DNS Forwarding Not Working

G

Guest

Any help would be great.

I have a Windows 2000 Server setup as a domain controller. DHCP and DNS
services are installed. I can only go on the Internet if I install the ISP's
dns servers in the TCPIP configuration.

The DNS forwarders are set up properly and the simple DNS query passes fine.
Any ideas why the forwarding does not work?
 
G

Guest

Can I uninstall the DNS service and then reinstall it? Would that help?

Would it help
 
A

Ace Fekay [MVP]

In
Ken278 said:
Can I uninstall the DNS service and then reinstall it? Would that
help?

Would it help

No, installing and uninstalling will not work. It's more than likely a
forwarder issue. Do you have 'allow recursion' under the forwarding tab
enabled? That will use the Roots if the forwarders time out or do not
support recursion.

NEVER USE YOUR ISP's DNS addresses on any internal AD member (ALL machines).
Only use the internal DNS.

Do the Root Hints exist under the Root Hints tab?

If you are using forwarders, and they appear not to work, it maybe due to a
few different reasons:
1. Firewall not allowing UDP and TCP 53 to the DNS server.
2. Proxy or ISA server not allowing the same traffic in #1.
3. The Forwarding DNS addresses do not support recursion. That can be tested
using nslookup -d2. You can also simply test it by using 4.2.2.2 as a
forwarder (which works).

Post the fowrwarder's IP if not sure how to test it.

Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

If you are having difficulty in reading or finding responses to your post,
instead of the website you are using, if I may suggest to use OEx (Outlook
Express or any other newsreader of your choosing), and configure a newsgroup
account, pointing to news.microsoft.com. This is a direct link into the
Microsoft Public Newsgroups, and it is FREE and DOES NOT require a Usenet
account with your ISP. With OEx, you can easily find your post, track
threads, cross-post, and sort by date, poster's name, watched threads or
subject.

Not sure how? It's easy:
How to Configure OEx for Internet News
http://support.microsoft.com/?id=171164

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft MVP - Windows Server Directory Services
Microsoft Certified Trainer
Assimilation Imminent. Resistance is Futile.
Infinite Diversities in Infinite Combinations.
=================================
 
G

Guest

Ace Fekay said:
In

No, installing and uninstalling will not work. It's more than likely a
forwarder issue. Do you have 'allow recursion' under the forwarding tab
enabled? That will use the Roots if the forwarders time out or do not
support recursion.

NEVER USE YOUR ISP's DNS addresses on any internal AD member (ALL machines).
Only use the internal DNS.

Do the Root Hints exist under the Root Hints tab?

If you are using forwarders, and they appear not to work, it maybe due to a
few different reasons:
1. Firewall not allowing UDP and TCP 53 to the DNS server.
2. Proxy or ISA server not allowing the same traffic in #1.
3. The Forwarding DNS addresses do not support recursion. That can be tested
using nslookup -d2. You can also simply test it by using 4.2.2.2 as a
forwarder (which works).

Post the fowrwarder's IP if not sure how to test it.

Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

If you are having difficulty in reading or finding responses to your post,
instead of the website you are using, if I may suggest to use OEx (Outlook
Express or any other newsreader of your choosing), and configure a newsgroup
account, pointing to news.microsoft.com. This is a direct link into the
Microsoft Public Newsgroups, and it is FREE and DOES NOT require a Usenet
account with your ISP. With OEx, you can easily find your post, track
threads, cross-post, and sort by date, poster's name, watched threads or
subject.

Not sure how? It's easy:
How to Configure OEx for Internet News
http://support.microsoft.com/?id=171164

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft MVP - Windows Server Directory Services
Microsoft Certified Trainer
Assimilation Imminent. Resistance is Futile.
Infinite Diversities in Infinite Combinations.
=================================


Thanks for the info Ace,

Time was running out and I did not have any responses so I did remove and
reinstall the DNS service. Before removing I backed up the
C:\Windows\system32\dns directory. Then I erased the Cache file and backup
directory.

This did work and I was able to browse the Internet with the forwarders
entered as before. Something was corrupt somewhere but is working now.

Thanks for your input.
Ken
 
A

Ace Fekay [MVP]

In
Ken278 said:
Thanks for the info Ace,

Time was running out and I did not have any responses so I did remove
and reinstall the DNS service. Before removing I backed up the
C:\Windows\system32\dns directory. Then I erased the Cache file and
backup directory.

This did work and I was able to browse the Internet with the
forwarders entered as before. Something was corrupt somewhere but is
working now.

Thanks for your input.
Ken

No prob Ken. At least I'm glad you got it working one way or another.
:)

Ace
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top