Solved

Active Directory and website with same domain name but different server

Posted on 2014-04-11
3
950 Views
Last Modified: 2014-04-11
On my Windows 2008 R2 Active Directory server (which also is the DNS server), my AD domain name is MyDomainName.com.
Our college website, hosted on a separate server, has the same domain name, namely, MyDomainName.com.

In my DNS settings, I have MyDomainName.com pointing to 10.0.0.30, which is the AD & DNS server, and MyDomainName.com also has an A Record for 10.0.0.32, which is the webserver.

When accessing the website MyDomainName.com, the initial pause between adding the domain name to your browser and site actually appearing, can take many annoying seconds.  When I added another A Record pointing to our website and gave it Web.MydomainName.com, then the site appears very quickly.

I don't really know what is going on, but I am guessing the long delay has something to do with the AD Domain name having the same domain name as the website is the root of the problem?  The problem only happens on the campus where the AD server is, while off campus the domain name only points to the website IP address.
Is there something I am supposed to do on our DNS server to prevent this long delay from occurring?  So that when a browser makes a request to the AD/DNS server, it returns the IP address of the webserver immediately.  Or am I barking up the wrong tree with this?

NOTE: I have added this also to the IIS Web Server Topic, though our website does not use IIS.
0
Comment
Question by:hbcit
  • 2
3 Comments
 
LVL 25

Expert Comment

by:Zephyr ICT
ID: 39993524
The easiest and fastest solution will be to just make everyone use www ... Example www.yourwebsite.com ... You already did this creating a record named web, just replace that with www and it should be ok ...

It has indeed to do with your AD having the same domain name...

There's other solutions, but you're probably not going to like them ;)
0
 

Author Comment

by:hbcit
ID: 39993534
Thanks, have done that :)

So... what would be another solution... out of curiosity. :)
0
 
LVL 25

Accepted Solution

by:
Zephyr ICT earned 500 total points
ID: 39993538
Other solutions would be:

1) Rename the AD Domain
2) Install IIS on the Domain Controller(s) and create a redirection from yourdomain.com>www.yourdomain.com (for example)

Just off the top of my head :)
0

Featured Post

Secure Your Active Directory - April 20, 2017

Active Directory plays a critical role in your company’s IT infrastructure and keeping it secure in today’s hacker-infested world is a must.
Microsoft published 300+ pages of guidance, but who has the time, money, and resources to implement? Register now to find an easier way.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article shows how to deploy dynamic backgrounds to computers depending on the aspect ratio of display
This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …

756 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question