A
adam
As my hair grays and falls out I can't get rid of this
problem...
I am setting up a new private forest with no Internet
connection allowed.
On "ROOT1", I fill in TCP/IP settings: 1.1.1.11 /
255.255.255.0 /1.1.1.11 with Primary DNS Server 1.1.1.11.
I reboot and add the DNS Service.
I created my Forward Lookup Zones ". " (so this is the
Root Server for the private Forest) and mil and my 1.1.1.X
Reverse Lookup Zone.
Then I set "Allow Dynamic Updates to YES" on all zones.
I reboot and verify the DNS settings are good.
I DCPromo "ROOT1", creating the new forest "mil" and
rebooted.
Then I set "Active Directory-Integrated" on all zones.
Testing DNS, nslookup on mil gets no response but mil.
does?
ROOT1's name under My Computer, Properties (root1.mil)
versus in DNS (root1.mil.) are different? Note that
the "." at the end on mil is the difference on the DNS
entry.
This forest will never have Internet access and the root
hints entries are not needed. I thought you must have
the "." zone to designate this as the root server.
Eventually there will be 3 root servers in the forest so
the "DNS Island Affect" can't happen.
Please tell me what I am doing wrong!?!
problem...
I am setting up a new private forest with no Internet
connection allowed.
On "ROOT1", I fill in TCP/IP settings: 1.1.1.11 /
255.255.255.0 /1.1.1.11 with Primary DNS Server 1.1.1.11.
I reboot and add the DNS Service.
I created my Forward Lookup Zones ". " (so this is the
Root Server for the private Forest) and mil and my 1.1.1.X
Reverse Lookup Zone.
Then I set "Allow Dynamic Updates to YES" on all zones.
I reboot and verify the DNS settings are good.
I DCPromo "ROOT1", creating the new forest "mil" and
rebooted.
Then I set "Active Directory-Integrated" on all zones.
Testing DNS, nslookup on mil gets no response but mil.
does?
ROOT1's name under My Computer, Properties (root1.mil)
versus in DNS (root1.mil.) are different? Note that
the "." at the end on mil is the difference on the DNS
entry.
This forest will never have Internet access and the root
hints entries are not needed. I thought you must have
the "." zone to designate this as the root server.
Eventually there will be 3 root servers in the forest so
the "DNS Island Affect" can't happen.
Please tell me what I am doing wrong!?!