zone disapearing

G

Guest

Here is my network ;

site1;
dc1 (2000 server domain controller)
srv1 (2003 member server)
site2;
dc2 (2000 server domain controller)
Network is active directory integrated mode

To start, I've red the other post regarding zones disapearing and think it's
not related to my case.

At first, dc1 and dc2 was replicating my only dns zone with active directory
(ad integrated zone). After having replication problems with both dcs (had to
rebuild frs), I started to see that our AD zone was no longer visible in
either of the dc's using the dns management console about 1 week later. Redid
the zones, same problem 1 week later.

Converted the zone to primary (dc1) and secondary zone (dc2) without using
AD of course. Had the same problem 1 week later (approximately). It is not
caused by a reboot. Even though the dns management console showed nothing
(except the reverse lookup zone which never dissapears and works fine from
the beginning), the zone.dns in the dns folder was there. So I re-import the
zone, wait 1 week, and the zone dissapears (.dns file still there).

Step 3 ;

Installed dns service on the 2003 member server and configured it as the
primary. Configured both dc's as secondary. After 1 week, the zone is still
appearing ok on the 2003 but the secondary zones are no longer visible.
Re-did the add secondary zone on both dc's. Have to do this every week.

Anyone has an idea why?
 
A

Ace Fekay [MVP]

In
Sleb said:
Here is my network ;

site1;
dc1 (2000 server domain controller)
srv1 (2003 member server)
site2;
dc2 (2000 server domain controller)
Network is active directory integrated mode

To start, I've red the other post regarding zones disapearing and
think it's not related to my case.

At first, dc1 and dc2 was replicating my only dns zone with active
directory (ad integrated zone). After having replication problems
with both dcs (had to rebuild frs), I started to see that our AD zone
was no longer visible in either of the dc's using the dns management
console about 1 week later. Redid the zones, same problem 1 week
later.

Converted the zone to primary (dc1) and secondary zone (dc2) without
using AD of course. Had the same problem 1 week later
(approximately). It is not caused by a reboot. Even though the dns
management console showed nothing (except the reverse lookup zone
which never dissapears and works fine from the beginning), the
zone.dns in the dns folder was there. So I re-import the zone, wait 1
week, and the zone dissapears (.dns file still there).

Step 3 ;

Installed dns service on the 2003 member server and configured it as
the primary. Configured both dc's as secondary. After 1 week, the
zone is still appearing ok on the 2003 but the secondary zones are no
longer visible. Re-did the add secondary zone on both dc's. Have to
do this every week.

Anyone has an idea why?

I'm not sure what you read, but simply stated, if you make a zone AD
Integrated on one DC/DNS , and attempt to make it a secondary on another
DC/DNS in the same domain, then AD will look at the secondary as a dupe and
remove it. Period.

If you want, just make sure the zone exists on one of your machines as AD
Integrated. Install DNS on the other machine and sit back and wait
patiently. If replication is working properly, the zone will automatically
appear.

Be careful with Win2000 and 2003 in a mixed environment. If you mix the
replication scope types, then that's another issue. If you create the AD
Integrated zone on the 2003 domain controller, just select the bottom
replication scope type (Win2000 compatible). If it is not a DC, then you can
make it a secondary, but if you are not ready to upgrade your domain yet to
2003, I would just stick wtih the 2000 DC/DNS servers for now until you are
ready to make that move.

--
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

If you are having difficulty in reading or finding responses to your post,
instead of the website you are using, if I may suggest to use OEx (Outlook
Express or any other newsreader of your choosing), and configure a newsgroup
account, pointing to news.microsoft.com. This is a direct link into the
Microsoft Public Newsgroups, and it is FREE and DOES NOT require a Usenet
account with your ISP. With OEx, you can easily find your post, track
threads, cross-post, and sort by date, poster's name, watched threads or
subject.

