Intermittent Incomplete DNS Zone TransfersHello,<br><br>First, my setup. We're running a Windows Server 2008 system as a PDC in a lab of about 40 PCs and 20 users. We have 1 forward zone, and three reverse zones (1 IPv4 &amp; 2 IPv6.) As a backup, we have two other Server 2008 boxes running as secondary DNS servers. The two secondary servers also run DHCP and WDS. I have set zone transfers on the PDC to allow to any server.<br><br>The problem is that every so often (randomly) DNS zone transfers are incomplete. I may have 50 records in my zone, but only 6 or 10 will actually transfer to the secondary servers. I can usually get a complete transfer by restarting the DNS service on the secondary servers followed by a manual &quot;transfer from master&quot;/refresh. This is happening intermittently with both forward and reverse zones.<br><br>I believe the problem is on the PDC, but I am stumped at this point. <br><br>Any ideas?<br><br>Thanks© 2009 Microsoft Corporation. All rights reserved.Fri, 01 Aug 2008 18:48:29 Z27a8dc6f-fe2d-4b43-8575-39c5d458a6d0http://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#27a8dc6f-fe2d-4b43-8575-39c5d458a6d0http://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#27a8dc6f-fe2d-4b43-8575-39c5d458a6d0tkloplhttp://social.technet.microsoft.com/Profile/en-US/?user=tkloplIntermittent Incomplete DNS Zone TransfersHello,<br><br>First, my setup. We're running a Windows Server 2008 system as a PDC in a lab of about 40 PCs and 20 users. We have 1 forward zone, and three reverse zones (1 IPv4 &amp; 2 IPv6.) As a backup, we have two other Server 2008 boxes running as secondary DNS servers. The two secondary servers also run DHCP and WDS. I have set zone transfers on the PDC to allow to any server.<br><br>The problem is that every so often (randomly) DNS zone transfers are incomplete. I may have 50 records in my zone, but only 6 or 10 will actually transfer to the secondary servers. I can usually get a complete transfer by restarting the DNS service on the secondary servers followed by a manual &quot;transfer from master&quot;/refresh. This is happening intermittently with both forward and reverse zones.<br><br>I believe the problem is on the PDC, but I am stumped at this point. <br><br>Any ideas?<br><br>ThanksTue, 15 Jul 2008 17:23:01 Z2008-07-15T17:23:01Zhttp://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#d1af6488-f5db-4337-a7d3-ce14544404cchttp://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#d1af6488-f5db-4337-a7d3-ce14544404ccMiles Lihttp://social.technet.microsoft.com/Profile/en-US/?user=Miles%20LiIntermittent Incomplete DNS Zone Transfers  <p style="margin:0in 0in 0pt"><span style="color:#1f497d"><font size=2><font face=Verdana>Hello,</font></font></span></p> <p style="margin:0in 0in 0pt"><span style="color:#1f497d"><font face=Verdana size=2> </font></span></p> <p style="margin:0in 0in 0.8pt"><span style="color:#1f497d"><font face=Verdana size=2></font></span></p> <p style="margin:0in 0in 0.8pt"><span style="color:#1f497d"><font size=2><font face=Verdana>Please allow me to confirm that my understandings are correct. As I understand it, the issue is:</font></font></span></p> <p style="margin:0in 0in 0.8pt"><span style="color:#1f497d"><font face=Verdana size=2> </font></span></p> <p style="margin:0in 0in 0.8pt"><font size=2><font face=Verdana><span style="color:#1f497d">There is a Windows Server 2008 DC with AD integrated zone. For backup, there are still 2 Windows Server 2008 DNS server holding the zones(not AD integrated, </span><span style="color:#1f497d">file backed secondary <span class=keywordhighlight1><span style="font-weight:normal">DNS</span> <span class=keywordhighlight1><span style="font-weight:normal">Zone</span></span><span style="color:#1f497d">). You encounter the issue that the secondary zones intermittently get incomplete zone records.</span></font></font></p> <p style="margin:0in 0in 0.8pt"><span style="color:#1f497d"><font face=Verdana size=2> </font></span></p> <p style="margin:0in 0in 0.8pt"><span style="color:#1f497d"><font size=2><font face=Verdana>If I have misunderstood your concerns please feel free to let me know.