, IL 60439-4828 IBMMAIL: I1004994
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Bernard, Aric
Sent: Wednesday, May 24, 2006 4:31 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS along with Bind
Why configure the BIND
@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS along with Bind
(From my DNS admin)
If I did that, then I would have to open DNS conduits through our
firewalls for the DC, as anyone who was requesting information from any
AD zone would be querying the DNS Server on the DC. We try to limit
contact
: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Freddy HARTONO
Sent: Tuesday, May 23, 2006 8:50 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS along with Bind
Hi Mike,
If you are delegating those 6 zones to only 1 DNS server, if that dns
server
is going through
and the dynamic updates they require.
Could just be a personal preference I suppose...
Aric
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Thommes,
Michael M.
Sent: Wednesday, May 24, 2006 12:47 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS
-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Thommes, Michael M.
Sent: Thursday, May 25, 2006 3:47 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS along with Bind
Hi Freddy,
(From my DNS Admin)
When any client (or server) machine wants to locate an SRV
Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Freddy HARTONO
Sent: Thursday, May 25, 2006 9:09 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS along with Bind
Importance: Low
Hi Mike,
Thanks but personally I don't see why its not delegated to all DNS
Adeel,
Here is a response from our DNS guy. I hope it helps you.
Mike Thommes
=
Here are the steps I took for delegating the AD zones for example.com:
1) In the example.com zone on the BIND server I added these NS records
to delegate the zone
: [ActiveDir] AD DNS along with Bind
Adeel,
Here is a response from our DNS guy. I hope it helps you.
Mike Thommes
=
Here are the steps I took for delegating the AD zones for example.com:
1) In the example.com zone on the BIND server I added
.
Sent: Wednesday, May 24, 2006 4:38 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD DNS along with Bind
Adeel,
Here is a response from our DNS guy. I hope it helps you.
Mike Thommes
=
Here are the steps I took for delegating the AD
You'll be happy to hear you wouldn't recognize it as your father's Novell, so to speak. It's a linux/novell hybrid now supposedly including 6.5 kernel and linux pieces blended together in a magical way that makes it better, shinier, faster etc. Groupwise is a nice front end to sendmail last I
I'm not familiar with Novell's DNS implementation... I
assume it is based on BIND?
See http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/ServerHelp/73c0ae36-8058-43d1-8809-046eb03b73fb.mspxand
Unless Novell's changed what flavor of DNS/feature set they
have since NetWare 5.1 (last time I ever saw Novell) it did not support dynamic
updates. More specifically, it supported "dynamic updates" but only via a
NetWare DHCP server. Also, at the time, the GUI for managing records
didn't
no rights or warranties ...
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Susan Bradley, CPA
aka Ebitz - SBS Rocks [MVP]
Sent: Saturday, October 15, 2005 1:32 PM
To: ActiveDir@mail.activedir.org
Subject: Re: [ActiveDir] AD/DNS BPA?
Microsoft AD Health
Murray
Sent: Tuesday, October 11, 2005 9:45 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
If find DNSlint to be pretty good, but obviously limited in scope. I think
Dean mentioned to me recently that PSS have a tool that provides BPA-like
functionality. It sounded like
:05 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
Huh. That doesn't appear to be _US_ I wonder if the Engineering
Services group knows that a third party (Partner at that) is advertising
these services.
Honestly, I didn't think that we farmed those services out
, 2005 7:05 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
Huh. That doesn't appear to be _US_ I wonder if the
Engineering Services group knows that a third party (Partner
at that) is advertising these services.
Honestly, I didn't think that we farmed
Kingslan
Sent: Sunday, October 16, 2005 7:11 AM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
Yes, they (we) do. I'll check into them and give you an
overview of what they do If I can, to be more correct.
Rick [msft]
--
Posting is provided AS IS, and confers
: [ActiveDir] AD/DNS BPA?
Boo, hiss. It's Engineering Services that offers it, not MCS. ;
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Dean Wells
Sent: Thursday, October 13, 2005 11:22 AM
To: Send - AD mailing list
Subject: RE: [ActiveDir] AD/DNS
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of David Adner
Sent: Friday, October 14, 2005 10:44 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
Boo, hiss. It's Engineering Services that offers it, not MCS. ;
-Original
Boo, hiss. It's Engineering Services that offers it, not MCS. ;
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Dean Wells
Sent: Thursday, October 13, 2005 11:22 AM
To: Send - AD mailing list
Subject: RE: [ActiveDir] AD/DNS BPA?
The tool I
] On Behalf Of Tony Murray
Sent: Tuesday, October 11, 2005 7:45 PM
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
If find DNSlint to be pretty good, but obviously limited in scope. I think
Dean mentioned to me recently that PSS have a tool that provides BPA-like
transfer alone.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Dean Wells
Sent: Thursday, October 13, 2005 9:22 AM
To: Send - AD mailing list
Subject: RE: [ActiveDir] AD/DNS BPA?
