Solved

Pinging mydomain.local from server in GQ returns IP of branch DC

Posted on 2014-02-04
2
469 Views
Last Modified: 2014-02-04
Hi All

I have a multisite single forest / domain, We have majority of our servers in London and all subnets in use in London are applied to the London AD site.

We have a few branch offices and the subnets in use in each are correctly applied to the respective AD site.

Issue i have is a couple of App servers at our London HQ use LDAP to authenticate people e.g one problem app is our Jira support desk system, we are getting intermittent logon issues where users are not authenticated, a few mins later it works.

I have checked the event logs and done a dcdiag on the DC's and also checked all of the time sync between DC's and the meber servers involved and everything is good.

One thing i have noticed is if from our Jira server (which is on a subnet linked to the London AD site) if i ping just our domain name mydomain.local I actually get the IP address back of a DC in Singapore. the DNS servers that the Jira server has configured are 2 domain controllers in the London site

Any ideas why this icould be happening if my AD sites are configured correctly

Thanks
0
Comment
Question by:ncomper
2 Comments
 
LVL 19

Accepted Solution

by:
Patricksr1972 earned 500 total points
Comment Utility
Sounds like Singapore was the fastests to respond.

You can configure ldapsrv records to authenticate against specific DC.

Domain Controller Locator : an overview

http://blogs.technet.com/b/arnaud_jumelet/archive/2010/07/05/domain-controller-locator-an-overview.aspx

Or simply set:

set logonserver=\\Domain Controller name

On the server that got lost in the serverworld.

set logonserver       simply tells you on what DC authentication is handled.
0
 
LVL 5

Author Closing Comment

by:ncomper
Comment Utility
Thanks
0

Featured Post

Free book by J.Peter Bruzzese, Microsoft MVP

Are you using Office 365? Trying to set up email signatures but you’re struggling with transport rules and connectors? Let renowned Microsoft MVP J.Peter Bruzzese show you how in this exclusive e-book on Office 365 email signatures. Better yet, it’s free!

Join & Write a Comment

Occasionally you run into the website or two that will not resolve properly using your own DNS servers.  Some people simply set up global forwarders for their DNS server.  I don’t recommend doing this because it can cause problems resolving addresse…
In this article, we will see the basic design consideration while designing a Multi-tenant web application in a simple manner. Though, many frameworks are available in the market to develop a multi - tenant application, but do they provide data, cod…
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now