Jay Thomas
asked on
Update DNS root hints on server 2008R2
Hi all, I need to update the root hints in my server 2008 servers. I have an web address of : http://www.internic.net/zones/named.root
Which has the latest list but how do I copy them (other than manual) to the servers - any ideas?
Many thanks
Jason
Which has the latest list but how do I copy them (other than manual) to the servers - any ideas?
Many thanks
Jason
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
As I sad in my post, if you are managing a Windows DNS server, just open the DNS administrative tool and update the Root Hints there. If you are not managing DNS server, just forget about them.
Be very careful what where you get the numbers from. If you enter wrong addresses you could expose yourself to a man-in-the-middle attack.
Be very careful what where you get the numbers from. If you enter wrong addresses you could expose yourself to a man-in-the-middle attack.
ASKER
Hi and thanks to both of you. I have noted a couple of addresses within root hints on server 2008 have changed when comparing ing to the latest available internic so I was looking for an automated way if updating them, I wasn't sure I could edit the current IP address for a root domain and just starting changing the IP address manually without it causing a problem because I note that from with dns mmc all you have is the domain name and IP address but from internic for each address there is additional information for each domain entry, if you go to the URL in my first post you will see what I mean- they show additional information which I can't see in dns mmc an so don't know if u simy start changing te IP address's it wouldn't cause a problem. I appreciate all the help but I'm still not sure ( please forgive me) on the actual step by step method of changing the root hints that ship with server 2008r2
Unfortunately with Microsoft DNS I can't see an easy option to update the root hints automatically.
With Internic there is indeed additional information but if you do it via the DNS MMC, the interface will automatically add all the necessary info.
If you take the first entry of Microsoft's "cache.dns" (which was created by using the DNS MMC).
As the DNS server is an IPv4 DNS server this information is not applicable.
All other information is the same.
My recommended way of doing this is by opening the named.root with a text editor and then copy (control-c) the IP-address in the text editor and paste (control-v) the IP-address within the DNS MMC while verifying you select the correct root-server name. If you would verify each entry twice than everything should be ok.
At the end of the change you might restart the DNS Server service to be sure everything is loaded correctly.
With Internic there is indeed additional information but if you do it via the DNS MMC, the interface will automatically add all the necessary info.
If you take the first entry of Microsoft's "cache.dns" (which was created by using the DNS MMC).
. 3600000 IN NS A.ROOT-SERVERS.NET.
A.ROOT-SERVERS.NET. 3600000 A 198.41.0.4
and compare it to "named.root" from Internic. 3600000 IN NS A.ROOT-SERVERS.NET.
A.ROOT-SERVERS.NET. 3600000 A 198.41.0.4
A.ROOT-SERVERS.NET. 3600000 AAAA 2001:503:BA3E::2:30
Then the only difference is that Internic adds (in the last row) also the IPv6 IP-address of the root server. In this case 2001:503:BA3E::2:30As the DNS server is an IPv4 DNS server this information is not applicable.
All other information is the same.
. Root node
3600000 Time to live (this field is for historical reasons and not used by the DNS server)
IN Stands for Internet (DNS class field)
NS Name server record (Resource record)
A IPv4 host record (Resource record)
AAAA IPv6 host record (Resource record)
198.41.0.4 IPv4-address
2001:503:BA3E::2:30 IPv6-address
I can confirm that it's possible to edit the IP-addresses manually via the DNS MMC.My recommended way of doing this is by opening the named.root with a text editor and then copy (control-c) the IP-address in the text editor and paste (control-v) the IP-address within the DNS MMC while verifying you select the correct root-server name. If you would verify each entry twice than everything should be ok.
At the end of the change you might restart the DNS Server service to be sure everything is loaded correctly.
ASKER
Thank you.
ASKER
Many thanks
Jason