AD Integrated DNS Setup

Hi All,
  I have 6 Site and SiteA(Prod) and SiteB (DR) connect to the Internet. All other sites are connect to internet via SiteA.
How do i configure DNS Forwarders.
 SiteA : Internet Provider 1 / Internet Provider 2
 SiteB: Internet Provider 1 / Internet Provider 2
 SiteC: SiteA & SiteB DC
SiteD: SiteA & SiteB DC
Is this correct?
Uncheck the box for "Use root hints if no forwarders are available".
As

Hi,
How is it going? If you need further help regarding the question, please don't hesitate to let us know.
TechNet Subscriber Support
If you are TechNet Subscription user and have any feedback on our support quality, please send your feedback here.
Best regards,
Frank Shen

Similar Messages

  • DNS Setup/View external website internally

    Greetings all - trying to set up a Mac server from scratch for the first time. Been managing one for a while but didn't actually set it up myself.
    I have the beginnings of DNS setup all squared away, but am still looking to figure out how to properly set up my website. Here's my setup. We used to have a joint Windows 2003/10.5 server environment. Windows handled Exchange and DNS, the Leopard box handled everything else (DHCP, web, file sharing, etc). We're transitioning everything to the Mac box in preparation for setting up Kerio MailServer and just to ditch the windows box.
    I own companyname.net - that domain is hosted externally by Network Solutions. It's forwarded to my static IP.
    Our old internal DNS was hosted by a Windows 2003 box - it had zones for companyname.ltd (the private internal domain) and companyname.net. companyname.ltd was the nameserver. There were two A records handling the website for internal clients - one with a blank name, and one with www. Both pointed to the IP of the Mac server (the current box that I'm transitioning everything to). Everything was hunky dory - internal pings to the web address went to the internal ip, externally it went to the external IP, and everything worked just great.
    So in setting up the new DNS on the Leopard box, here's what I have so far.
    Primary zone: companyname.net
    A Record: macpro : 192.168.1.3 (this is the name of the server)
    A Record: mail : 192.168.1.2 (our mail server)
    Alias : ichat : macpro.winstongroup.net
    The checkhostname thing works fine, Kerberos is up and running, as is Open Directory.
    Now, I do not know how to set up our website so that internal clients can view the external website. I tried creating an A record to the server for www, but then that overrides the macpro A record that is the host of the whole thing. I also tried creating A records to the external IP, but then when I pinged it just pinged once, then it seemed like the firewall kicked in and stopped it. I tried creating aliases to companyname.net but every time I did that, Server Admin kept adding on an additional companyname.net to the end of the name (so it would read like companyname.netcompanyname.net). That didn't make much sense to me.
    I'm sure there's other people who can view internally hosted sites from the lan - so any help would be very much appreciated!

    One minor other question. I prefer the url of our site to be companyname.net instead of www.companyname.net. So now, while www is set up as a server alias, it wouldn't direct to companyname.net, even though that URL was set up in the web services panel in Server Admin. I then created a new alias that was "companyname.net", without the trailing period so it was not a FQDM, directed it at the same web server, and everything seemed to work. Does that seem right - it's working, so it seems to be somewhat right at least!

  • Help with Proper DNS Setup for Leopard Standard Server Setup

    Hello All,
    Problem Description-
    I was reviewing some training today on DNS setup and checking for proper setup with the sudo changeip - checkhostname tool and I seem to have an incorrectly configured DNS setup. So I need some help on correcting it. When I go to the "Server Preferences" tool I cannot log in using apple.ourdomainname.com instead in order to use the tool I have to input localhost as the server name. Now I just thought that the system was broken or something and with the help of my training I now see it's a DNS problem. I thought I had everything proper since I followed the steps of creating proper DNS/RDNS entries with my ISP. Now I am stuck wondering what else isn't working properly due to the DNS issue. Thanks in advance.
    Technical Info-
    My ISP provides us with 5 static IP's and we have asked them to create entries and verified the setup of apple.ourdomainname.com = x.x.x.x which is one of our public IP's assigned currently assigned to the WAN port of our Apple Airport Extreme. We have also had them create a PTR record which also is present, verified and functional. Our MacMini running 10.5.5 is connected directly to one of the ethernet ports on our Apple Airport Extreme which is our NAT/Firewall for the LAN. So during the setup of the Standard Server install the OS configured the Airport with the required ports for chat/web/vpn. And mobile Mac's can VPN in and gain folder access and web works fine too. We don't use the e-mail portion so I can't say how that works. The server is using the DNS of 10.0.200.1 which is the IP of the Airport and the airport is programmed with the DNS of OpenDNS servers 208.67.222.222 and 208.67.220.220. The reason for this whole long shpeal is that I want to give as much technical background as possible for the best possible help.
    Thanks
    DM

    What happens when you use 'Localhost' instead of 'localhost' (i.e. capitalizing the 'L')?

