To force using the forwarder only

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

Using a forwarder on the other side of the firewall..but when querying
records in some delegated domains, my server keep trying to bypass the
forwarder and query the authoritative servers directly..of course this not
desirable for the firewall setup. Any suggestions on how to force my server
to use the forwarder only, all the time, and not go directly to any other
authoritative servers at all?
 
AprilZ said:
Using a forwarder on the other side of the firewall..but when querying
records in some delegated domains, my server keep trying to bypass the
forwarder and query the authoritative servers directly..of course this not
desirable for the firewall setup. Any suggestions on how to force my
server
to use the forwarder only, all the time, and not go directly to any other
authoritative servers at all?

If by 'server' you mean your DNS Server (i.e., service) you do this
on the FORWARDER TAB (only) by checking the "Do not use
recursion box" along with setting the forwarder.

IF you mean by 'server' your server computer acting as a DNS CLIENT
then you ensure that it's NIC-->IP Properties has STRICTLY the
INTERNAL DNS listed (not even the forwarder and certainly not any
external DNS server listed there.) Usually itself is the correct entry
(at least as preferred), with another internal DNS (if you have them)
as Alternate.
 
Thanks Herb!

Herb Martin said:
AprilZ said:
Using a forwarder on the other side of the firewall..but when querying
records in some delegated domains, my server keep trying to bypass the
forwarder and query the authoritative servers directly..of course this not
desirable for the firewall setup. Any suggestions on how to force my
server
to use the forwarder only, all the time, and not go directly to any other
authoritative servers at all?

If by 'server' you mean your DNS Server (i.e., service) you do this
on the FORWARDER TAB (only) by checking the "Do not use
recursion box" along with setting the forwarder.

IF you mean by 'server' your server computer acting as a DNS CLIENT
then you ensure that it's NIC-->IP Properties has STRICTLY the
INTERNAL DNS listed (not even the forwarder and certainly not any
external DNS server listed there.) Usually itself is the correct entry
(at least as preferred), with another internal DNS (if you have them)
as Alternate.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
 
Back
Top