OD replica, DNS secondary zone, server will not resolve itself

We are testing an OD replica to run in a separate location from our OD master. Master OD and DNS is all set and working as expected. Separate location network user connections and DNS all work as expected when calling the OD master and DNS primary zone. The OD replication works fine. I want to use the same machine as a DNS secondary zone getting its records from the DNS on the OD master. DNS secondary zone seems to pull the records from the primary without trouble.
In testing the secondary DNS without forwarders or backup DNS systems, known internal addresses are resolved by the clients correctly. The issue that I am trying to resolve is that server will not resolve itself. I have the System Preferences / Network / DNS pointed to 127.0.0.1. The DNS is resolving for the clients. Running changeip -checkhostname gives
"The DNS hostname is not available, please repair DNS and re-run this tool."
If I ask a client to browse to the server's web site it resolves fine and I get the default page as expected.
With all of the above in mind, binding a local client to the OD replica and pointing the clients' DNS at the DNS secondary zone results in failure of the bind and the client saying that the server is not responding. If the DNS on the client is pointed to the DNS primary zone, the bind works fine and everything behaves as expected. Pointing the Server to the DNS primary zone resolves the problem as well and it is able to resolve itself.
The problem is that if our connection to our primary site goes down, I want everything to function independently at the second location. If the primary DNS zone is gone the OD replica server cannot resolve itself and authenticaion then does not happen making the OD replica pointless.
Any ideas?
Thanks.

Found it. I did not copy the reverse mappings from the primary DNS zone.
On the primary zone
- In Server.app/DNS/ select show all records in the gear
- double click reverse header for each subnet and indicate to allow zone transfer for the reverse records
On the secondary zone
- Add additional secondary zones for the exact title of each reverse record zone
- example main records are FQDN.com
- reverse records are 2.81.10.in-addr.arpa for the items in the 10.81.2.0 subnet
OD replica now resolves itself.

Similar Messages

  • The App Store print is too small and apparently unadjustable.  I am in my 60s and this problem will not resolve itself over time.  How does one effectively complain to Apple?

    The App Store print is too small for my 7th-decade eyes and is apparently unadjustable.  How does one effectively complain to Apple about this?
    Thanks, Jeremy

    Hi Jeremy...
    There's a work around that may help you. The Mac OS X has "accessibity" features installed that can assist in viewing text.
    Open System Preferences then select Universal Access then select the Seeing tab.
    Zoom settings are available there.
    More about Mac OS X accessiliity here >  Apple - Accessibility - OS X - Vision
    You can provide feedback to Apple here >  Apple - Mac OS X - Feedback
    If you are not aware, when viewing Safari webpages, you can press Command + (plus)  or Command - (minus) to adjust the size of the page.
    For zooming text only, click View from the Safari menu bar then from the drop down menu click Zoom Text Only.

  • Mail, iCal Server and iChat server will not work over VPN

    I have an Airport Extreme Base Station at the office running the network. Behind it sits a Mac Mini Snow Leopard server running 10.6.3. The ports necessary for Mail, iCal Server and iChat work fine through that external connection. I can also connect with VPN from my 10.6.3 clients.
    HOWEVER, when I connect with the VPN clients, I am suddenly unable to access the Mail, iCal Server, Wiki server and iChat server. All connections time out. I can ping the server and I can do other things that do NOT work on the public Airport like ssh or VNC. ssh and VNC are closed at the airport extreme.
    So it's pretty odd. When I'm connected via the VPN, all ports that are forwarded to the Snow Leopard server time out over the VPN.
    I've tried various and sundry configurations with the VPN client. This includes trying to send all traffic over the VPN, moving it up in the service order, etc. etc. Nothing fixes it. DNS resolution is working fine, however when I do a wireshark capture of ppp0 traffic, I notice that SSL and TLSv1 handshakes appear to occur on the public IP address instead of the private network IP address... and they're all resets.
    Has anyone gotten this to work successfully? Like I said, all ports that are NOT forwarded through the Airport work fine over the VPN, but will not work when connected to the VPN. It's really bizarre.