  • Error while installing B1 Integration Addon Setup

    Dear All,
            Myself working on SAP B1 8.81 PL 7. Now When I am installing B1 Integration Addon Setup, I am receiving the below error.
            Failed to install SAP Business One Integration Service.
            Kindly help.
    Regards
    Hitesh Parsawala

    Hi,
    Please refer to link
    <a class="jive_macro jive_macro_message" href="" __jive_macro_name="message" modifiedtitle="true" __default_attr="10642347"></a>
    Make sure to backup your database first or do it your test server.
    Thanks.
    Clint

  • Multiple Leopard Servers - DNS Setup

    Hi guys,
    Just wandering what I need to do when setting up more than one server on the network with my DNS settings.
    I already have a leopard server box, running advanced with DNS setup and working correctly. How do I setup the second server?
    Do I create a machine record on the original server, as if the new server is just another network device, and not turn on dns on the new server?
    Thanks,
    Nige

    "If you like you can add a NS record for the new machine/DNS name, set the new machine up as a secondary/slave DNS and allow for zone transfers in the first primary/master one. "
    hmm, I think I follow.
    "The second one should use the same forwarders as the first one (both machines should only use itself as the DNS in Network prefpane) and also the LAN reverse zone (*.in-addr.arpa.) should be zone transfered to the secondary DNS."
    Are there instructions on setting up a secondary DNS?
    "In DHCP setup also add the second machine/DNS IP so clients can use either/both."
    I'm not running DHCP on the server, so I'm not sure what I can do here.
    I guess I'll need to do a similar thing with directory as a well, so that both servers have the same users and groups.
    Nige

  • Basic DNS Setup

    Heya Guys,
    I'm new to server and in need of a little bit of help.
    What I want to do is run a mail server (kerio) on my Mac Mini which is now running 10.5 server. I need to configure my server to run DNS but I'm not to sure on how to do it.
    My setup is,
    Static IP - Netgear Router - Mac Mini (DNS & Mail Server)
    Is someone able to out line a basic DNS setup for me so I know what I'm doing? Maybe using my domain name as example.com
    Cheers,
    Dave.

    Hello Tim
    +" . . . why would you use kerio mail server when leopard server includes a Mail server? . . ."+
    One reason is the built in Mail Service is not everyone's cup of tea. If you want to effectively use it you have to use to command line. Not everyone wants to do that. If you want out of office replies you have to bolt on something else. Same with an effective backup. If you want to use a unified address book and calendar you have to bring other applications into play. There is nothing wrong with any of that but if you want simplify ease of use and provide something that is an all-in-one solution then Kerio is pretty hard to beat.
    One of Kerio's features is its ability to remotely wipw mobile devices (Blackberries etc) if they have been lost or stolen. I can't find that feature anywhere in the Mail Service. It literally takes only an hour (including download) to get it secured and running all from an extensive but user friendly interface that works. If a group member receives a reply the other members in the group get to know and therefore have no need to reply in turn. I could go on. OK it can start to get expensive as you add more users and also because of the virus subscription, but it can be made to use OSX Server's built in AV and Anti-Spam filters. Neither do you don't need to install it on a Server box. Any client OS will do. All of its features can be accessed using the built-in webmail client supported by all the main browsers. For PC users in a mixed platform environment it behaves in the same way an Exchange Server does.
    It has its own built-in Archive and Backup Feature that does not involve stopping the Mail Service in any way. Its pretty good when you need to restore as well. From an administrative point of view it is as close to click and forget as you can get.
    Don't get me wrong I like Apple's Mail Server - I like the challenge. But given the choice and budget I would go for Kerio every time.
    Just an opinion.
    Tony

  • WRT610N incorrect DNS setup using DHCP with 1.00.03.15

    I just noticed this last night and probably could explian my poor network performance since upgrading to firmware 1.00.03.15.
    All of my computers using DHCP, both wired and wireless, Vista & Linux, show DNS1 as 192.168.1.1 or the routers IP address.  I know that 1.00.03.15 fixed a DNS vulernability, but I can't believe this is by design.  Looks like another bug to me. 
    I reverted back to 1.00.2.10 for now, problem goes away.  Hopefully the performance will improve.
    Anyone else experience this?

