Avatar of Jaime Campos
Jaime Campos
Flag for United States of America asked on

DNS Forwarders

Hi,

I have a Windows Server 2008 AD infrastructure with several DCs. I have two DNS Servers in placed. I noticed that when I do a nslookup I don't get a reply/authoritative answer when performing a nslookup to www.google.com.

nslookup can't find www.google.com*** mydomain.net Cant find www.google.com 

THEN when querying against 8.8.8.8 I get this
Non-authoritative answer
We can get out to google from my desktop, so not sure why I can't get a answer when querying against my DNS servers.
When I look at my DNS server properties, I see that there isn't any Forwarders in place nor is there any root hints. Can someone help me figure out what I need to do to ensure my DNS is setup correctly?

Thanks,

nimdatx
Windows Server 2012Windows Server 2008DNS

Avatar of undefined
Last Comment
DrDave242

8/22/2022 - Mon
FOX

Add the dns address(es) of your isp in the forwarders section and recheck
Mohammed Khawaja

Either enable root hints or add a forwarder, those are the two choices you have.
Jaime Campos

ASKER
When it resolves with nslookup epo.mcafee.com 8.8.8.8 and is successful I thought that meant my DNS is resolving external names?
Your help has saved me hundreds of hours of internet surfing.
fblack61
Jaime Campos

ASKER
Why does my internet work for www.google.com still when this isn't resolving? Might be a ridicules question but I must ask.
Mohammed Khawaja

It might be cached, does it work after you reboot or after run ipconfig /flushdns
Jaime Campos

ASKER
When it resolves with nslookup epo.mcafee.com 8.8.8.8

I thought that meant my DNS is resolving external names? Or is this not true?
⚡ FREE TRIAL OFFER
Try out a week of full access for free.
Find out why thousands trust the EE community with their toughest problems.
ASKER CERTIFIED SOLUTION
itsupportgoodwill

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
DrDave242

When it resolves with nslookup epo.mcafee.com 8.8.8.8

I thought that meant my DNS is resolving external names? Or is this not true?
That command is completely bypassing your internal DNS servers and querying 8.8.8.8 directly, so it won't tell you anything about whether your internal servers are working.

EDIT: Looks like itsuppportgoodwill already mentioned this above. Sorry, didn't mean to echo your comment!