Configuring DNS for LAN Internet Access

  • Thread starter Thread starter Rich
  • Start date Start date
R

Rich

Hello all,

I am trying to get everything configured on my home network now that I have
DSL. My setup is as follows:

1 Win2K Server: AD/DNS/DHCP/WINS. This is also my LAN file server. This
is the domain controller.

2. A couple WINXP clients. DHCP clients. both are domain members.

3. A 2nd Win2K server configured with RRAS, 2 NICs. This server has the
external NIC connected directly to the DSL router. This NIC gets an IP
config from the DSL router. 192.168.1.z. The internal NIC has a static IP
address. Internal network is 200.200.200.0. I can obviously change this if
something else is better.

4. The DSL router is always 192.168.1.254. Config'ed via browser. Has
firewall services.

I want all my network clients to route through RRAS server (into the
internal NIC) then out the external NIC directly to the DSL router, then
directly to the Internet.

KB article 260362 (Q260362) says "External DNS queries to the Internet do
not work if a root zone entry exists on the DNS Server. To resolve this
issue, remove the root zone entry. I have removed this entry. Now, how do
a set DSN to forward queries to the IP of the DSL router? Please, point me
to step-by-step instructions.

TIA,
Rich
 
In
Rich said:
Hello all,

I am trying to get everything configured on my home
network now that I have DSL. My setup is as follows:

1 Win2K Server: AD/DNS/DHCP/WINS. This is also my LAN
file server. This is the domain controller.

2. A couple WINXP clients. DHCP clients. both are
domain members.

3. A 2nd Win2K server configured with RRAS, 2 NICs.
This server has the external NIC connected directly to
the DSL router. This NIC gets an IP config from the DSL
router. 192.168.1.z. The internal NIC has a static IP
address. Internal network is 200.200.200.0. I can
obviously change this if something else is better.

You will need to the IP addresses are public and belong to someone else. If
the router is 192.168.1.x then you can use 192.168.0.x.
http://www.dnsstuff.com/tools/whois.ch?ip=200.200.200.0

If you really want to lock this down install ISA on the DC and it will make
it next to impossible to hack in. If a hacker gets past the router they will
hit ISA.
 
Back
Top