DNS Configuration Question

G

Guest

Guest
Archived from groups: microsoft.public.win2000.dns (More info?)

Hi, I would like to know if it is possible to set up a dns record that will
forward my wan ip address to an internal ip. I have a W2k server with AD. The
problem I am having is this. I have a Cayman 3546 router that routes all WAN
http traffic to an internal web server using a pinhole. Everything from the
outside works fine but if we try to access the website internally via the LAN
it will not work. I did some research and apparently this has to do with the
fact that the Cayman doesnt loopback the from the WAN ip. I was hoping I
could set a record in the DNS server to forward any request to the WAN ip
from within the LAN to the webserver I could then access the site from the
LAN as well. Is this possible. I have tried to create different DNS records
without any luck.
Thank you.
 
G

Guest

Guest
Archived from groups: microsoft.public.win2000.dns (More info?)

"Patrick McCann" <PatrickMcCann@discussions.microsoft.com> wrote in message
news:6B642BC0-64C9-42EB-BA61-6914E99E726B@microsoft.com...
> Hi, I would like to know if it is possible to set up a dns record that
will
> forward my wan ip address to an internal ip.

No, not as you have stated it -- that is not a function of
DNS but rather of the NAT-routers that translate between
their external addresses and your internal addresses.

For external clients:
The DNS on the outside will just point to the NAT -- the
NAT will then map to the internal server(s).

For internal clients:
A separate internal DNS will point to the internal addresses.

> I have a W2k server with AD. The
> problem I am having is this. I have a Cayman 3546 router that routes all
WAN
> http traffic to an internal web server using a pinhole.

Presumably it is mapping external traffic on port 80 to an
internal address on port 80 (or a substitute port.)

> Everything from the
> outside works fine but if we try to access the website internally via the
LAN
> it will not work.

Do you have internal DNS server(s)?

> I did some research and apparently this has to do with the
> fact that the Cayman doesn't loopback the from the WAN ip. I was hoping I
> could set a record in the DNS server to forward any request to the WAN ip
> from within the LAN to the webserver I could then access the site from the
> LAN as well. Is this possible. I have tried to create different DNS
records
> without any luck.

All internal clients will need to use strictly the internal DNS
server.

There really is not internal "forwarding" going on -- the forwarding
will be from the internal DNS server to the external DNS (firewall
or ISP) where the Internet addresses will be resolved, since the
internal clients will probably want to do that too and they MUST NOT
use the external DNS servers directly.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
 
G

Guest

Guest
Archived from groups: microsoft.public.win2000.dns (More info?)

Patrick McCann wrote:
> Hi, I would like to know if it is possible to set up a dns record
> that will forward my wan ip address to an internal ip. I have a W2k
> server with AD. The problem I am having is this. I have a Cayman 3546
> router that routes all WAN http traffic to an internal web server
> using a pinhole. Everything from the outside works fine but if we try
> to access the website internally via the LAN it will not work. I did
> some research and apparently this has to do with the fact that the
> Cayman doesnt loopback the from the WAN ip. I was hoping I could set
> a record in the DNS server to forward any request to the WAN ip from
> within the LAN to the webserver I could then access the site from the
> LAN as well. Is this possible. I have tried to create different DNS
> records without any luck.
> Thank you.

Create a new forward lookup zone using the website name, e.g.
www.mydomain.com then in that zone create a new host, leave the name field
blank and give it the IP of the internal web server. This wa only
www.mydomain.com will resolve to an internal address. Other names in
mydomain.com will be forwarded.

--?
Best regards,
Kevin D4 Dad Goodknecht Sr. [MVP]
Hope This Helps
===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================