    New data: any ports that are normally forwarded on the Airport Extreme to the Mac Mini server will not work when connected to the VPN.
    For instance, if I have imaps/993 forwarded from the Airport Extreme to the Mac Mini, it works fine over the Internet. If I connect to the VPN, I can connect to all OTHER services on the Mac Mini, but Mail, for instance, will not work.

  • Upgraded ZENworks Primary Server Will Not Refresh

    Good Afternoon,
    I recently upgraded our primary server from ZENworks 11.2-11.3a.
    The upgrade procedure completed with no errors. However, the server will not refresh it's status in the ZENworks Control Center. Control Center continues to report the server as 11.2.0.0. The UI of the Control Center is upgraded. The agent continues to push back the next contact with server time without updating the last contact with server time
    Things I have tried:
    -doing a manual refresh through control center gives a "Connection Failed" error
    -doing a manual refresh with zac ref completes successfully but does not update anything
    -cleared the agent cache using zac cc
    Any help would be appreciated.
    Thank you very much!

    Try the solution you find in this thread:
    http://forums.novell.com/novell-prod...nt-management/
    zenworks/configuration-management/zcm-11/zcm11-agent-deployment-linux/45
    5516-how-recover-lost-trust-relationship-zone-configuration-between-linu
    x-zcm-agent-primary-zone-server-running-same-machine.html
    W. Prindl
    wpico wrote:
    >
    >CRAIGDWILSON;2331318 Wrote:
    >> This is because the Agent Service (Servers have an agent too)
    >>cannot talk to the zone.
    >>
    >> Normally the only time this is noticed is during a "System Update",
    >> since this is one of the few times the failure would be noted.
    >>
    >> However, the 11.3.0 Upgrade would not have relied on the agent
    >>server and since you upgraded from 11.2.0, another ISO install, it
    >>is quite possible there were always some issues there.
    >>
    >> "zac retr" might help, but it also may be wise to open an SR so
    >>they can
    >> see what is wrong and not just have you poking and prodding your
    >>only primary.
    >>
    >>
    >> On 8/28/2014 4:46 PM, wpico wrote:
    >> >
    >> > nop1983;2331309 Wrote:
    >> >> wpico wrote:
    >> >>
    >> >>>
    >> >>> Good Afternoon,
    >> >>>
    >> >>> I recently upgraded our primary server from ZENworks
    >>11.2-11.3a. >>>
    >> >>> The upgrade procedure completed with no errors. However, the
    >> server
    >> >>> will not refresh it's status in the ZENworks Control Center.
    >> Control
    >> >>> Center continues to report the server as 11.2.0.0. The UI of
    >>the >>> Control Center is upgraded. The agent continues to push
    >>back the next
    >> >>> contact with server time without updating the last contact with
    >> server
    >> >>> time
    >> >>>
    >> >>> Things I have tried:
    >> >>> -doing a manual refresh through control center gives a
    >>"Connection >>> Failed" error
    >> >>> -doing a manual refresh with zac ref completes successfully but
    >> does
    >> >>> not update anything
    >> >>> -cleared the agent cache using zac cc
    >> >>>
    >> >>> Any help would be appreciated.
    >> >>>
    >> >>> Thank you very much!
    >> >>
    >> >> Only one server?
    >> >> Sounds like the agent could have lost the trust, somehow... The
    >> update
    >> >> went fine?
    >> >>
    >> >> --
    >> >> Niels
    >> >> I have always liked... Cowabunga!
    >> >>
    >> >> If you find this post helpful, please show your appreciation by
    >> clicking
    >> >> on the star below.
    >> >> A member must be logged in before s/he can assign reputation
    >>points. >
    >> > Completed with no errors, The log file was all green.
    >> >
    >> >
    >>
    >>
    >> --
    >> Going to Brainshare 2014?
    >> http://www.brainshare.com
    >> Use Registration Code "nvlcwilson" for $300 off!
    >>
    >>
    >> Craig Wilson - MCNE, MCSE, CCNA
    >> Novell Technical Support Engineer
    >>
    >> Novell does not officially monitor these forums.
    >>
    >> Suggestions/Opinions/Statements made by me are solely my own.
    >> These thoughts may not be shared by either Novell or any rational
    >>human.
    >
    >When I run zac retr I get, "Failed to re-establish trust with zone"

  • DNS Server does not resolve new generic Top Level Domain names- CNR configuration issue?