    Spoke too soon.  Firmware 1.00.02.10 also experiences incorrect DNS setup when using DHCP.  I upgraded back to 1.00.03.15 and set the static DNS ip address on the main router setup page.  Seems to be working.  Hopefully Time Warner doesn't change there DNS ip address that often.

  • Where do I find the Integration Services Setup Disk?

    When I connect to my VM and select Insert Integration Services Setup Disk from the Action menu, nothing happens.  Should this be on my my Windows Server 2008 R2 DVD that I used to set yp Hyper-V and my two VMs?
    Thanks

    Again, the Integration Services are ONLY for installation inside a virtual machine.  You aren't gonig to see an option for them unless you're connected to a VM via the Hyper-V management console (the option is under the Action menu.)
    Windows 7 includes the Hyper-V integration components, you may need to upgrade them depending on what service pack levels your Win7 and Hyper-V server are on.
    However, the legacy adapter and integration components aren't dependent upon each other. 
    The legacy adapter would be added to your VM before you install an OS in your VM and IC are installed after you finish installing your OS.  With Windows7 you don't need to use the legacy adapter since Windows 7 is a supported OS and Integration
    components are available.
    Also, are you trying to add the legacy adapter while the Windows 7 VM is running or in a saved state? If so, that is the reason it isn't available to install, the VM needs to be powered off.

  • Snow Leopard Server DNS setup

    Where is there a step by step setup for making my Snow Leopard Server with DNS? Essentially, I am looking to setup a mail server but seem to be missing what information I need to gather from the folks that host my domain and how to point traffic to my network.

    When I started setting up my first Mac OS X Servers a few years ago I had to completely retrain my brain because the MacOS does not follow the traditional nomenclature of Windows Active Directory and DNS setup. That being said like AD for Windows MacOS relies very very heavily on a healthy and properly running DNS system, both internally and externally. So one great resource I found was about 10+ hours of training on Leopard Server over to Lynda.com. I think you can sign up for a month long membership but it's well worth the investment if your looking for some basics thru advanced setup of Leopard Server. Now SLS is much much easier at the setup and deployment and some of the fundamentals of the setup interface have changed greatly (as an improvement) but the videos are still very applicable.
    Basically it comes down to the following steps in order to get your website/e-mail/wiki services working.
    1. Purchase your .whatever with a registrar, godaddy, doster, network solutions ect...
    2. Make sure you have a fully routable PUBLIC IP address from your ISP that you can assign to the WAN (internet side of your router)
    3. Contact your ISP and ask then to create an rDNS entry for your .something to the IP address they assigned you. Usually this will look like xxx.xxx.xxx ---> mail.mydomain.com when you test later on.
    4. Modify the DNS records with your registrar to point the MX & A record to your new IP. You will log in create an A record for mail.mydomain.com ---> xxx.xxx.xxx (your public IP on router) and then you will create an MX record for e-mail which will simply be mail.mydomain.com with a value of 10 (there is usually a screen for this).
    5. Once all the DNS is setup and working properly (Can take several days for these changes to take affect and be visible by your ISP) then you can begin the configuration of your router. You will need to determine what IP internally you want your Mac to be. Usually 10.0.0.1 or 192.168.1.1 or other and document that. Program your router to port forward ports 25,110, 80, 143 to the IP that you decided your Mac will be at so those services will be publicly available to you to user. Otherwise nobody will ever be able to send you e-mail or visit your site.
    6. This is a good time to check your work and settings by visiting www.mxtoolbox.com and you verify your rDNS (setup by ISP) and your DNS (Setup by you) before beginning your setup of OS X SLS. If everything checks out then start the install if not STOP HERE and fix it because it will haunt you in the long run.
    7. Start the install of SLS and at some point the system will get you to the screens at which you input your domain information. If all was setup properly up to now SLS will auto-populate the domain and local hostname of your Mac Server. U can change the local hostname if you wish but the domain name information should reflect your rDNS and A record information of mail.mydomain.com and you can hit next and proceed with the rest of the install.
    8. Once up and running you will need to make a small adjustment to the alias of your e-mail. For some reason the engineers at Apple left a flaw in (my opinion) that is as such. Whenever you send e-mail it will go as [email protected] instead of what you really want which is [email protected]. So follow this post below and you will be all fixed up in a jiffy.
    http://discussions.apple.com/message.jspa?messageID=10110723#10110723
    Hope this helps.

