domains separate.
Then in AD sites and services establish a two way trust between the two domains.
0
 
LVL 16

Expert Comment

by:choward16980
ID: 38828890
You need to allow authoritative transfers from this zone.

http://technet.microsoft.com/en-us/library/cc770984.aspx
0
 

Author Comment

by:redekopmfg
ID: 38832227
Hi ve3ofa,

I had not thought of that approach, and like that idea......

I have attempted to do that now, but the DNS issue that I am experiencing seems to be affecting this as well.

I created the trust from DomainB, it completes the wizard, but then when I attempt to validate it I get an error stating that: "There are currently no logon servers available to service the logon request."

if I go to DomainA and attempt to validate, I get this error: "Windows cannot find an active directory domain controller for the domainB.com domain.  Verify that an AD DC is available and then try again"
0
 
LVL 11

Expert Comment

by:hecgomrec
ID: 38833244
Set the sites to work separated.

Once you have them like that make sure the networks are in different 192.168.1.0 / 192.168.2.0 like this you are sure there are no collisions in your setting.

Second step, add in each domain the address of the other DNS as a primary DNS server for the other.

Users connecting to the shares should exist on both sides.

Good Luck
0
 

Author Closing Comment

by:redekopmfg
ID: 38839741
I was able to resolve my DNS issues, and this is working well.  Thanks
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This is an article about my experiences with remote access to my clients (so that I may serve them) and eventually to my home office system via Radmin Remote Control. I have been using remote access for over 10 years and have been improving my metho…
Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

863 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now