    Hi all,
    I am not sure if this is the correct community to post this question, but I will give it a try. I noticed that the users of my network cannot resolve web sites using new top level domain names, like ".education", ".international", etc. I have an internal DNS server made by Infoblox and a Cisco CNR v6.3.3.1 as an external DNS server. Infoblox uses CNR as its forwarder and CNR uses the root DNS servers for queries.
    I would think that CNR was the problem because it is an obsolete product but after speaking with a fellow engineer at another organization where they still use an older version of CNR than mine, they have no problems at all. So now I am thinking it is a setting either on Infoblox, or on CNR I need to change. I can see Infoblox is forwarding the requests to CNR but that's about it. I am not sure if CNR is discarding the request. When I do an nslookup from a PC in my network it does not matter if I set my DNS server to be the Infoblox or the CNR. Neither resolves the URL.
    Then again, no matter what I lookup using the CNR as my DNS, I only get a response with the root DNS names and IPs!
    Any help is appreciated!

    Hi Constantinos,
    Have you taken a look at the infoblox community site?  We've just reposted your question there and alerted some internal SMEs that should provide a solution soon.  
    https://community.infoblox.com/forum/ddi/dns-server-does-not-resolve-new-generic-top-level-domain-names-cnr-configuration-issue
    Best,
    Eric

  • OSX 10.6.8 server will Not Boot

    Hi my 10.6.8 server will not boot.  System is a 2009 Mac pro.  I have run disk utility from the original server software install disk, ran repair disk, and repair disk permissions.  Get some acl found errors have read that they most often are erroneous, Still got the same errors after permission repairs.  While booting in verbose mode get the following messages before it stops:
    kern.maxprocoeruip: 266 -> 2400
    launchctl: Couldn't stat("/library/LaunchDaemons/org.macports.asterisk.plist"): Nosuch File or directory (note: removed asterisk from this system months ago)
    launchctl: Please convert the following to launchd: /ect/mach_init.d/chum.plist
    launchctl: Please convert the following to launchd: /ect/mac_ini/dashboardadvisoryd.plist
    launchctl: Please convert the following to launchd: /ect/mach_init.d/pilotfish.plist
    Unexpected error triggering kextd volume watching.
    /: Couldn't get description from Disk Arbitration..
    I did read on another post here to try to reinstall the os, however when I try to install over the operating system it says I am trying to install an older os and it will not let me install in the same volume....  Although I am confident I have all the data on backups as well have timemachine backups, I would rather not have to erase and install this machine. 
    Any insight to this problem would be greatly appreciated. 

    I found that I had a bad harddrive, or at least that is what I think happened..  I did have a time machine backup as well, although in hindsight, I should have made some manual backups of my open directory and the databases hosted on the server.  In any case I ended up purchasing "server grade" harddrives and reinstalling the OS on to the new blank hard drives, I was then able to recover from my time machine backup, however, I did have the issue of the restore going over 100%, I tried this several times and the same result with no end after hours and hours.   After reading through various forums I found that clicking the mouse button for about 10 minutes straight once it hit 100% finally worked, I was lucky that the Time machine backup had good data on it since I have read several posts saying that Time machine doesn;t backup directoies or any "open files" very well, however I had no problems after recovering from the backup.  I do however now backup or archive my directory everyday, and I rely on Filemaker to backup its own databases, however I still use time machine as well... 

  • Mac mini server - will not take 4GB so-dimm in bank 0

    Mac mini server - will not take 4GB so-dimm in bank 0
    Hello,
    Memory works ok as long as the old 2gb 1066 so-dimm is in bank 0.
    Switching the dimms around is no go. It seems to need that bank 0 populated with an old 2gb.
    I can use only one 2gb and one 4gb for the mini server to boot.
    It seems to have a hard time figuring out the 2x4gb configuration.
    Tried PRAM and NVRAM reset. Always getting 3 beeps.
    Any chance of getting the full 8gb detected?