  • DNS Setup for Lion.

    I'm a little confused with the DNS setup for Lion Server.
    My scenario is this.
    I have a router, IP 10.0.0.1.
    Server running DNS is manually set to 10.0.0.253.
    FQDN for the server is server1.mycompany.net (it is proper registered and live domain name I have used)
    Externally I use Dyndns to point external folks to mycompany.net, and through the correct ports I can hit the router/gateway with the URL. This confirms that Dyndns is working.
    I have forwarded POrt 80 on the router to 10.0.0.253.
    Currently I have set DNS to have a zone of mycompany.net. Within the zone I have a machine record server1.mycompany.net set to 10.0.0.253
    I think I have set the reverse lookup correctly, but the way it is shown in the DNS record looks strange (IP address looks backwards and says something about ARPA.
    Web Server is running on the server.
    Currently if I go to a web browser inside the LAN and use either www.server1.mycompany.net or www.mycompany.net (or the same without the www) I get an error message. The same occurs outside the lan on an internet connected machine.
    If I enter 10.0.0.253 from inside the lan, I get the Mac WebServer default screen, showing the server is working fine.
    I'm guessing I have made a mess of setting up DNS.
    I'm looking at some point set up a small website, just to prove to myself I can get this working, but I can't work out what I have done wrong.
    Can anyone suggest where to look?
    TIA

    Right now down to diagnostics
    in terminal on server type
    william:~ william$ dig www.wenatcheefirst.org
    below is what i get  copy what you get
    ; <<>> DiG 9.7.3-P3 <<>> www.wenatcheefirst.org
    ;; global options: +cmd
    ;; Got answer:
    ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 29412
    ;; flags: qr rd ra; QUERY: 1, ANSWER: 2, AUTHORITY: 6, ADDITIONAL: 0
    ;; QUESTION SECTION:
    ;www.wenatcheefirst.org.                    IN          A
    ;; ANSWER SECTION:
    www.wenatcheefirst.org.          3600          IN          CNAME          wenatcheefirst.org.
    wenatcheefirst.org.          3600          IN          A          205.186.154.164
    ;; AUTHORITY SECTION:
    org.                              126088          IN          NS          a2.org.afilias-nst.info.
    org.                              126088          IN          NS          d0.org.afilias-nst.org.
    org.                              126088          IN          NS          b0.org.afilias-nst.org.
    org.                              126088          IN          NS          a0.org.afilias-nst.info.
    org.                              126088          IN          NS          c0.org.afilias-nst.info.
    org.                              126088          IN          NS          b2.org.afilias-nst.org.
    ;; Query time: 430 msec
    ;; SERVER: 192.168.88.250#53(192.168.88.250)
    ;; WHEN: Fri Apr 13 20:08:06 2012
    ;; MSG SIZE  rcvd: 208

