locked
DNS Reverse Lookup Zone RRS feed

  • Question

  • hi guys, i had created a DNS reverse lookup zone on a win2k8 box standard but it's not populating. The forward lookup zone works without a problem.

    On the DHCP properties i had enable always dynamically update DNS A and PTR records but with no joy.

    I had tried also Dynamically update DNS A and PTR records only if requested by the DHCP clients but doesn't work as well.

    Had tried to use ipconfig /registerdns on one my win 7 and xp client but it doesn't register also.

    Thanks in advance for your help. :)


    Every second counts..make use of it.
    Tuesday, September 20, 2011 3:31 AM

Answers

  • Hi,
     Could you please verify the bellow settings are applied?
    DHCP server has been Authorized
    Set Option 006 to only the internal DNS servers.
    Set Option 015 to the AD domain name (such as yourdomain.com).
    Force DHCP to register all records, Forward and PTR, (whether a client machine can do it or not) in the Option 081 tab (DHCP properties, DNS tab).

    When you manually run  ipconfig /registerdns does it create the A record in Forward Lookup Zone. 


    Disclaimer: This posting is provided AS-IS with no warranties or guarantees and confers no rights. Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

    • Proposed as answer by Tanmoy Manik Wednesday, September 21, 2011 11:24 AM
    • Unproposed as answer by Tanmoy Manik Wednesday, September 21, 2011 11:24 AM
    • Edited by Tanmoy Manik Thursday, September 22, 2011 2:34 AM
    • Marked as answer by cguan Monday, September 26, 2011 1:24 AM
    Wednesday, September 21, 2011 11:24 AM
  • The zone was created backwards. As it shows in the console screenshot and in the dnscmd output, it thinks the subnet is 1.168.192.x and is why it's not registering any updates.

    How did you create it? Can you describe the steps you performed to create it, please?

    It should show as:

    1.168.192.in-addr.arpa


    Ace Fekay
    MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007 & Exchange 2010, Exchange 2010 Enterprise Administrator, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Complete List of Technical Blogs: http://www.delawarecountycomputerconsulting.com/technicalblogs.php

    This posting is provided AS-IS with no warranties or guarantees and confers no rights.

    FaceBook Twitter LinkedIn
    • Marked as answer by cguan Monday, September 26, 2011 1:22 AM
    Friday, September 23, 2011 1:00 PM

All replies

  • Have you allowed updates on the reverse zone after you created it?

    Here's more specific info on how to configure DHCP and DNS registration to make sure everything updates:

    DHCP Service Configuration, Dynamic DNS Updates, Scavenging, Static Entries, Timestamps, DnsProxyUpdate Group, prevent duplicate DNS records, DHCP has a "pen" icon, and more...
    Published by Ace Fekay, MCT, MVP DS on Aug 20, 2009 at 10:36 AM  3758  2 
    http://msmvps.com/blogs/acefekay/archive/2009/08/20/dhcp-dynamic-dns-updates-scavenging-static-entries-amp-timestamps-and-the-dnsproxyupdate-group.aspx


    Ace Fekay
    MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007 & Exchange 2010, Exchange 2010 Enterprise Administrator, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Complete List of Technical Blogs: http://www.delawarecountycomputerconsulting.com/technicalblogs.php

    This posting is provided AS-IS with no warranties or guarantees and confers no rights.

    FaceBook Twitter LinkedIn
    • Proposed as answer by Rick Tan Wednesday, September 21, 2011 2:58 AM
    Tuesday, September 20, 2011 5:13 AM
  • hi Ace, yes the allowed updates is enable on the reverse zone. And the DHCP is also a member of the DnsProxyUpdate Group but it doesn't work as well.

    Anyway, i'm planning on creating a script to add whatever records on the forward lookup zone to the records on the reverse lookup zone.

    Had tried recreating the reverse lookup zone as well but it just doesn't work.

    thanks for your reply.


    Every second counts..make use of it.
    • Edited by cguan Wednesday, September 21, 2011 7:31 AM
    Wednesday, September 21, 2011 7:30 AM
  • Hi,
     Could you please verify the bellow settings are applied?
    DHCP server has been Authorized
    Set Option 006 to only the internal DNS servers.
    Set Option 015 to the AD domain name (such as yourdomain.com).
    Force DHCP to register all records, Forward and PTR, (whether a client machine can do it or not) in the Option 081 tab (DHCP properties, DNS tab).

