Help with configuring DNS behind the firewall
 




IT Certification FAQ

 
|
Home
|
Microsoft
|
CISCO
|
CompTIA
|
Exam/Study FAQ
|
Employment FAQ
| Links  | Forums  |
Book Reviews


FAQFAQ  SearchSearch  MemberlistMemberlist  UsergroupsUsergroups  RegisterRegister  ProfileProfile  Log in to check your private messagesPrivate messages  Log inLog in

Help with configuring DNS behind the firewall

 
Post new topic   Reply to topic    Forum Index -> microsoft.public.windows.server.active_directory
Author Message
Edward
Guest





PostPosted: Mon Aug 06, 2007 2:18 am    Post subject: Help with configuring DNS behind the firewall Reply with quote

I have two server behind the firewall, both running windows server 2003.

server1 192.168.0.1 domain controller & DNS server (configured as
mydomain.com)
server2 192.168.0.2 exchange mail server

Am I correct to say that I need Host A record as well as Mx record
configured in order for the mail server to work?
If so, where should I add the record to?

so far, I have two entries in my forward looking zone which I am not sure if
they should be there:
_msdcs.mydomain.com
mydomain.com

I seems to have read somewhere that one should not add anything with
"mydomain.com" in the forward looking zone when the server has an internal
IP. Is this correct?

I am also getting the Event ID 4015 in the event log which says:

============================================================
Event Type: Error
Event Source: DNS
Event Category: None
Event ID: 4015
Date: 5/08/2007
Time: 10:05:13
User: N/A
Computer: DC
Description:
The DNS server has encountered a critical error from the Active Directory.
Check that the Active Directory is functioning properly. The extended error
debug information (which may be empty) is "". The event data contains the
error.
============================================================

Can anyone suggest where I have gone wrong in the DNS or AD configuration?

I went through quite a few technet articles but so far has got nowhere.

Any suggestion?

Thanks in advance.

---
Ed
Back to top
Kevin D. Goodknecht Sr. [
Guest





PostPosted: Mon Aug 06, 2007 2:18 am    Post subject: Re: Help with configuring DNS behind the firewall Reply with quote

Read inline please.

In news:%23zviY761HHA.4680@TK2MSFTNGP03.phx.gbl,
Edward <hsmmsc@hotmail.com> typed:
Quote:
I have two server behind the firewall, both running windows server
2003.

server1 192.168.0.1 domain controller & DNS server
(configured as mydomain.com)
server2 192.168.0.2 exchange mail server

Am I correct to say that I need Host A record as well as Mx record
configured in order for the mail server to work?
Yes, but you don't need the MX record internally.


Quote:
If so, where should I add the record to?
In the Public DNS for the email domain hosted by your Exchange server.

Usually this zone is hosted by the Domain Registrar.

Quote:

so far, I have two entries in my forward looking zone which I am not
sure if they should be there:
_msdcs.mydomain.com
mydomain.com

I seems to have read somewhere that one should not add anything with
"mydomain.com" in the forward looking zone when the server has an
internal IP. Is this correct?

I am also getting the Event ID 4015 in the event log which says:

============================================================
Event Type: Error
Event Source: DNS
Event Category: None
Event ID: 4015
Date: 5/08/2007
Time: 10:05:13
User: N/A
Computer: DC
Description:
The DNS server has encountered a critical error from the Active
Directory. Check that the Active Directory is functioning properly.
The extended error debug information (which may be empty) is "". The
event data contains the error.
============================================================

You usually only see these events if you have two DCs and they point only to
themselves for DNS. If you have two DCs, point each to the other for
Preferred DNS and itself for Alternate DNS.



--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps

===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
http://message.wftx.us/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================
Back to top
Display posts from previous:   
Post new topic   Reply to topic    Forum Index -> microsoft.public.windows.server.active_directory All times are GMT
Page 1 of 1

 

Copyright © 2002-2006 Web-S-Sense Pty. Ltd. All rights reserved.

Powered by phpBB
Advertising | Policies/Disclaimers | Contact us | Link to us


Featured Sites: Free Antivirus and Antispyware Info | Free PC Support | MCSE Directory