The tool I spoke about in confidence with Tony (just teasing ;o
I can see a need for a BPA for AD but also a tool which can go out and
discover an AD and report back on all of its nuances in detail (maybe
this would be one utility, offering both of the above features).
I'm still waiting for a good AD/DC stress test tool to emerge too...
neil
-Original
The tools are there, but the interpretation is sometimes lacking G I've
been told that several companies are currently offering health checks, but I
haven't tested any of them.
As for Microsoft tools, I'm a fan of using dcdiag and netdiag right after
scanning the event logs. That'll give me
on this (assuming it's not under NDA)?
Tony
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Al Mulnick
Sent: Wednesday, 12 October 2005 2:58 p.m.
To: ActiveDir@mail.activedir.org
Subject: RE: [ActiveDir] AD/DNS BPA?
The tools are there, but the interpretation
Title: AD, GPO and Technet
Wouldn't it just be easier to transfer the zone to the new
Active Directory zone and work it in slowly to ensure the quality you
need?
Al
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Puetz,
ChristophSent: Tuesday, June 22, 2004 12:39 PMTo:
I would have setup the AD zone as a secondary to the Cisco, and then converted it to a
primary ad integrated after the txfr. Given that that's not an option, I think that
you could still take one of your AD DNS servers, remove the AD zone from it, create a
secondary to the Cisco, txfr the zone,
] On Behalf Of Brian
DesmondSent: Tuesday, June 22, 2004 2:22 PMTo:
[EMAIL PROTECTED]Subject: RE: [ActiveDir] AD
DNS
I would have setup the AD zone as a secondary to the Cisco, and then
converted it to a primary ad integrated after the txfr. Given that that's not an
option, I think that you could still
: Wednesday, June 16, 2004 6:30 PM
To: [EMAIL PROTECTED]
Subject: RE: [ActiveDir] AD DNS Question
Install the DNS server (DNS serverS, for redundancy).
Create your zone as secondary on the new DNS server(S), specify your
existing DNS server as the Primary Let zone Transfer happen.
Convert the secondary zone
Install the DNS server (DNS serverS, for redundancy).
Create your zone as secondary on the new DNS server(S), specify your existing
DNS server as the Primary
Let zone Transfer happen.
Convert the secondary zone you created earlier to Primary (AD-Integrated, for
good measure)
Configure the Test
Hi,
Installating a Microsoft DNS will not effect your network. you can Install and configure DNS at any time through the Confiure your server through the administrative tools.
Forget about any conflict, but stiil if you are not confident then you can configure the Srandard primary DNS first,
: '[EMAIL PROTECTED]'Subject:
RE: [ActiveDir] AD DNS/DHCP issue/question
Check Microsoft KB article Q319202. I had this exact issue, that
is why I went away from the 'secure updates only' setting.
From: Salandra, Justin A.
[mailto:[EMAIL PROTECTED] Sent: Wednesday, July 16, 2003 2:10
]'
Subject: RE: [ActiveDir] AD
DNS/DHCP issue/question
That
sounds like its properly configured, although I strongly suggest setting DNS
for secured updates only.
Routers
won't cache DHCP info, either - they just forward it. You might want to look at
the active leases to see what's happening
Administrator Inovis Inc.
-Original Message-From: Salandra, Justin
A. [mailto:[EMAIL PROTECTED] Sent: Wednesday, July 16, 2003
2:10 PMTo: '[EMAIL PROTECTED]'Subject: RE:
[ActiveDir] AD DNS/DHCP issue/question
What
won't get registered in DNS if the zone is set to Secured
if the zone is set to Secured Updates Only? Anything that does not have a object in
the directory?
-Original
Message-From: Roger
Seielstad [mailto:[EMAIL PROTECTED]Sent: Tuesday, July 15, 2003 3:09
PMTo:
'[EMAIL PROTECTED]'Subject: RE: [ActiveDir] AD DNS/DHCP
issue/question
A.Sent: Wednesday, July 16, 2003 1:10 PMTo:
'[EMAIL PROTECTED]'Subject: RE: [ActiveDir] AD DNS/DHCP
issue/question
What
wont get registered in DNS if the zone is set to Secured Updates Only? Anything that does not have a object in
the directory?
-Original
Message-From: Roger
Force a ipconfig /registerdns after
the name change.
Wright, T. MR
NSSB [EMAIL PROTECTED]
Sent by: [EMAIL PROTECTED]
07/15/2003 08:46 AM
Please respond to ActiveDir
To:
'[EMAIL PROTECTED]'
[EMAIL PROTECTED]
cc:
Subject:
[ActiveDir] AD DNS/DHCP
You
might want to run a post setup job to run ipconfig
/registerdns
-Original Message-From: Wright, T. MR NSSB
[mailto:[EMAIL PROTECTED]Sent: Tuesday, July 15, 2003 8:46
AMTo: '[EMAIL PROTECTED]'Subject: [ActiveDir]
AD DNS/DHCP issue/question
Gonna
try and keep this
I'm pretty sure that willwork... that was one of the
aforementioned 'work arounds'. I was just curious why it wasn't updating
itself as it does when I sit on the same network. Thanks for the
ideas...