    When you manually run  ipconfig /registerdns does it create the A record in Forward Lookup Zone. 


    Disclaimer: This posting is provided AS-IS with no warranties or guarantees and confers no rights. Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

    • Proposed as answer by Tanmoy Manik Wednesday, September 21, 2011 11:24 AM
    • Unproposed as answer by Tanmoy Manik Wednesday, September 21, 2011 11:24 AM
    • Edited by Tanmoy Manik Thursday, September 22, 2011 2:34 AM
    • Marked as answer by cguan Monday, September 26, 2011 1:24 AM
    Wednesday, September 21, 2011 11:24 AM
  • Hi cguan,

    Did you follow the steps in my blog to make sure that Option 081 (DHCP properties, DNS tab), are set to force registration for all clients? Tanmoy posted the specifics, too, in his post.

    In addition, was the reverse zone correctly created for the subnet in question?

    Can you post an unedited ipconfig /all from a client, as well as how you created the reverse zone, screenshot of the zone (pasted here), or the results of a dnscmd /enumzones command?


    Ace Fekay
    MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007 & Exchange 2010, Exchange 2010 Enterprise Administrator, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Complete List of Technical Blogs: http://www.delawarecountycomputerconsulting.com/technicalblogs.php

    This posting is provided AS-IS with no warranties or guarantees and confers no rights.

    FaceBook Twitter LinkedIn
    Wednesday, September 21, 2011 1:42 PM
  • You try to restart your DC again . I think it'll done
    Thursday, September 22, 2011 1:50 AM
  • Hi Ace, here's the screen shot of the reverse zone.

     

     

    IPCONFIG:

     

    Windows IP Configuration

            Host Name . . . . . . . . . . . . : myPC

            Primary Dns Suffix  . . . . . . . : mydomain.com

            Node Type . . . . . . . . . . . . : Hybrid

            IP Routing Enabled. . . . . . . . : No

            WINS Proxy Enabled. . . . . . . . : No

            DNS Suffix Search List. . . . . . : mydomain.com

                                                mydomain.com

                                                mydomain.com

    Ethernet adapter Local Area Connection:

            Connection-specific DNS Suffix  . : mydomain.com

            Description . . . . . . . . . . . : Intel(R) 82562V-2 10/100 Network Connection

            Physical Address. . . . . . . . . : FF-BB-C9-66-DC-03

            Dhcp Enabled. . . . . . . . . . . : Yes

            Autoconfiguration Enabled . . . . : Yes

            IP Address. . . . . . . . . . . . : 192.168.1.47

            Subnet Mask . . . . . . . . . . . : 255.255.255.0

            Default Gateway . . . . . . . . . : 192.168.1.1

            DHCP Server . . . . . . . . . . . : 192.168.1.2

            DNS Servers . . . . . . . . . . . : 192.168.1.2

            Lease Obtained. . . . . . . . . . : Friday, September 23, 2011 9:42:58 AM

            Lease Expires . . . . . . . . . . : Saturday, October 01, 2011 9:42:58 AM

     

    DNSCMD enumzones:

     

     

    Thanks.

     

     


    Every second counts..make use of it.
    • Edited by cguan Friday, September 23, 2011 3:25 AM
    Friday, September 23, 2011 2:01 AM
  • I'm not able to restart the DC it will interrupt our operation. Thanks for your reply.
    Every second counts..make use of it.
    Friday, September 23, 2011 2:02 AM
  • The zone was created backwards. As it shows in the console screenshot and in the dnscmd output, it thinks the subnet is 1.168.192.x and is why it's not registering any updates.

    How did you create it? Can you describe the steps you performed to create it, please?

    It should show as:

    1.168.192.in-addr.arpa


    Ace Fekay
    MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007 & Exchange 2010, Exchange 2010 Enterprise Administrator, MCSE & MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services
    Complete List of Technical Blogs: http://www.delawarecountycomputerconsulting.com/technicalblogs.php

    This posting is provided AS-IS with no warranties or guarantees and confers no rights.

    FaceBook Twitter LinkedIn
    • Marked as answer by cguan Monday, September 26, 2011 1:22 AM
    Friday, September 23, 2011 1:00 PM
  • i was thinking that when i key in the ip address i should put it on the reverse way, i didn't know that system will auto reverse the ip address upon keying in the ip address. thanks for your help. :)
    Every second counts..make use of it.
    Monday, September 26, 2011 1:23 AM