I have wireshark installed on my dns/dc 2008 r2 server, and I don't know how to setup a filter for a dns query to a host.
The reason is that the host I am querying are part of a conditional forwarded, which has been having difficulty with dns resolutions for the past four days. The dns connections does go through a vpn tunnel , which is working. and I can get to the site via ip address but sporadically I can't use dns to get to the site. Thus I wanted to setup a wireshark capture to validate dns from the dns/dc server to the destintation hosts