Archived from groups: microsoft.public.win2000.dns (
More info?)
In news:88F8B67A-6421-4813-8C54-B53A1E51E5AA@microsoft.com,
Audun Wangen <AudunWangen@discussions.microsoft.com> made this post, which I
then commented about below:
> "Ace Fekay [MVP]" wrote:
>> I see. It's either looks like you are mixing private/public IPs, or
>> something with your zone transfer settings. I read back through the
>> thread, and I didn't see where you listed what the zone transfer
>> setting was, just that you 'checked' it.
>
> Ok, I'll give you the details (zone names and servernames are
> changed, but you get the idea):
> Zone: domain.com
> Type: Primary
> Location: DNS1
> Allow dynamic updates: No
> SOA, Primary server: DNS1
> Refresh interval: 15 mins
> Retry interval: 10 mins
> Expires after: 1 days
> Name servers: DNS1 and DNS2
> WINS: No
> Zone Tranfer:
> Allow zone transfers: Yes
> To any server
>
> Also tried "Only the servers listed in the Name Servers tab" and
> tried to specify the IP address of DNS2.
>
> Notify:
> Automatically notify: Yes
> Servers listed on the Name Servers tab
> -------------------------------------------------------------
> I then attempted to set up a new zone on DNS2 as follows:
> Standard secondary
> Name of the zone: I selected the zone from DNS1 (domain.com)
> Specify DNS servers from which to copy: I selected DNS1
>
> I tried "Transfer from master" but it still says "Zone not loaded by
> DNS server".
>
>> btw-, attempting an nslookup ls -d <zone> is a zone transfer
>> query/request. This points to your zone transfer settings as well,
>> if it is not giving you a response.
>>
>
> On DNS2 I tried the following:
> nslookup
>> server DNS1
> Default server: DNS1.ADdomain.com
> Address: <IP of DNS1>
>
>> ls -d domain.com
> [DNS1.ADdomain.com]
> domain.com SOA DNS1.ADdomain.com admin.ADdomain.com
> domain.com NS DNS1.ADdomain.com
> domain.com NS DNS2.ADdomain.com
> domain.com CNAME www.domain.com
> maps CNAME www.domain.com
> www A <internal IP address of DMZ server>
> domain.com SOA DNS1.ADdomain.com admin.ADdomain.com
>
> After the SOA records there is a number (18 900 600 86400 3600).
>
>> If you are mixing private and public data, follow Kevin's advise, we
>> need to have separate servers for this function.
>>
>> If you just use the internal DNS with the private settings for your
>> 'same name internal/external domain name', then you can get to the
>> website with the correct private IP.
>>
>> For the public records, you need a completely separate DNS server,
>> actually two of them, based on the Registrar's requirements. That
>> server will ONLY host public IPs, such as 62.70.34.1. Your internal
>> server will NOT use this server. Hence, the confusion of configuring
>> this to work.
>>
>> Unless you are mixing internal DNS and your ISP's DNS server in your
>> machines' IP properties?
>>
>
> No, I use DNS1 as primary DNS and DNS2 as secondary DNS, and i have
> set up forwarders on DNS1 and DNS2 to our ISPs DNS servers
> (omg...dnsdnsdns
.
>
> Thanks for your reply. Any new ideas how to make the replication work?
Honestly, if both DNS servers are on the same subnet (I didn't see any IP
addresses listed above), and zone transfers are allowed to "any", then it
should just work.
Maybe between Kevin and I, we're missing something rudimentary here in your
configuration. But as far as I see it, and tyring to understand your
configuration (and terminology), you have two DNS servers on the same subnet
and you want to have to transfer a zone from one to the other, and all the
IPs under the nameserver tab are all their private IPs (not mixing them).
This should just *work*.
Kevin made a point about the nameservers listing and their IP addresses, but
if they are both private IPs, meaning these two:
> domain.com NS DNS1.ADdomain.com
> domain.com NS DNS2.ADdomain.com
and they are one the same subnet, then transfers should just work.
Maybe it's that blank domain CNAME record causing the whole problem. I
couldn't mimick your configuration on my server. I am assuming that:
> domain.com CNAME www.domain.com
means it really shows up in the DNS console under the zone as:
(same as parent) CNAME www.domain.com
unless you really did select to create a new Alias, typed in domain.com in
the host section, then typed in www.domain.com for the traget name. But if
you did that, then the system will automatically create a "com" zone under
the current "domain.com" zone and then it will create a "domain" CNAME
record in that zone with a target of www.domain.com. When I tried to do it
the other way, it wouldn't let me stating that it is an incompatible record
type. Maybe the zone transfer attempt recognizes it and is preventing the
transfer.
Ace