|
In my case, yes. Disabling the DNS Fixup on my PIX
made the issue disappear as soon as I entered the command. The PIX fixup was
mangling the responses back to the dns servers (much like SMTP fixup does when
in front of an Exchange server). Later yesterday I removed the acl and static
nat entries to those DNS servers. Everything is running smooth as silk now (and
I don't have any of my DC's exposed to the internet now
either).
Michael, the exchange issue you had during the beta is
exactly what I experienced in production. Was your DNS behind a PIX with the DNS
Fixup command running? If so, maybe it is not a bug with the Windows DNS, but
just a stupid PIX trick.
At this point I don't really care where the "bug" really
lies, I have it working the way I want it too now, and I'm not having to bang my
head against a wall anymore.
----------------------- From: Robert Gonzaga (306) [mailto:[EMAIL PROTECTED] Sent: Tuesday, November 04, 2003 10:14 AM To: '[EMAIL PROTECTED]' Subject: RE: [ActiveDir] DNS Lookup Problem - Windows 2003 So are we saying it works as long you don't use the fixup command for DNS? Do you still need to NAT and the conduits (in my case of older PIX ver.)?
-----Original
Message-----
And that's what's confusing. W2K DNS is told to use TCP for large packets, and you can force that as I recall. So in your case, the firewall was the issue, right? Slight change in the way that the DNS packets were travelling across?
Al
|
Title: Message
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 ml.adlist
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 deji
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Mulnick, Al
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Roger Seielstad
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 ml.adlist
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Michael B. Smith
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 deji
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Mulnick, Al
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Michael B. Smith
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Robert Gonzaga (306)
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 ml.adlist
- RE: [ActiveDir] DNS Lookup Problem - Windows 2003 Roger Seielstad