Not sure how? It's easy:
How to Configure OEx for Internet News
http://support.microsoft.com/?id=171164

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft MVP - Windows Server Directory Services
Microsoft Certified Trainer
Assimilation Imminent. Resistance is Futile.
Infinite Diversities in Infinite Combinations.
=================================
 
G

Guest

Thanks for your response. Maybe I did not explain my problem well.

At first, dns was integrated and replicated on the other dc being in
multi-master mode. So my 2 dc's we're dns servers replicating through AD (no
primary, no secondary since I'm in AD integrated mode). After a while, the
zones disspeared in dnsmgmt.msc from both servers. Since one of them deleted
the zone, it replicated to the other.

Secondly, I've converted the zones to primary and secondary (not ad
integrated anymore). One of the dc was the primary and the other the
secondary using .dns files. Same problem after a while.

Third attempt, used my 2003 member server as a primary (.dns file) and both
dc's as secondary (.dns file). After a while, the dns zone is still in the
2003 but no longer in both dc's though the .dns files are still where they
should be.

I've configured a lot of dns services in multiple networks so I know what
I'm doing. Since english is not my primary language, sometimes I have a hard
time explaining myself. I'm pretty sure it's not a configuration issue. It's
a simple network, one domain, one dns zone.
 
K

Kevin D. Goodknecht Sr. [MVP]

Sleb said:
Here is my network ;

site1;
dc1 (2000 server domain controller)
srv1 (2003 member server)
site2;
dc2 (2000 server domain controller)
Network is active directory integrated mode

To start, I've red the other post regarding zones disapearing and
think it's not related to my case.

At first, dc1 and dc2 was replicating my only dns zone with active
directory (ad integrated zone). After having replication problems
with both dcs (had to rebuild frs), I started to see that our AD zone
was no longer visible in either of the dc's using the dns management
console about 1 week later. Redid the zones, same problem 1 week
later.

Converted the zone to primary (dc1) and secondary zone (dc2) without
using AD of course. Had the same problem 1 week later
(approximately). It is not caused by a reboot. Even though the dns
management console showed nothing (except the reverse lookup zone
which never dissapears and works fine from the beginning), the
zone.dns in the dns folder was there. So I re-import the zone, wait 1
week, and the zone dissapears (.dns file still there).

Step 3 ;

Installed dns service on the 2003 member server and configured it as
the primary. Configured both dc's as secondary. After 1 week, the
zone is still appearing ok on the 2003 but the secondary zones are no
longer visible. Re-did the add secondary zone on both dc's. Have to
do this every week.

Anyone has an idea why?

Use ADU&C in Advanced View, expand the System Container, open the
MicrosoftDNS container, delete any objects for the zone name, (connect to
both DCs and make sure the object is deleted from both).
After doing this, delete the secondary zone on DC2, then on DC1 first change
the Secondary zone to a primary, then change the primary to AD integrated,
(you cannot change a secondary zone directly to AD integrated) wait to see
if the zone replicates to the other DC2. Don't manually add the zone on DC2,
this will overwrite the zone you added on DC1.
 
N

news.microsoft.com

Ace,

I just want to thank you again for the post regarding using outlook express
instead of the web site. It's much faster and easier this way. It's funny
how even after multiple years in IT you can still learn some pretty basic
stuff.

Regards

"Ace Fekay [MVP]"
 
A

Ace Fekay [MVP]

In
news.microsoft.com said:
Ace,

I just want to thank you again for the post regarding using outlook
express instead of the web site. It's much faster and easier this
way. It's funny how even after multiple years in IT you can still
learn some pretty basic stuff.

Regards

Glad to know my signature is helping people. Some other folks, even people I
know, have complained my signature is too long because too long of a
signature is not Usenet etiquette and that I should put this sort of help
information out on a website and just post a link to it, but have found that
not many people will click on it.

Glad to know I was able to help at least one person out there.

Ace
 
A

Ace Fekay [MVP]

In
news.microsoft.com said:
I will try this and keep posted if it worked or not.

Thanks

Great suggestions from Kevin. I hope they help and I'm curious if it takes
care of the issue.

:)
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top