One site won't resolve

  • Thread starter Thread starter Bob Showalter
  • Start date Start date
B

Bob Showalter

This is strange. I know I must have blown something up in
my DNS configuration, but for the life of me can't figure
out WHAT!

I have one web site that will only resolve some of the
time, and when it does, after moving around on it for 2 or
3 pages, it goes away. It is then gone for anywhere from
1 hr - 2 days. If I play around w/ the DNS configuration
on my server it might come up again, but not to stay.

ALL OTHER SITES work just fine. It is only this one that
I have problems with. What in the world could it be.
HELP ME PLEASE!!!! I'm dying here.

Thanks, Bob (or should that be BOOB)

It is a single W2k server. Has a fixed IP address, subnet
mask, and gateway (which is the DSL router 192.169.0.1).
It's only DNS server is itself (192.168.0.2).

In the DNS console, the server name is the only node under
DNS. Under Forward Lookup Zones I have the local domain
(dabellc.com) Under Reverse Lookup Zones is 0.168.192.in-
addr.arpa, 0.in-addr.arpa, 127.in-addr.arpa, and 255l.in-
addr.arpa. I don't know where these came from because I
don't remember putting them there.

Under the properties for the server it is selected to
Listen on All IP addresses. There are 2 forwarders, the
DNS Servers specified by our ISP. Enable forwarders is
checked. Do not use recursion is not checked. Advanced
tab is set to the defaults (Reset to Default button).
There are 13 root-hints shown.

Again, Thanks
 
Add this to what is below:
I ran netdiag /fix (just because I saw that in the
response to another DNS question). Got a slew of errors
like:

DNS test .....: Failed
[FATAL] Failed to fix: DC DNS entry
_ldap._tcp.dabellc.com. re-registration on DNS
server /192.168.0.2 failed.

A whole bunch more like it

Lastly:
[FATAL] Fix Failed: netdiag failed to re-register missing
DNS entries for this DC on DNS server '192.168.0.2'.
[FATAL] No DNS servers have the DNS records for this DC
registered.

HELP!!!!!
 
In
Bob Showalter said:
Add this to what is below:
I ran netdiag /fix (just because I saw that in the
response to another DNS question). Got a slew of errors
like:
<snip>

Lots of errors! Ouch.

What Event ID # errors are you getting?
I assume updates on the zone are allowed?
Anything installed/changed lately?



--
Regards,
Ace

Please direct all replies ONLY to the Microsoft public newsgroups
so all can benefit.

This posting is provided "AS-IS" with no warranties or guarantees
and confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft Windows MVP - Windows Server - Directory Services

Security Is Like An Onion, It Has Layers
HAM AND EGGS: A day's work for a chicken;
A lifetime commitment for a pig.
 
Things (the one site) are not working this morning. There
are not event ID # posted for DSN. There is one that is
kind of strange in the System Log: Event ID: 8003. Says
that another computer on the network (not a server) has
announced that it believes it is the master browser for
the domain. How can that be from a workstation (Windows
XP Pro)??? It seems to get that about once every hour
looking at things.

I assume that updates on the zone are allowed also, though
being kind of new at this, I don't know where to look for
sure. I don't see anything in the DNS mmc to allow or
disallow updates.

Thanks for responding. I hope you can give some other
advice.

Bob
 
I removed and reinstalled DNS according to instructions in
a KB article referenced in a response to another question.

Now when I run netdiag /fix, everything passes, including
DNS. But I still can't get to this one site. I got to
this site. I got to some other sites. But I still can't
get to the site attws.com. When I go to it somewhere
else, or from a dialup connection at home, there are not
problems so it is obviously something on my end at the
server.

WHAT!!!!!
HELPPPPPP
 
In
I removed and reinstalled DNS according to instructions in
a KB article referenced in a response to another question.

Now when I run netdiag /fix, everything passes, including
DNS. But I still can't get to this one site. I got to
this site. I got to some other sites. But I still can't
get to the site attws.com. When I go to it somewhere
else, or from a dialup connection at home, there are not
problems so it is obviously something on my end at the
server.

WHAT!!!!!
HELPPPPPP

Relax, please...

Tell me, can you ping www.attws.com?
Can you use nslookup to resolve attws.com?
Can you use nslookup to resolve www.attws.com?
Btw - that actually gets redirected to http://www.attwireless.com/
Do you have a firewall or something else running?


--
Regards,
Ace

Please direct all replies ONLY to the Microsoft public newsgroups
so all can benefit.

This posting is provided "AS-IS" with no warranties or guarantees
and confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft Windows MVP - Windows Server - Directory Services

Security Is Like An Onion, It Has Layers
HAM AND EGGS: A day's work for a chicken;
A lifetime commitment for a pig.
 
Thanks for your continued support.

I can ping www.attws.com
I am not really familiar w/ nslookup. I took a look at
the help for it. The first thing I did was type just
nslookup. The response was:
***Can't find server name for address 192.168.0.2: Non-
existant domain
*** Default servers are not available
Default Server: Unknown
Address: 192.168.0.2

At that point it looked like there might be problems so I
went no further.

What would be the syntax to see if nslookup can resolve
the site.

Again, Thanks
 
In
Bob Showalter said:
Thanks for your continued support.

I can ping www.attws.com
I am not really familiar w/ nslookup. I took a look at
the help for it. The first thing I did was type just
nslookup. The response was:
***Can't find server name for address 192.168.0.2: Non-
existant domain
*** Default servers are not available
Default Server: Unknown
Address: 192.168.0.2

At that point it looked like there might be problems so I
went no further.

This is not a problem, it is a message from Nslookup saying it can't find a
PTR record for 192.168.0.2. Hence the "Can't find "server name" for address
"192.168.0.2"
Ignore the message or create a reverse lookup zone and PTR record for the IP
address. This does not affect nslookup's ability to resolve names, but I
understand it does sound spooky to you. Don't loose sleep over it.

Try this command to see if it is an MTU issue with you trying to connect to
www.attws.com

ping www.attws.com -f -l 1472

If it returns the ping MTU is OK if it returns a "Packet needs to be
fragmented but DF set" reduce the 1472 until it either returns the ping or
times out. If it times out write the number down for reference, and continue
reducing the packet size until it returns the ping, that is the MTU you can
use to www.attws.com and you should set that as the MTU of your machine in
the registry and reboot.

There is a tool called DrTCP that makes it easy to set your MTU you can
download it from here http://www.dslreports.com/drtcp and use it if you want
to make it easy.
 
Thanks for the reply Kevin,

The ping was returned; minimum time 141ms maximum time
156ms

Please, what next. I'm not loosing sleep. My beautiful
wife just wants to get on and pay her bill.
 
In (e-mail address removed) <[email protected]>
posted a question
Then Kevin replied below:
Thanks for the reply Kevin,

The ping was returned; minimum time 141ms maximum time
156ms

What is the IP it returns?

Did you clear your browser cache?
Please, what next. I'm not loosing sleep. My beautiful
wife just wants to get on and pay her bill.

Ohhh, I see this site is a redirection to a secure site where she logs on.
This is probably your browser settings you might try adding
http://www.attws.com and https://www.attwireless.com to your trusted sites.
What security software have you added lately?
Anything that might stop browser redirects?
Check the Advanced tab for the SSL settings.
 
In
Bob Showalter said:
The ip it returns is 63.99.244.90

I did clear the browser cache

I added https://www.attws.com and
https://www.attwireless.com to the trusted sites and it
looks like it works.

I will try it for a few days and see if it hangs around.
In the past when I have been able to get it to work it
will stop after a while.

Good deal, my best guess it was the redirect it didn't like. There is a
setting in the security tab for disabling browser redirects, good chance
that's it, if adding it to trusted sites did it.
 
Well, it worked for a day, and now it can't find it
again. It is still listed as a trusted site. No other
changes have been made. There are no DNS errors showing
up in the Event Viewer. I still get a ping back from
www.attws.com.

This is really frustrating.

Thanks so much for any advice.

Bob Showalter
 
Kevin,

Thanks for the continued efforts.

When I got that redirect Sat night I tried it and it
worked.

This morning I tried it and it did not work.

All other sites I ever go to continue to work just fine.

Again, Thanks.
 
In
Bob Showalter said:
Kevin,

Thanks for the continued efforts.

When I got that redirect Sat night I tried it and it
worked.

This morning I tried it and it did not work.

All other sites I ever go to continue to work just fine.

Again, Thanks.
Bob, looking thru this thread, I don't think we asked what kind of
connection you have. Is it DSL, ADSL, Cable? If ADSL, do you have the
WinPoet software installed? If using a DSL./Cable router, is there a time
out for your connection? This may help us a little more...

Ace
 
Ace,
I am using DSL. The modem/router is an Actiontec DSL
Gateway. The only time out I am aware of is the one for
the forwarders.

Here is some peculiarity about the behavior. It is like I
am playing a game of hide-and-seek with them. My router
was set up for No redirection. I turned redirection on
and was able to get to the site for awhile. But it
finally stopped resolving after about 3 or 4 pages on the
site. Then I couldn't get bact to it again.

Then I looked at the DNS numbers assigned to my router by
the ISP and they were different than they were last week;
like they had changed their DNS servers. So I put those
numbers in as the top 2 forwarders on my server. Again, I
could get to the site. But like always after going to a
few different pages, I can go no further. I always go to
different places on the site to make sure that it is not
just a broken link. After about 3 pages, I am done and
then can't get back to the home page I started at. I can
go back via the cache, but as soon as I hit refresh; it is
gone.

Thanks guys; I appreciate your persistance.

Bob Showalter
 
In Bob Showalter <[email protected]> either posted for help,
or replied to my previous response, or just wanted to comment or offer an
addition, whichever the reason, spurred me to reply below
Ace,
I am using DSL. The modem/router is an Actiontec DSL
Gateway. The only time out I am aware of is the one for
the forwarders.

Here is some peculiarity about the behavior. It is like I
am playing a game of hide-and-seek with them. My router
was set up for No redirection. I turned redirection on
and was able to get to the site for awhile. But it
finally stopped resolving after about 3 or 4 pages on the
site. Then I couldn't get bact to it again.

Then I looked at the DNS numbers assigned to my router by
the ISP and they were different than they were last week;
like they had changed their DNS servers. So I put those
numbers in as the top 2 forwarders on my server. Again, I
could get to the site. But like always after going to a
few different pages, I can go no further. I always go to
different places on the site to make sure that it is not
just a broken link. After about 3 pages, I am done and
then can't get back to the home page I started at. I can
go back via the cache, but as soon as I hit refresh; it is
gone.

Thanks guys; I appreciate your persistance.

Bob Showalter

Strange issue. I didn;t know you can set 'No redirection' in a router,
unless its also running a Proxy service? Maybe that setting is for something
else? Is this an SDSL line or ADSL line? The Actiontec makes me think its
SDSL. Is it performing NAT? Maybe change the forwarder to: 4.2.2.2. See if
that helps.



--
Regards,
Ace

Please direct all replies ONLY to the Microsoft public newsgroups
so all can benefit.

This posting is provided "AS-IS" with no warranties or guarantees
and confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft Windows MVP - Windows Server - Directory Services

Security Is Like An Onion, It Has Layers
HAM AND EGGS: A day's work for a chicken;
A lifetime commitment for a pig.
 
The router is performing NAT. It must be SDSL because it
is not ADSL.

I put in a forwarder for 4.2.2.2 as you suggested. I
found the site, went to 3 different pages on the site.
When I tried to go to the 4th page, it failed. When I
tried to refresh the previous pages it could not.

I feel like I am going down for the 3rd time on this one.
It is becoming an obsession.

Thanks for continuing to try.

Bob Showalter
 
In Bob Showalter <[email protected]> either posted for help,
or replied to my previous response, or just wanted to comment or offer an
addition, whichever the reason, spurred me to reply below
The router is performing NAT. It must be SDSL because it
is not ADSL.

I put in a forwarder for 4.2.2.2 as you suggested. I
found the site, went to 3 different pages on the site.
When I tried to go to the 4th page, it failed. When I
tried to refresh the previous pages it could not.

I feel like I am going down for the 3rd time on this one.
It is becoming an obsession.

Thanks for continuing to try.

Bob Showalter

Yea, we'll keep trying!!

What are the pages you are going to? Can you post each URL please?
 
Back
Top