    Hi All,
    I had the same problem that you, I had a mac mini server late 2009 with 10.7.3 OS X, with 4 GB of memory.
    I have got these two memories on amazon:
    "8Go mémoire - Kit double canal SAMSUNG original 2 x 4 Go 204 broches DDR3-1066 PC3-8500 SO-DIMM (2x M471B5273BH1-CF8) mémoire portable ordinateur DD"
    First test to install in the mac mini:
    Slot 0 - 4 GB
    Slot 1 - 4 GB
    3 beeps
    2nd test
    Slot 0 -
    Slot 1 - 4 GB
    OK
    3rd Test:
    Slot 0 - 4 GB
    Slot 1 - 1 GB
    3 beeps
    4th Test:
    1 - 1 GB
    2 - 4 GB
    OK
    5th test:
    reset PMU
    Slot 0 - 4 GB
    Slot 1 - 4 GB
    3 bips
    6th Test:
    I did a test of the 2x4 GB in a mac mini 2010
    OK
    7th test:
    Slot 0 - 2 GB
    Slot 1 - 4 GB
    OK
    After to read this forum I gave up and I decided to let the mac mini with 6 GB. Well, as I wanted to try it again one last time, I tried to put the slot 0 memory forcing a bit. But I did not noticed nothing special.
    Well, at this last time, it works. 8 GB in the mac mini server
    here some screenshots:
    I hope this info will help you to resolve this problem. But seriously, I am not giving you nothing else than hope

  • HT1688 This morning loaded 7.0.4 and noticed that my email pop server will not download email and when I try to delete apps the X doesn't pop up in the left corner anymore.  The app wiggles but the X is gone.

    This morning after downloading 7.0.4 I've noticed that my email POP server will not download my email.  Also you can not delete apps.
    With the app wiggling the "X" doesn't appear in the upper left corner which allows you to delete that particular app. I have told friends
    that are still on 7.0.3 not to download 7.0.4.

    The "x" only appears on apps that you are allowed to delete. You cannot delete the Apple-supplied Apps like Mail. There is no problem here with iOS 7
    Also make sure that you do not have a restriction set on "deleting apps". If this is set you will not be able to delete any App. See Settings > General > Restrictions

  • Message server will not start on AIX 6

    I have a standard ECC6 system running the 185 kernel and ORACLE 10.2.0.2 on AIX 6. which is giving me a problem. I also have 2 other systems apparently with the same configuration which operate perfectly.
    The problem I have is that if I stop the system the message server will not start. If I wait until the following day the message server starts pefectly. I have not been able to test stopping the system and waiting an hour or so and then restarting in the same day, so I do not know if the overnight wait is relevant.
    dev_ms contains the following:
    [Thr 01] Fri Jun 19 23:58:54 2009
    [Thr 01] WLM Tag 'HQS/MSG' successfully set for this process
    [Thr 01] MsSSetTrcLog: trc logging active, max size = 20971520 bytes
    systemid   324 (IBM RS/6000 with AIX)
    relno      7000
    patchlevel 0
    patchno    163
    intno      20050900
    make:      multithreaded, ASCII, 64 bit, optimized
    pid        254088
    [Thr 01] ***LOG Q01=> MsSInit, MSStart (Msg Server 1 254088) [msxxserv_mt. 1835]
    [Thr 01] SigISetDefaultAction : default handling for signal 20
    [Thr 01] ***LOG Q0I=> NiIBindSocket: bind (67: Address already in use) [nixxi.cp
    p 3227]
    [Thr 01] *** ERROR => NiIBindSocket: SiBind failed for hdl 1 / sock 8
        (SI_EPORT_INUSE/67; I4; ST; 0.0.0.0:3950) [nixxi.cpp    3227]
    [Thr 01] *** ERROR => MsSCommInit: NiBufListen(3950) (rc=NIESERV_USED) [msxxserv
    _mt. 10186]
    [Thr 01] *** ERROR => MsSInit: MsSCommInit (internal) [msxxserv_mt. 1886]
    [Thr 01] *** ERROR => main: MsSInit [msxxserv_mt. 5951]
    [Thr 01] ***LOG Q02=> MsSHalt, MSStop (Msg Server 254088) [msxxserv_mt. 5999]
    Regards,
    Paul Richardson
    Certified Netweaver, Portal and Migration Consultant
    Sandpiper I.T. Ltd

