Re: Exchange 2000 DNS

  • From: "Deus, Attonbitus" <Thor@xxxxxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Fri, 14 Feb 2003 09:45:33 -0800

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

At 09:24 AM 2/14/2003, you wrote:
>http://www.ISAserver.org
>
>Hi,
>
>
>
>I wonder if someone can give me an answer to the following questions re. 
>The definitive DNS setup for Exchange 2k behind ISA.

I don't know about "definitive" but this is what worked best for me when 
EX2k was delivering mail (now it goes to a gateway)

Ex2k box is SNAT client- ISA allows TCP/UDP 53 from Ex2k to ISP DNS (in my 
case, DMZ DNS) with replies from that address allowed back in to Ex2k.

Ex2k NIC DNS points to DC1 and DC2 respectively- in Exchange System 
Manager, in SMTP virtual server properties, Delivery tab, Advanced button, 
Configure External DNS button, put ISP (or DMZ) DNS there.

That way, normal stack lookups are against the domain, and only SMTP 
lookups go to the external DNS.

hth

T
-----BEGIN PGP SIGNATURE-----
Version: PGP 7.1

iQA/AwUBPk0rPIhsmyD15h5gEQIQXgCeKobLlv7MN19E9Y1nddoHDNSOaOYAn2Yi
bnjNL2KUUWVdf3peHRbBmrf1
=gznF
-----END PGP SIGNATURE-----



Other related posts: