RE: dns

  • From: "James May" <Jmay@xxxxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Thu, 6 Feb 2003 13:55:02 -0800

Thanks for the reply I really appreciate it. 

I have split DNS........... I will try to explain. 
One DC with internal dns running AD,iis,exchange and acting as a forwarder for 
all internal clients. note ISA is not publishing any of the sites or the 
exchange server, all have public ip's at this time. This computer has two nic's 
listening only on the internal interface. Soon I would like to have all 
internet traffic come through isa box. 

The second DNS server is on the ISA server itself for public DNS Primary for 
all my personal zones.

The third DNS server is on a remote network at the office. Is a 
differentdomain.com is my secondary for all the zones on my home network all 
zone transfers work. Its the primary domain here at the office that won't 
transfer to the secondary zone on the isa box at home. 

It was all working when I had the public DNS on its own machine, but I would 
like to downsize the network.Recently I had three machines in this 
configuration 

Yes the DNS server one the isa box has 4 primary zone and one secondary zone 
running. 




-----Original Message-----
From: John Tolmachoff [mailto:isalist@xxxxxxxxxxxx]
Sent: Thursday, February 06, 2003 1:10 PM
To: [ISAserver.org Discussion List]
Subject: [isalist] RE: dns


http://www.ISAserver.org


A DNS server does not "run" on the external interface of ISA. If you have
DNS configured on ISA, it is bound to the Internal Interface and ISA is
allowing it to access and respond to the Internet.

Let me understand this:

You have a DNS server running on ISA.

That DNS server has 4 zones for which it is the primary server.
It also has one zone for which it is a secondary to an internal primary.

You also have another DNS internally.

That Internal DNS server has one zone for which it is the primary server.
It is has 4 zones for which it is a secondary to the DNS server on ISA.

Is this correct?

John Tolmachoff MCSE, CSSA
IT Manager, Network Engineer
RelianceSoft, Inc.
Fullerton, CA  92835
www.reliancesoft.com


> -----Original Message-----
> From: Jim [mailto:jmay@xxxxxxxxxxxxx]
> Sent: Thursday, February 06, 2003 12:42 PM
> To: [ISAserver.org Discussion List]
> Subject: [isalist] dns
> 
> http://www.ISAserver.org
> 
> 
> Hi
> I have a primary dns server running on the external interface for public
> name server. I have about 5 zones. All primary zone transfers to the
> secondary server work fine, however I have one secondary zone on the isa
> server that will not communicate with its primary master which is the
> secondary server for all the zones on the isa server. Note the name server
> is not configured to listen on the default address of the external nic, I
> multiple addresses configured on the external side of the server. Anybody
> have any suggestions? Jim
> 
> ------------------------------------------------------
> List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
> ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
> ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
> ------------------------------------------------------
> Exchange Server Resource Site: http://www.msexchange.org/
> Windows Security Resource Site: http://www.windowsecurity.com/
> Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
> ------------------------------------------------------
> You are currently subscribed to this ISAserver.org Discussion List as:
> isalist@xxxxxxxxxxxx
> To unsubscribe send a blank email to $subst('Email.Unsub')


------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Exchange Server Resource Site: http://www.msexchange.org/
Windows Security Resource Site: http://www.windowsecurity.com/
Windows 2000/NT Fax Solutions: http://www.ntfaxfaq.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: 
jmay@xxxxxxxxxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')


Other related posts: