Solved

Cant change the preferred dns settings on Edge Transport

Posted on 2014-03-13
12
225 Views
Last Modified: 2014-04-12
I have an Exchange 2010 Edge Transport server in my DMZ that is configured to use the 'Network Card settings' with ‘All available ipv4’ on External and Internal DNS Lookup Settings.  Everything is running fine, however, I have added a new External DNS server in my environment and I want to change the Edge Server’s Preferred DNS Server settings to reflect the new DNS server, and move the old DNS server as an Alternate.

My Problem:  After I make the DNS change on the Adaptor settings, the server forces me to re-boot and afterwards reverts it back to the original IP settings.  What is causing this and how can I get around it?  All I am trying to do is point the NIC IP address on the Edge Server to the new External DNS server and it is not letting me.
0
Comment
Question by:sagdoc
  • 7
  • 5
12 Comments
 
LVL 36

Expert Comment

by:Mahesh
ID: 39928654
Please try disabling UAC on edge server through gpedit.msc computer configuration\security settings
If above do not worked, then
Please try netsh command line to change DNS server IP from elevated command prompt on Edge Server
Check below articles for commands and detailed instructions
http://helpdeskgeek.com/networking/change-ip-address-and-dns-servers-using-the-command-prompt/
http://www.practicallynetworked.com/networking/manage_windows_network_settings_with_netsh.htm

This will work hopefully

Mahesh
0
 

Author Comment

by:sagdoc
ID: 39928964
I don't think it is the UAC because it is already disabled.  I will try the netsh command.  I am still curious why the change does not occur via the GUI.  Does the Edge Transport installation\process have a specific hook into the NIC DNS settings that would prevent modification from the GUI?
0
 

Author Comment

by:sagdoc
ID: 39942991
I guess no one has seen this problem before?
0
Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

 
LVL 36

Expert Comment

by:Mahesh
ID: 39943288
Have you got success with netsh
0
 

Author Comment

by:sagdoc
ID: 39945170
Well, not really.  I am running the netsh commands from the command prompt and it comes back with an access denied response.  I am access the command window with 'run as administrator'.  This is really strange, all I am trying to do is change the preferred DNS server to a different DNS server but it just wont let me.
0
 
LVL 36

Expert Comment

by:Mahesh
ID: 39945219
Not sure what is exact issue

have you done any kind of hardening on Edge server ?

Try to add one more network card on Edge server and check if it works

If worked, then remove original network card and restore original ip settings

Mahesh
0
 

Author Comment

by:sagdoc
ID: 39959933
Nothing specific on hardening the server.  I think the problem centers around the Exchange Services.  I will stop the services, modify the preferred dns server and reboot.  Hopefully this will work.
0
 
LVL 36

Expert Comment

by:Mahesh
ID: 39959959
may be that is simplest fix i hope, good luck
0
 

Author Comment

by:sagdoc
ID: 39966396
Well...that did not work.  Even with all of the Exchange services stopped the preferred and alternate dns server settings reverted back to the original settings.  I am at a loss.  At this point I just would like to know why this is occurring.
0
 

Accepted Solution

by:
sagdoc earned 0 total points
ID: 39969022
Finally I found the issue.  Our security person had decided to turn on Sonar in Symantec and set the DNS change detection setting to block.  Of course he neglected to tell anyone about it.  So even disabling Symantec temporarily would not fix my problem until he put in an exception policy.  

So it is true....blame the security person first.
0
 
LVL 36

Expert Comment

by:Mahesh
ID: 39983929
Really very weired issue
0
 

Author Closing Comment

by:sagdoc
ID: 39995834
That was the fix
0

Featured Post

Free Tool: Subnet Calculator

The subnet calculator helps you design networks by taking an IP address and network mask and returning information such as network, broadcast address, and host range.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Explore the encryption capabilities built into Google Apps and how these features can help you meet privacy policy and regulatory compliance, but are not a full solution. Understand and compare the most popular email encryption services for Google A…
It’s been over a month into 2017, and there is already a sophisticated Gmail phishing email making it rounds. New techniques and tactics, have given hackers a way to authentically impersonate your contacts.How it Works The attack works by targeti…
In this video, we discuss why the need for additional vertical screen space has become more important in recent years, namely, due to the transition in the marketplace of 4x3 computer screens to 16x9 and 16x10 screens (so-called widescreen format). …
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…

861 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question