Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DNS Server pushing bad IP addresses

Status
Not open for further replies.

NoobITdirector

IS-IT--Management
Apr 6, 2011
10
Hey all,
I'm sharing my Domain server with DNS services for my network. Its running Win2k8R2 SP1. I'm having odd dns issues on my clients receiving DNS from the DNS Server.

A little on my network setup:

Firewall/Router:
10.1.1.1

Domain Server:
domain.local
10.1.1.2

Exchange Server:
exchange-server.domain.local
10.1.1.6

Now on each workstation attached to the domain, several times a day, Exchange and Authentication stops working. When pinging the FQDN address of the servers, I get the following:

Bad DNS Information:

Domain Server:
domain.local
89.84.24.124 (not exact)
IP address belongs to SEDO parking.

Exchange Server:
exchange-server.domain.local
89.84.24.124 (not exact)
IP address belongs to SEDO parking.

This can happen on almost any internal domain name.

My DNS Server's DNS settings for IPv4 are set to itself. Maybe this is the problem, but a trusted IT guy for a huge company out here said it was the only way to set DNS on DNS server:

Domain Server:
10.1.1.2
IPv4 Primary DNS -> 10.1.1.2

The firewall DNS for WAN/LAN is set to the DNS addresses provided by the ISP.

***All servers and clients:***
Primary: 10.1.1.2 (DNS Server)
Secondary: 10.1.1.1 (Firewall)

What am I doing wrong?

An IT Director of a medium size business - with 0 training at all...

Custom Core i7-960@4.4GHz | Asus Rampage III Formula MB | 24GB DDR3 2000@CAS9 | GTX 590 GPU | GTX 470 PPU | 1Kw Kingwin Gold PSU | 2xIntel 510 SSD RAID 0 | 3xSeagate 2TB RAID 5 | Blu-Ray Burner
 
Pointing your DNS server at itself is the preferred way to configure the server. And your domain is a .local ?
 
No its not a .local, I just put that in there so I'm not broadcasting my domain information in the webs.

An IT Director of a medium size business - with 0 training at all...

Custom Core i7-960@4.4GHz | Asus Rampage III Formula MB | 24GB DDR3 2000@CAS9 | GTX 590 GPU | GTX 470 PPU | 1Kw Kingwin Gold PSU | 2xIntel 510 SSD RAID 0 | 3xSeagate 2TB RAID 5 | Blu-Ray Burner
 
Ok here is an update.

tomshardware.com is a website I always have issues loading. I did an nslookup on the site and came up with this:

C:\Users\Mike.CMS>nslookup tomshardware.com
Server: UnKnown
Address: 10.1.1.2 <--- This is my domain server

Non-authoritative answer:
Name: tomshardware.com.ad.com
Address: 82.98.86.164

C:\Users\Mike.CMS>

If you look at Name: tomshardware.com.ad.com its obvious that something is taking the address of the AD/DNS server local address of cms.ad.com and affixing it to the website. I've never seen anything like this. That 82.98.86.164 IP address goes to that SEDO parking site.

An IT Director of a medium size business - with no formal training at all... HELP!

Custom Core i7-960@4.4GHz | Asus Rampage III Formula MB | 24GB DDR3 2000@CAS9 | GTX 590 GPU | GTX 470 PPU | 1Kw Kingwin Gold PSU | 2xIntel 510 SSD RAID 0 | 3xSeagate 2TB RAID 5 | Blu-Ray Burner
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top