    Hi,
    Thr 01 ***LOG Q0I=> NiIBindSocket: bind (67: Address already in use) [nixxi.cp p 3227]
    Looks like port 3227 is already used. You can check the ports by netstat -a -n from your command prompts. Also check your settings in /etc/services and /etc/hosts files.
    Check your filewall rules/disable antivirus if any and give a go.
    Hope this helps.
    Manoj

  • I am getting a message saying that I cannot get email because the server will not connect - although it does. It also claims that it was last backed up on Friday last. What h

    I changed my server at the end of May & all worked well until the past week end since when I am getting a message saying that I cannot get email because the server will not connect - although it does. It also claims that it was last backed up on Friday last despite having had several emails since Friday. What has happened & can I get email back to normal?

    Hello Stern snapper
    If you are having issues with receiving email on your iPad, then check out the article below to troubleshoot the issue. You may just need to remove the email account and add it back in.
    iOS: Troubleshooting Mail
    http://support.apple.com/kb/ts3899
    Regards,
    -Norm G.

  • DNS workng but not resolving itself

    Just promoted my 1st 2012 server to DC to replace 2003 DC.  DNS has replicated to 2012 and zone entries are the same on both servers.  The hostname of the 2012 server is not resolving even though there is entries in DNS on both servers for it.
    DNS on the 2012 server seems to be resolving everything else correctly except it's own name.  Network discovery and file share are enabled.  The NIC on both servers has the IP address of the 2003 server for DNS.   I can get to the 2012
    server if I use it's IP address but Client computers need to be able to get to the 2012 server by hostname. 

    try :
    1. Restart DNS services
    2. run these commands on server :
    ipconfig \flushdns
    ipconfig \registerdns
    Arnav Sharma | http://arnavsharma.net/ Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading
    the thread.

  • TNS will not resolve DEMO

    i have a first time install, with the DEMO database. i try "sqlplus system/manager@DEMO" and TNS will not resolve. i started the appropriate listener, and it says it is listening to DEMO. i am not on a network, just using local machine. the tnsnames.ora, sqlnet.ora, and listener.ora files seem to be fine, any help?

    This message says that Oracle can find the database with DNS that you have given.
    With a tnsping, you can verify it.
    Below, I have a problem with my listener but Oracle can resolve the DNS orcl.
    C:\Documents and Settings\Nicolas>tnsping orcl
    TNS Ping Utility for 32-bit Windows: Version 10.2.0.4.0 - Production on 09-JAN-2009 10:02:03
    Copyright (c) 1997,  2007, Oracle.  All rights reserved.
    Used parameter files:
    C:\oracle\product\10.2.0\db_1\NETWORK\ADMIN\sqlnet.ora
    Used TNSNAMES adapter to resolve the alias
    Attempting to contact (DESCRIPTION = (ADDRESS_LIST = (ADDRESS = (PROTOCOL = TCP)(HOST = ngerard)(PORT = 1521))) (CONNECT_DATA = (S
    ERVER = DEDICATED) (SERVICE_NAME = orcl)))
    TNS-12541: TNS:no listener
    C:\Documents and Settings\Nicolas>You can see above the used parameter files :
    C:\oracle\product\10.2.0\db_1\NETWORK\ADMIN\sqlnet.ora
    Oracle need to know the directory where to find the file that define the TNS.
    The directory is thus :
    C:\oracle\product\10.2.0\db_1\NETWORK\ADMIN\
    Normally, you find in this directory the file tnsnames.ora which makes the link between you DNS (ORCL) and the database.
    Below a example on my computer :
    ORCL =
      (DESCRIPTION =
        (ADDRESS_LIST =
          (ADDRESS = (PROTOCOL = TCP)(HOST = ngerard)(PORT = 1521))
        (CONNECT_DATA =
          (SERVER = DEDICATED)
          (SERVICE_NAME = orcl)
      )What you can do to help Oracle to find this file, is to add an environment variable TNS_ADMIN with this value C:\oracle\product\10.2.0\db_1\NETWORK\ADMIN\.
    Restart the Oracle BI Administration Tool and normally, you're done !
    Good luck

  • My Time Capsule expired and no longer works. My printer (a HP) will now not work as it still wishes to connect through the Time Capsule. It will not allow itself be recognised through a USB connection to my Mac. Anyone got any ideas?

    My Time Capsule expired and no longer works. My printer (a HP) will now not work as it still wishes to connect through the Time Capsule. It will not allow itself be recognised through a USB connection to my Mac. Anyone got any ideas?

    You will need to install the printer on your Mac
    Open System Preferences (gear icon) on the dock
    Open Print & Fax
    Click the + (plus) button at the bottom of the printer list
    Wait for your printer to appear in the next box, then click it to highlight it
    Click Add at the lower right
    Be sure to select the correct printer when you try to print as you will see your printer listed twice. Good idea to make the printer now installed on your Mac the default printer so you do not have to choose which printer to use each time you want to print.
    You can also go into Print & Fax, select the printer associated with the Time Capsule and click the - (minus) button if you want to delete that location.

  • 0xc0000001 error & i have no repair disk for win 8.1 - system will not repair itself

    0xc0000001 error & i have no repair disk for win 8.1 - system will not repair itself happened after microsoft updates

    Boot your computer into Safe Mode usually by tapping the F8 key at boot.  Select Safe Mode with Command Prompt.
    From there type  rstrui.exe and select a Restore Point prior to the time the problem started.
    If unable, you will have to perform a Factory Restore.
    Please mark my post as SOLVED if it has resolved your problem. It helps others with similar situations.

  • Aliases will not resolve after 10.6.8 upgrade

    I just upgraded to 10.6.8 on my power mac and now my desktop aliases will not resolve. Any ideas how to fix this?

    Reinstall OS X without erasing the drive
    Do the following:
    1. Repair the Hard Drive and Permissions
    Boot from your Snow Leopard Installer disc. After the installer loads select your language and click on the Continue button. When the menu bar appears select Disk Utility from the Utilities menu. After DU loads select your hard drive entry (mfgr.'s ID and drive size) from the the left side list.  In the DU status area you will see an entry for the S.M.A.R.T. status of the hard drive.  If it does not say "Verified" then the hard drive is failing or failed. (SMART status is not reported on external Firewire or USB drives.) If the drive is "Verified" then select your OS X volume from the list on the left (sub-entry below the drive entry,) click on the First Aid tab, then click on the Repair Disk button. If DU reports any errors that have been fixed, then re-run Repair Disk until no errors are reported. If no errors are reported click on the Repair Permissions button. Wait until the operation completes, then quit DU and return to the installer.
    If DU reports errors it cannot fix, then you will need Disk Warrior and/or Tech Tool Pro to repair the drive. If you don't have either of them or if neither of them can fix the drive, then you will need to reformat the drive and reinstall OS X.
    2. Reinstall Snow Leopard
    If the drive is OK then quit DU and return to the installer.  Proceed with reinstalling OS X.  Note that the Snow Leopard installer will not erase your drive or disturb your files.  After installing a fresh copy of OS X the installer will move your Home folder, third-party applications, support items, and network preferences into the newly installed system.
    Download and install the Combo Updater for the version you prefer from support.apple.com/downloads/.

Maybe you are looking for

  • Help XSLT Data Mapper and Transformations

    Hi guys, I need help in oracle ESB (XSLT Data Mapper and Transformations). I need to use the XSLT Data Mapper and Transformations using Response XML to Request XML. Thanks Vyas

  • Terminal window scrollback is saved somewhere?

    Dear Mac enthusiasts, Every Terminal window has a history, which is evident because you can scroll all the way back. In the Terminal Preferences there is even an option where you can set the Scrollback to unlimited, or limit it to a number of lines.

  • Lines over watermark

    Hello, Is there anyway, using Crystal Reports designer, to have a watermark that appears below the boxes and lines in a report ? When I try to add lines or boxes in the watermark report sample given by Crystal, lines are always displayed under the wa

  • How do Design Mode Settings get Packaged?

    Hi, I've got a question about packaging a Site's Design Mode settings. If I edit the Settings of a parsys in Design Mode (i.e. Anchors, or Allowed Components), where in the JCR do these settings get stored?  How do I ensure they are packaged? I'm sur

  • Can I chat with my other apple devices over Bluetooth ?

    I would like to chat with other apple devices using a non wifi connection, would a Bluetooth network be an option?