-Tim
From: Carr, Jonathan
[mailto:[EMAIL PROTECTED] Sent: Tuesday, July 15, 2003
10:08
-Original Message-From: Wright, T. MR NSSB
[mailto:[EMAIL PROTECTED]Sent: Tuesday, July 15, 2003 11:08
AMTo: '[EMAIL PROTECTED]'Subject: RE:
[ActiveDir] AD DNS/DHCP issue/question
I'm pretty sure that willwork... that was one of the
aforementioned 'work arounds'. I was just curious why
Title: Message
I can't speak for the network... I asked our network guy to change
the IP-Helper address to point to the new DHCP server. He did that and I
get my lease... Is there something else that I should ask him to look
at?
One thing I thought of is that it may
be possible that there
PROTECTED] Sent: Tuesday, July 15, 2003
12:36 PMTo: [EMAIL PROTECTED]Subject: RE:
[ActiveDir] AD DNS/DHCP issue/question
W2k
and xp update their own dns records but only when they renew their leases or
get a different lease. Here is a different way of doing it.
Shorten your leases
ginal Message-From: Carr, Jonathan
[mailto:[EMAIL PROTECTED] Sent: Tuesday, July 15, 2003
12:36 PMTo: [EMAIL PROTECTED]Subject: RE:
[ActiveDir] AD DNS/DHCP issue/question
W2k
and xp update their own dns records but only when they renew their leases or
get a different lease.
.
--
Roger D. Seielstad -
MTS MCSE MS-MVP Sr. Systems Administrator Inovis Inc.
-Original Message-From: Wright, T. MR
NSSB [mailto:[EMAIL PROTECTED] Sent: Tuesday, July 15, 2003
12:38 PMTo: '[EMAIL PROTECTED]'Subject: RE:
[ActiveDir] AD DNS/DHCP issue
Title: Message
Forgive me if this
comes through strange, I saw the post on the web archive and didn't see a way to
respond through it so I just typed up a new message.
Anyway, the SP3 reg
entry is a good solution, if however you don't have a W2K SP3 then you can add
the additional name to
It is a known issue, but if you are running SP3 then you can set the reg key described
in this article to resolve the issue:
http://support.microsoft.com/?scid=kb;en-us;281308
- Dave
-- Original Message --
From: Roger Seielstad [EMAIL PROTECTED]
: RE: [ActiveDir] AD, DNS, Errors - THE WORKS
Resend - last was bounced. No idea why
Joe,
Check Local Policy on each of the DCs. If any of these was an upgrade
(and sometimes, not) of a member that was in a service position before
becoming
(ipconfig /flushdns).
-gil
-Original Message-
From: Pelle, Joe [mailto:[EMAIL PROTECTED]]
Sent: Monday, December 30, 2002 10:39 AM
To: '[EMAIL PROTECTED]'
Subject: RE: [ActiveDir] AD, DNS, Errors - THE WORKS
The DC gives me a permissions error when opening Domain Controller Security
consent.
-Original Message-
From: Gil Kirkpatrick [mailto:[EMAIL PROTECTED]]
Sent: Monday, December 30, 2002 2:11 PM
To: '[EMAIL PROTECTED]'
Subject: RE: [ActiveDir] AD, DNS, Errors - THE WORKS
Sounds like a DNS problem. The permissions message is a canard; the
interesting point
- www.microsoft.com/windowsxp/expertzone
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Pelle, Joe
Sent: Monday, December 23, 2002 3:14 PM
To: '[EMAIL PROTECTED]'
Subject: RE: [ActiveDir] AD, DNS, Errors - THE WORKS
Just like you say
Hmm. My first inclination is that your child domain's don't know about the
empty root. How are the DNS configs done? Are they root.com, hq.root.com and
plant.root.com, or is it a discontiguous namespace?
If its contiguous, did you delegate both subdomains from the root?
It smells of DNS issues,
and cleared the event logs waiting to see what happens.
Still getting the same event log messages...
Joe Pelle
-Original Message-
From: Roger Seielstad [mailto:[EMAIL PROTECTED]]
Sent: Monday, December 23, 2002 2:42 PM
To: '[EMAIL PROTECTED]'
Subject: RE: [ActiveDir] AD, DNS
Title: Message
Joe,
Check
Local Policy on each of the DCs. If any of these was an upgrade (and
sometimes, not) of a member that was in a service position before becoming a DC,
there are times when a program or application will get installed by a SID that
doesn't exist after the machine
53 matches
Mail list logo