  • New server Network & DNS Setup

    I just got a New Dual G5 Server and set it up using the pdfs from apple. Mainly the Getting Started Appendix B page 149 Small Business Setup using the Gateway Setup assistant. I ran into all sorts of problems like being unable to login to the open directory and i think it was my DNS setup that was the problem i then changed the setup multiple times using various How-tos in this thread to no avail.
    So i have reinstalled the the Server software and will start again using the following steps.
    This is my first post so i please let me know if i have provided enough info or to much?
    SETUP:
    ADSL 2 connected to DLINK 4 port Wireless Router (24Mbps) 1 port plugged into Ethernet 1 on Server. Router is setup as a DHCP using 192.168.0.1 and 192.168.0.2 for xserve. subnet mask is 255.255.0.0 (dynamic ip address from ISP)
    Xserve Ethernet 2 will provide DHCP and NAT via a 16 port switch to Computers and Printers. Setup as 192.168.2.1, 255.255.255.0
    I want to use the xserve as a file server, filemaker database server, web server for a test site for some of our content and also possibly an email server.
    INSTALL
    1. Install OSX 10.4 with ethernet settings above eth1 is DHCP eth2 is manual
    assigned, no services will be set to start up and i choose Standalone
    Server
    2. Update with Software Update
    3. Setup DHCP for the Clients - Start Service
    4. Setup DNS use " company.private" for the host name and the DNS server ip
    will be the 192.168.2.1 address
    5. Upgrade to Open Directory Master and Kerberize
    6. Setup Sharepoints for Data Storage and Home directory location
    7. Start Apple File Services AFP
    8. Create user Accounts / Groups
    9. Setup Directory Access on clients to see LDAP server and DHCP.
    Login from clients to get an automounted sharepoint and Home directory,
    "sounds easy when i type it up like that".
    Could anyone let me know if i am doing it the right way or if there is anything i have missed wrong order or something important.
    Should i change the routers subnet mask to 255.255.255.0 ?
    Obviously wireless clients will have access direct to internet due to the router and the routers DHCP. Can wireless users access their Home directory in this manner via the ethernet 1 port?
    Should i just let the router handle the DHCP for everyone and plug it into the switch with only 1 ethernet being used on the server?
    I will eventually have to have another subnet for student computers in the future.
    I would greatly appreciate any advice

    Pretty long post, and I doubt anybody here will want to go through the entire setup process. However, I'd re-think your baisc hardware configuration.
    I don't know why everybody gets so excited about using that second ethernet port on the Xserve. It's necessary in some setups, but if you already have a router providing DHCP on a small network it seems like overkill.
    I'd setup the chain in this order:
    Internet - ADSL Modem - Router - Switch - Xserve / Computers / Printers
    Setup your server with a manual IP address (192.168.0.2 is fine). Point it to itself as the DNS server.
    Leave the router at 192.168.0.1, and configure the router to assign DHCP above the Xserve's address (say, from 192.168.0.10 and up). Also let the router handle NAT.
    Network homes work over wireless, but it's not an entirely satisfactory experience. You might consider using portable homes instead; sync times will still be slow, but overall you'll cut down on network traffic and it should at least appear faster to your users.

  • Query on DNS setup for Active Directory for a new data center

    I have third party DNS appliances providing DNS Service for Active Directory (Windows 2008 R2) and there are also secondary DNS servers, which are MS DNS server with a secondary zone configured, for redundancy. I have to setup a new data center
    and move servers/services to this data center. In this scenario, can I install a new Microsoft DNS server with a secondary zone and use this as the primary DNS Server for all the member servers at this new location ? I am aware that this new DNS server will
    not be able to make any updates to the secondary zone and for that purpose, is there anyway to redirect such requests to the DNS appliances in my current data center across the WAN ? I am trying to avoid purchasing a new DNS appliance for the new data center
    and want to know what are the alternatives I have.
     

    im not entirely sure by your setup, as normally you would use AD integrated zones for DNS in an AD environment - although there are other options as you have already setup.
    the fact the zone is a secondary zone in DNS server terms doesn't mean you can't point your clients to it as their primary dns server. They will quite happily resolve names using a secondary server.
    so as long as your dns devices are correctly setup to support the additional secondary zone I see no reason why you couldn't do this.
    Regards,
    Denis Cooper
    MCITP EA - MCT
    Help keep the forums tidy, if this has helped please mark it as an answer
    My Blog
    LinkedIn:

