Microsoft DNS questions


I have some questions regarding Microsoft DNS Server

From DHCP log:

31,02/27/18,09:59:34,DNS Update Failed,,MyPC1.mydomain.local,,,0,6,,,,,,,,,9002

The issue seems to be related to missing reverse lookup zone for the IP.

If I create the reverse lookup zone (or disable PTR update in DHCP) - it seems to be working.

We have 1000's of IP scopes (Networks) - Is it possible to create the reverse zones automatically?

Another question - why would you use reverse zones in an internal network?

Thanks in advance
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

MAS (MVE)EE Solution Guide - Technical Dept HeadCommented:
HI mikeydk,
I hope you know the function of zones
Forward look up --> Resolve IP from names (FQDN) using A records (You can see A records in Forward lookup zone)
Reverse look up --> Resolve Domain name from IP with the help of ptr records ( Thats why ptr records in Reverse Lookup Zone)
Here is a best practice for your
Reverse lookup is required for servers like Exchange server etc.
If you have multuple forward lookups zones. Just create the reverse lookup zones for the private IPs commonly used in your network.
Example if you have networks 192.168.1.x, 192.168.2.x and 192.168.3.x just create RLZ 192.168.x.x that will cover all the subnets/networks comes under 192.168.x.x.


Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Reverse zones in an internal network are mostly for convenience, for when you have an IP but aren't sure what might be occupying it.  It doesn't break anything to not have them most of the time.

It certainly is possible to script the creation of zones.  You could use dnscmd or PowerShell (if your Windows server version is new enough), or a mix.
It certainly is possible to script the creation of zones.  You could use dnscmd or PowerShell (if your Windows server version is new enough), or a mix.

Just create the zones to cover off all subnets below as MAS EE MVE says.

This will cover off the 3 private IP ranges for internal networks. I don't really see any reason to create thousands of smaller PTR zones on the DNS server vs. 3 large PTR zones. Way more hassle than its worth I think.
Powerful Yet Easy-to-Use Network Monitoring

Identify excessive bandwidth utilization or unexpected application traffic with SolarWinds Bandwidth Analyzer Pack.

mikeydkAuthor Commented:
How do I "move" the old DNS records to a new "big" zone?
I won't re-invent the wheel, but Microsoft have a script to do this written by a PFE, see here. The big caveats of the script are that yo will move from dynamic to static PTR records. For some places this does not matter, for others it does. Personally I would just start over and let the clients rebuild any dynamic PTR records. If there are any particular static PTR records you need created, just bulk create them with the PowerShell DNS cmdlets or the dnscmd command.

One of the things discussed in the comments is preserving the ACL. I'm not sure if they ever got around to working that out, but that would certainly be doable as well which would allow clients that own the existing records to update them (such as DHCP, etc.).
MAS (MVE)EE Solution Guide - Technical Dept HeadCommented:
Re-assigning points
MAS (MVE)EE Solution Guide - Technical Dept HeadCommented:
Enough information to confirm answer.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today

From novice to tech pro — start learning today.