Solved

DNS/Pointer Record for access to Internal Site

Posted on 2014-04-10
4
594 Views
Last Modified: 2014-04-11
Hello Experts,

I'm assisting a non-profit with their website. They recently replaced their firewall/modem, which I installed. I'd thought I had set everything up correctly but there is one issue that I can't nail down.

Their website is accessible internally and externally. They have a document database, linked on the website, which is meant to only be accessible internally. Currently the database is only accessible if you are on the same subnet as the server. We need the database to be accessible to all internal IPs.
 
I'm thinking we need a static DNS entry or PTR record on the firewall, but I'm not sure what to point it to. I have the server IP address. The link to the database is www.website.org/newspapers. I have some suspicion that the DNS entry may be archive.website.org but I'm not certain. I don't have access to the old firewall. Do you have any thoughts on how I might nail this down?
0
Comment
Question by:grindsmygeaqrs
4 Comments
 
LVL 35

Expert Comment

by:Mahesh
ID: 39992541
In your web site configuration find out www.website.org/newspapers actually points to which server (I mean check entry on web server to which server hostname its pointing for database)
make sure Host(A) record of that server is registered in DNS and then check if its resolved from another subnets

I suspect that within same VLAN its accessible because of NetBIOS broadcast is happening within same VLAN and its getting blocked between multiple VLANS

Also consider entering FQDN of data base server in web server to get it resolved from any where internally

Mahesh.
0
 
LVL 17

Accepted Solution

by:
pergr earned 500 total points
ID: 39993504
If it works from the same subnet, it should not be a DNS issues.

If the database is on a separate machine (virtual or physical) then perhaps the machine is missing the network configuration for "default gateway", which is needed to get to a different subnet.

Alternatively, the new firewall needs a rule that allows this traffic.
0
 
LVL 45

Expert Comment

by:Craig Beck
ID: 39993812
I agree with pergr... most likely a route issue.

If the server is using the internet router as its default gateway it might not be able to see subnets via another internal router.  For that you'd need to add a static route on the server.
0
 

Author Closing Comment

by:grindsmygeaqrs
ID: 39994510
You sir we're correct! Firewall is unix and I missed the access restrictions. Thank you!
0

Featured Post

Give your grad a cloud of their own!

With up to 8TB of storage, give your favorite graduate their own personal cloud to centralize all their photos, videos and music in one safe place. They can save, sync and share all their stuff, and automatic photo backup helps free up space on their smartphone and tablet.

Join & Write a Comment

Suggested Solutions

I wrote this article to explain some important DNS concepts that should be known to avoid some typical configuration errors I often see in forums. I assume that what is described here is the typical behavior of Microsoft DNS client. I don't know …
I've written instructions for one router type, but this principle may be useful for others of the same brand and even other brands of router. Problem: I had an issue especially with mobile devices that refused to use DNS information supplied via…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

758 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now