Solved

Resolve external DNS for email server when in the same lan as the server

Posted on 2014-02-18
6
649 Views
Last Modified: 2014-02-21
Sorry EE a little brain dead today, hope this one is simple:

Have an email server in lan.  Have a windows network with a dns server in lan.  Probably incomplete dns set up on server.  Outside of lan, public dns for email server works fine, inside the lan, no dice.  The email server is in the lan but not joined to the domain (an exchange clone.)

How to finish the dns set up so that when in the lan, public dns record resolves as it does when outside the lan?
0
Comment
Question by:VirtualKansas
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
6 Comments
 
LVL 35

Expert Comment

by:Seth Simmons
ID: 39869263
please define "exchange clone"
what email server is this?  how is it working not part of the domain?
0
 
LVL 36

Expert Comment

by:Kimputer
ID: 39869968
I'm assuming your DNS server isn't working properly right now. Is it resolving internal addresses properly? If so, the only thing you need is to add a forwarding DNS server (for ease, just use 8.8.8.8, which is Google's public DNS server).
0
 
LVL 18

Expert Comment

by:Sarang Tinguria
ID: 39870114
Do you have DNS Server joined to Domain..?
Is it windows DNS server or something else..?
Do you mean that your email does not work in internal LAN?
What is your email domain name and Local domain name (AD domain name)..??

Please answer above questions so I can come up with more as you original query is bit incomplete :-)
0
Ransomware-A Revenue Bonanza for Service Providers

Ransomware – malware that gets on your customers’ computers, encrypts their data, and extorts a hefty ransom for the decryption keys – is a surging new threat.  The purpose of this eBook is to educate the reader about ransomware attacks.

 

Author Comment

by:VirtualKansas
ID: 39870329
OK EE, back online.
DNS Servers (3 DC's with one PDC) are all joined and managing Domain
Windows with AD integration, yes
EMail DNS does not resolve on LAN, but does on public side of firewall
The email server is not joined to the domain, but does have a DNS entry mail.[domain].world, where external DNS is mail.[domain].com

Kimputer response is likely my issues, not having a forward set to public DNS.  Likely missed that step in initial DNS set up in the rush to get the LAN side of domain live.
0
 
LVL 40

Accepted Solution

by:
footech earned 500 total points
ID: 39875749
If machines in your LAN can browse to the internet, then adding a forwarder is likely not to help (though it is often preferred over using root hints).  Often what is needed is to create a record on your internal DNS with the same name as the external record, but point it at the internal IP of the email server.  The reason for this is that many firewalls do not allow traffic that is initiated on the internal (LAN) side to come back in on the public side.

The best way to handle this is as follows:
Create a forward lookup zone for the FQDN that you want to resolve (e.g. "mail.example.com").  Inside that zone create an A record that is blank and point it at the internal/private IP of the mail server.  Once created it will show as "same as parent" for the hostname.  This method allows you to create a record for "mail.example.com" while allowing all other records in the "example.com" domain to be resolved by your public records.
0
 

Author Closing Comment

by:VirtualKansas
ID: 39877279
I believe this is the best answer, have other "issues" with my lack of experience setting up DNS/DHCP to wrench on.  Thank you for helping solve this piece of the puzzle.
0

Featured Post

Secure Your WordPress Site: 5 Essential Approaches

WordPress is the web's most popular CMS, but its dominance also makes it a target for attackers. Our eBook will show you how to:

Prevent costly exploits of core and plugin vulnerabilities
Repel automated attacks
Lock down your dashboard, secure your code, and protect your users

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
Resolving an irritating Remote Desktop connection that stops your saved credentials from being used.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
In this brief tutorial Pawel from AdRem Software explains how you can quickly find out which services are running on your network, or what are the IP addresses of servers responsible for each service. Software used is freeware NetCrunch Tools (https…
Suggested Courses

630 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question