  • I need help with proper DNS setup for 10.5.8 Server

    I'm administering a 10.5.8 server that I sold and setup about a year ago. I'm experiencing issues with getting iCal server to be happy. All of the clients are running 10.5.8, but I'm running 10.6.1. I've heard from others that connecting iCal in 10.6 to a 10.5 iCal Server should be no problem.
    I'm beginning to think that I have DNS issues. Probably because I'm not and never have been 100% certain how to set it up completely correctly. I used to be able to get Kerberos tickets, but now I can't. With the new "Ticket Viewer" in 10.6, it asks for two bits of information. First is "Identity" where I'm guessing I should put [email protected] and then password. When I do this I get an alert dialog that says "Kerberos Error -- cannot resolve network address for KDC in realm example.com"
    The server is a Mac Pro tower with two Ethernet ports. En2 is connected directly to the Internet and has a static IP with a domain name assigned to it. We'll call it "example.com" for the purposes of the discussion. The En1 is connected to the network switch and has a static LAN IP of 192.168.1.250. All clients inside and outside are able to reach the server via domain name for WWW & AFP, no problem.
    nslookup on the static IP address returns "example.com" and nslookup on "example.com" returns the correct static IP address. Open Directory is running and happy including Kerberos. The LDAP search base is "dc=example,dc=com". The LDAP search base is a concept I haven't quite grasped, so I'm just going to assume it's correct.
    The domain name is hosted outside by a service provider that forwards all "example.com" requests to the server with the exception of mail.
    In DNS, I have three "sections" that look like this:
    Name Type Value
    1.168.192.in-addr.arpa. Reverse Zone -
    192.168.1.250 Reverse Mapping example.com.
    000.000.00.in-addr.arpa. Reverse Zone -
    000.000.000.000 Reverse Mapping example.com.
    com. Primary Zone -
    mail.example.com. Alias mail.our-email-isp.com.
    example.com. Machine Multiple values
    www.example.com. Machine Multiple values
    NOTE: the zeros aren't actually zeros, they are the static IP assigned to the server/domain
    When I select the top element "1.168.192.in-addr.arpa." down below "Allows zone transfer" is NOT checked. Nameservers shows the zone as "1.168.192.in-addr.arpa." and the Nameserver Hostname as "ns.example.com."
    When I select the next line down "192.168.1.250", Resolve 192.168.1.250 to: example.com.
    When I select the "000.000.00.in-addr.arpa." element, it has the same settings -- nameservers "000.000.00.in-addr.arpa." and "ns.example.com."
    When I select the next line down (our static IP), Resolve 000.000.000.000 to: example.com.
    When I select "com." the admin email is populated with a valid email address, Allows zone transfer is NOT checked. In nameservers, Zone is "com." and Nameserver Hostname is "example.com." The mail exchangers are mail2.our-email-isp.com. priority 10 and mail.our-email-isp.com. and priority 20.
    When I select the machine "example.com." it shows both the real-world static IP and the 192.168.1.250, same with "www.example.com.".
    Am I doing something wrong with this setup? Should "com." be the primary zone or should that be "example.com." ???
    I've been thinking about getting rid of the DNS entry for the 192.168.1.250 address altogether, but will the clients in the office suffer performance issues??? I do not think that the client workstations are configured to get DNS from the server anyway. Should the "www.example.com." record be a Machine record or should it be an alias record?
    Any help you have to offer is greatly appreciated! Thanks!
    In the meantime, I'm going to look around and see if I can understand "Allows zone transfer" and LDAP Search base a bit better.

    Okay, I found a lovely article at the following address which I think helps me to clarify what I'm doing wrong. Despite that, I'd still like to have any feedback you have to offer.
    http://www.makemacwork.com/configure-internal-dns-1.htm
    Also, when editing DNS entries, Server Admin likes to set the nameserver to "ns." -- whatever your domain is. Should I be overriding that and if so, replace it with what?

  • Proper DNS Setup for SLS

    I have a new MacMini SLS and I need to make sure I am doing things right. I have BrightHouse Business Cable service with 5 static and one with RDNS for apple.ourdomain.com pointed at 1 of the IP's which is currently connected to our new AEBS. The AEBS is DHCP for LAN side and has been setup with ISP DNS.
    When setting up SLS, the server finds that it's internet hostname is apple.domain.com as it should but computer hostname is just always set to apple. Once server is running all e-mail sent comes from [email protected] instead of domain.com which is fixed by adding an alias in the hosting section of mail. But the server itself in DNS is set for the domain apple.domain.com instead of domain.com with an NS of apple.domain.com is this ok? If during setup I change apple.domain.com to just domain.com then dns looks funny again as the domain would be right but the ns is then just set to domain.com instead of apple.domain.com so either way in my mind it's wrong. I just want to do it once and right so that the server runs smoothly and I am not sure what to do.

    Works out just fine.
    Primary address = 10.0.200.2
    Current HostName = apple.ourdomain.com
    DNS HostName = apple.ourdomain.com
    The names match. There is nothing to change.
    dirserv:success = "success"

  • What Is an Appropriate Hostname & DNS Zone Configuration for External DNS Setup?

