DNS Delegation Error

Hi Guys,

I'm getting the following error when running diagnostics on my DNS server:
ErrorWe have three 2012 DCs and one 2008 DC.

Everything seems to be running fine with dns. The _msdcs is not greyed out. I've checked for old DC records and deleted them. Has anyone dealt with this issue before and have any troubleshooting steps I can follow?

Thanks!

IV
LVL 22
Ivano ViolaSystem AdministratorAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

arnoldCommented:
It is best to post the text versus images.

The error deals with your DNS not including a zone 127.0.0 with one revord 1 IN PTR localhost.

Not clear which rests you are running dcdiag /testDNS

Ipconfig /all | find /I "name"
0
Ivano ViolaSystem AdministratorAuthor Commented:
arnold,

Sorry about that. The test I ran was: DCDIAG /TEST:DNS

C:\Windows\system32>DCDIAG /TEST:DNS

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   Home Server = DC01
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: mydomainCampus\DC01
      Starting test: Connectivity
         ......................... DC01 passed test Connectivity

Doing primary tests

   Testing server: mydomainCampus\DC01

      Starting test: DNS

         DNS Tests are running and not hung. Please wait a few minutes...
         ......................... DC01 passed test DNS

   Running partition tests on : ForestDnsZones

   Running partition tests on : DomainDnsZones

   Running partition tests on : Schema

   Running partition tests on : Configuration

   Running partition tests on : lan

   Running enterprise tests on : lan.mydomain.org
      Starting test: DNS
         Test results for domain controllers:

            DC: DC01.lan.mydomain.org
            Domain: lan.mydomain.org


               TEST: Delegations (Del)
                  Error: DNS server: dc01.lan.mydomain.org. IP:10.10.21.1
                  [Broken delegated domain lan.mydomain.org.lan.mydomain.org.]
                  Error: DNS server: dc02.lan.mydomain.org. IP:10.10.21.2
                  [Broken delegated domain lan.mydomain.org.lan.mydomain.org.]
                  Error: DNS server: dc03.lan.mydomain.org. IP:10.10.21.3
                  [Broken delegated domain lan.mydomain.org.lan.mydomain.org.]
                  Error: DNS server: nash.lan.mydomain.org. IP:10.10.59.1
                  [Broken delegated domain lan.mydomain.org.lan.mydomain.org.]

         Summary of test results for DNS servers used by the above domain
         controllers:

            DNS server: 10.10.21.1 (dc01.lan.mydomain.org.)
               1 test failure on this DNS server

            DNS server: 10.10.21.120 (nash.lan.mydomain.org.)
               1 test failure on this DNS server

            DNS server: 10.10.21.2 (dc02.lan.mydomain.org.)
               1 test failure on this DNS server

            DNS server: 10.10.21.3 (dc03.lan.mydomain.org.)
               1 test failure on this DNS server

            DNS server: 10.10.59.1 (nash.lan.mydomain.org.)
               1 test failure on this DNS server

            DNS server: 54.243.177.149 (<name unavailable>)
               1 test failure on this DNS server
               PTR record query for the 1.0.0.127.in-addr.arpa. failed on the DN
S server 54.243.177.149
            DNS server: 67.210.170.76 (<name unavailable>)
               1 test failure on this DNS server
               PTR record query for the 1.0.0.127.in-addr.arpa. failed on the DN
S server 67.210.170.76
         Summary of DNS test results:

                                            Auth Basc Forw Del  Dyn  RReg Ext
            _________________________________________________________________
            Domain: lan.mydomain.org
               DC01                         PASS PASS PASS FAIL PASS PASS n/a

         ......................... lan.mydomain.org failed test DNS

C:\Windows\system32>

Open in new window


IV
0
arnoldCommented:
Does your system have reverse DNS zones for 127.0.0, 10.10.10.


?
Do you have a lan.mydomain.com in mydomain.com that points to NS records who then have a lan.mydomain.com forward zone?
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Ivano ViolaSystem AdministratorAuthor Commented:
Your comment put me on the right track. There was a "org -- mydomain -- lan" within "lan.mydomain.org". An application we use created a service record there. I deleted the string and re-ran that diag command and all was good. Thanks for your help.

IV
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Microsoft Applications

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.