J
J T
I have a W2K AD domain with two DC's, each running DNS (standard
primary on one, standard secondary on the other), set up with the
ISP's DNS as forwarders. Both machines appear to be functioning
nominally, DDNS is working, zone updates are working, forwarded
lookups are working and cached properly.
However (you knew this was coming right?), both DC's occasionally try
to go outside the LAN (via our Proxy Server) to resolve their own FQDN
names. The Winsock Proxy log shows that Dfssvc.exe and lsass.exe are
attempting to GHBN through the Proxy.
Any ideas on this?
(And a sanity check on my DNS setup would be welcome also)
Here's the ipconfig /all for both DC's. bkpdc is the primary DNS,
bkhs is secondary. There is no default gateway as internet access is
through MS Proxy 2.0. I'll be switching to ISA soon and set them up
as secure NAT clients.
==============================================================================
==============================================================================
C:\WINNT\Profiles\Administrator>ipconfig /all
Windows 2000 IP Configuration
Host Name . . . . . . . . . . . . : bkpdc
Primary DNS Suffix . . . . . . . : bishopkenny.lan
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : bishopkenny.lan
Ethernet adapter Team #0: Adaptive Load Balancing Mode:
Connection-specific DNS Suffix . : bishopkenny.lan
Description . . . . . . . . . . . : Intel(R) Advanced Network
Services Virtual Adapter
Physical Address. . . . . . . . . : 00-07-E9-06-57-B4
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 10.0.1.1
Subnet Mask . . . . . . . . . . . : 255.0.0.0
Default Gateway . . . . . . . . . :
DNS Servers . . . . . . . . . . . : 10.0.1.1
10.0.1.5
Primary WINS Server . . . . . . . : 10.0.1.11
===============================================================================
===============================================================================
C:\>ipconfig /all
Windows 2000 IP Configuration
Host Name . . . . . . . . . . . . : bkhs
Primary DNS Suffix . . . . . . . : bishopkenny.lan
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : bishopkenny.lan
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . : bishopkenny.lan
Description . . . . . . . . . . . : 3Com EtherLink XL 10/100
PCI TX NIC (3C905B-TX)
Physical Address. . . . . . . . . : 00-10-5A-F4-E6-51
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 10.0.1.5
Subnet Mask . . . . . . . . . . . : 255.0.0.0
Default Gateway . . . . . . . . . :
DNS Servers . . . . . . . . . . . : 10.0.1.1
10.0.1.5
Primary WINS Server . . . . . . . : 10.0.1.11
Secondary WINS Server . . . . . . : 10.0.1.11
=================================================================================
=================================================================================
primary on one, standard secondary on the other), set up with the
ISP's DNS as forwarders. Both machines appear to be functioning
nominally, DDNS is working, zone updates are working, forwarded
lookups are working and cached properly.
However (you knew this was coming right?), both DC's occasionally try
to go outside the LAN (via our Proxy Server) to resolve their own FQDN
names. The Winsock Proxy log shows that Dfssvc.exe and lsass.exe are
attempting to GHBN through the Proxy.
Any ideas on this?
(And a sanity check on my DNS setup would be welcome also)
Here's the ipconfig /all for both DC's. bkpdc is the primary DNS,
bkhs is secondary. There is no default gateway as internet access is
through MS Proxy 2.0. I'll be switching to ISA soon and set them up
as secure NAT clients.
==============================================================================
==============================================================================
C:\WINNT\Profiles\Administrator>ipconfig /all
Windows 2000 IP Configuration
Host Name . . . . . . . . . . . . : bkpdc
Primary DNS Suffix . . . . . . . : bishopkenny.lan
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : bishopkenny.lan
Ethernet adapter Team #0: Adaptive Load Balancing Mode:
Connection-specific DNS Suffix . : bishopkenny.lan
Description . . . . . . . . . . . : Intel(R) Advanced Network
Services Virtual Adapter
Physical Address. . . . . . . . . : 00-07-E9-06-57-B4
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 10.0.1.1
Subnet Mask . . . . . . . . . . . : 255.0.0.0
Default Gateway . . . . . . . . . :
DNS Servers . . . . . . . . . . . : 10.0.1.1
10.0.1.5
Primary WINS Server . . . . . . . : 10.0.1.11
===============================================================================
===============================================================================
C:\>ipconfig /all
Windows 2000 IP Configuration
Host Name . . . . . . . . . . . . : bkhs
Primary DNS Suffix . . . . . . . : bishopkenny.lan
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : bishopkenny.lan
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . : bishopkenny.lan
Description . . . . . . . . . . . : 3Com EtherLink XL 10/100
PCI TX NIC (3C905B-TX)
Physical Address. . . . . . . . . : 00-10-5A-F4-E6-51
DHCP Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 10.0.1.5
Subnet Mask . . . . . . . . . . . : 255.0.0.0
Default Gateway . . . . . . . . . :
DNS Servers . . . . . . . . . . . : 10.0.1.1
10.0.1.5
Primary WINS Server . . . . . . . : 10.0.1.11
Secondary WINS Server . . . . . . : 10.0.1.11
=================================================================================
=================================================================================