</font></font></span></p> <p style="margin:0in 0in 0pt"><span style="color:#1f497d"><font face=Verdana size=2> </font></span></p> <p style="margin:0in 0in 0pt"><span style="color:#1f497d"><font size=2><font face=Verdana>I'd like to collect more information about the issue:</font></font></span></p> <p style="margin:0in 0in 0pt"><span style="color:#1f497d"><font face=Verdana size=2> </font></span></p> <p style="margin:0in 0in 0pt 0.5in"><span style="color:#1f497d"><span><font face=Verdana size=2>1.</font><span style="font:7pt 'Times New Roman'">    </span></span><span style="color:#1f497d"><font size=2><font face=Verdana>Please verify whether there is any events in the event viewer that may indicate the DNS replication errors both on the PDC and backup DNS servers.</font></font></span></p> <p style="margin:0in 0in 0pt 0.5in"><span style="color:#1f497d"><span><font face=Verdana size=2>2.</font><span style="font:7pt 'Times New Roman'">    </span></span><font size=2><span style="color:#1f497d"><font face=Verdana>Do all 4 zones (1 forward zone and three reverse zones) have the same issue</font></span><span style="color:#1f497d;font-family:黑体">?</span><font face=Verdana> <span style="color:#1f497d">Or it just happens on specific zone(s).</span></font></font></p> <p style="margin:0in 0in 0pt 0.5in"><span style="color:#1f497d"><span><font face=Verdana size=2>3.</font><span style="font:7pt 'Times New Roman'">    </span></span><font size=2><span style="color:#1f497d"><font face=Verdana>Do two Windows Server 2008 with secondary zones have the same issue</font></span><span style="color:#1f497d;font-family:黑体">?</span><font face=Verdana> <span style="color:#1f497d">Or it just happens on specific computer.</span></font></font></p> <p style="margin:0in 0in 0pt 0.5in"><span style="color:#1f497d"><span><font face=Verdana size=2>4.</font><span style="font:7pt 'Times New Roman'">    </span></span><span style="color:#1f497d"><font size=2><font face=Verdana>Is the Windows Firewall or 3-rd party firewall enabled on the Windows Server 2008 for blocking TCP 53 for DNS replication? You may telnet to test the continuous connectivity the TCP 53 to the DC. </font></font></span></p> <p style="margin:0in 0in 0pt 0.5in"><span style="color:#1f497d"><font face=Verdana size=2> </font></span></p> <p style="margin:0in 0in 0pt"><font face=Verdana size=2> </font></p> <p style="margin:0in 0in 0pt"><font face=Verdana size=2> </font></p></span></span></span></span></span></span>Thu, 17 Jul 2008 01:34:01 Z2008-07-17T01:34:01Zhttp://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#0305adfa-a613-4a8d-b365-bcd55ba33302http://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#0305adfa-a613-4a8d-b365-bcd55ba33302tkloplhttp://social.technet.microsoft.com/Profile/en-US/?user=tkloplIntermittent Incomplete DNS Zone Transfers Miles, thank you for the response. You are correct; that is exactly what is occuring.<br><br>To answer your questions..<br><br>1.  There are no error or warning events listed on any of the servers. This includes the DNS specific logs, and the Windows system logs.<br><br>2.  All 4 of the zones appear to have this problem.<br><br>3.  This issue occurs on both of my secondary servers. Some times it happens on both servers at the same time, other times it will only happen on one server. If it does happen on both servers at the same time, it may or may not be the same zone.<br><br>4.  Windows Firewall is disabled on all three servers. I can open a connection with telnet to port 53 of the DC.Thu, 17 Jul 2008 13:12:10 Z2008-07-17T13:12:10Zhttp://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#32bbdb25-0302-41bd-95e1-c5edc2806621http://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#32bbdb25-0302-41bd-95e1-c5edc2806621chubsterhttp://social.technet.microsoft.com/Profile/en-US/?user=chubsterIntermittent Incomplete DNS Zone Transfers I am having the exact same problem.Wed, 30 Jul 2008 13:11:03 Z2008-07-30T13:11:03Zhttp://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#04c38398-fa49-4010-9416-eaa6fb939a84http://social.technet.microsoft.com/Forums/en-US/winserverDS/thread/27a8dc6f-fe2d-4b43-8575-39c5d458a6d0#04c38398-fa49-4010-9416-eaa6fb939a84Vegas205http://social.technet.microsoft.com/Profile/en-US/?user=Vegas205Intermittent Incomplete DNS Zone TransfersAsk Microsoft for this fix which is now public.<br><i><font face="Tms Rmn"> <p><font style="font-size:16px">KB Article Number    <i><font face="Tms Rmn"></p> <p>953317</p></i></font></font></i></font>Fri, 01 Aug 2008 18:48:29 Z2008-08-01T18:48:29Z