    I setup servers that are hosted on a secure external data centre. The data centre has its own DNSS, so the DNS service is never setup on the server itself, and is handled by the data centre. I have already setup a handful of servers, and they all seem to be working well. Nevertheless, a couple of people in these discussions have told me, that I'm not setting the servers up 'properly' because of the way I'm naming the server - ie., they believe I'm assigning a 'wrong' hostname - and because of the way I'm setting up subdomains in the zone file. Here is how I'm currently doing it:
    CURRENT SETUP:
    The server is public, and it is also the ONLY machine publicly in the domain zone. So, if the client's domain is "example.com", there is only one machine that will respond to all services in that domain. Because of this:
    - Server Hostname: "example.com"
    - reverse DNS PTR record points to "example.com"
    -  'mail.example.com', 'www.example.com', 'ftp.example.com', etc, are all setup as A records that point to the same IP address as "example.com".
    This has been working fine so far. I have not had any problems with any service, including mail. However, a couple of people suggested that "example.com" is not a fully qualified domain name, and that this setup is therefore  'incorrect', and that it will cause me problems in the future. They suggest I should be setting these servers up like this:
    SUGGESTED SETUP:
    - Server Hostname: "server.example.com"
    - reverse DNS PTR record points to "server.example.com"
    - setup "www.example.com" as a record pointing to the same IP address as "server.example.com", but avoid setting up other subdomains unless absolutely necessary - ie., tell client to use "server.example.com" as the 'proper' address for mail/ftp/etc.
    Technically, 'net', 'company.net' and 'server.company.net' can all be fully qualified domain names, if each one of them points unequivocally to a single IP address. An domain name is not fully qualified, for instance, when it points to a subnet instead of a single IP address. Using "example.com" as a FQDN is technically correct. However, what is 'technically correct' and what Server considers acceptable are not always the same thing....
    I certainly don't want my clients to have problems in the future, and if OS X Server is going to misbehave because of the way I'm setting up my hostname and zone files, I need to know for sure NOW rather than later!

    I'm the "other people" referenced here.
    For general information on DNS, please acquire and skim a copy of Cricket Liu's DNS and BIND book.  It was on its fifth edition when last I checked.  DNS server on OS X Server is the ISC BIND server, which is discussed in that book in some detail.
    If configuring OS X Server in a data center, the OS X Server box probably does not want (nor need) to be running a local DNS server.  (Running local DNS services just means that DNS server will potentially become part of a DNS DDoS, if who can issue queries to the server isn't carefully controlled.)  Use the DC DNS server(s).
    If you want the domain itself to be used as an IP address (eg: example.com), then that's usually an A record, particularly if you're getting email via that domain (and not an MX record going elsewhere).  Some versions of OS X Server have had some issues with setting up this record within Server Admin.app and Server.app.
    The previous issues were likely due to stale DNS translations lurking within the configuration, and caching of that data up to the TTL.  (FWIW, this discussion is related to this thread and this thread.)

Maybe you are looking for

  • Macbook Pro - What to upgrade?

    Hey all, I currently have a Macbook Pro 6,2 (Mid-2010) that runs a 2.66 GHz i7 processor with 4 GB RAM. The computer has the standard 500 GB SATA hard drive and also has the standard NVIDIA GeForce GT 330M graphics card that it came with. Overall, my

  • ITunes 9.2, MS Office 2010 & iOS4... duplicate calendar. How to remove one?

    I just upgraded to Microsoft Office 2010 (I had 2007). When I sync my iPhone to my MS Outlook 2010 I now see two calendars on my iPhone. In MS Office 2007 and the 3.1.3 FW is was okay. Is this a MS Office 2010 issue. I have Windows 7 Ultimate 64 bit

  • Printing standard photos in iphoto

    Hi to all - i'm unable to print photo's from my library. the preview box states that is unable to recognise the paper size of the standard print and then a separate iphoto icon pops up and tells me that i haven't chosen a document to print (when i ha

  • I have two 30 GB iPod's, B&W. But only on will work with iTunes.

    Only one of my iPod's will work with iTunes And I cannot use my other one, because I can't transfer the music on the white iPod on iTunes to the black one. Any answers? :<

  • OSA Pushbutton trouble

    Hi, I'm new to OSA and I am using ERP 2005.  We are using ESS/MSS to allow the users to use the appraisal template and the portal versioning is NW04S SPS7 support pack 10. I have been creating custom pushbuttons to allow for the status flow that has