DNS Issues with Server 2008 R2

RFC 2671.  This shouldn’t mean much of anything to most of us. This RFC Code, however, can literally mean hours and hours of frustration and troubleshooting if you have created a Server 2008 R2 domain.

Developed in 1999, Extension mechanisms for DNS aka eDNS, were designed to allow for increased functionality of the DNS protocol. They were also critical to the implementation of DNS Security Extensions (DNSSEC). Nevertheless, the protocol hasn’t really caught on and there are still thousands of devices – even ones produced today – that are not really fully compliant with the standards laid out in RFC 2671.

Naturally, the Internet itself is a inter-connected network that is literally running on loads of old and obsolete equipment.  So, it comes as no surprise that there are going to be a few problems arising from the fact that Windows Server 2008 R2, when set up as a DC with the DNS role installed and set to perform recursive lookups, has this extension to DNS enabled by default.

Not everyone, fortunately, will have issues with this as there are of course DNS servers out there that will respond properly to this type of query and respond with the IP address requested. However, if you happen to be running DNS queries against one that is non-compliant, you will end up with extremely patchy Internet service for your whole domain.

To check if this is an issue for your domain, you are going to have to run a few tests.

Open network monitor, and look at the DNS queries that you are getting. If they look like the picture below, you are probably encountering this issue.

dnserror

The fix, luckily, is very simple.  Simply disable eDNS and re-enable it at some point in the future when acceptance of this protocol is a little higher.

Open up a cmd prompt and elevate it (right click on it and run it as an administrator). Then run the following command.

dnscmd /config /EnableEDNSProbes 0

This should take effect immediately.

I sincerely hope that this helps a few of you out there that are just starting to deploy Server 2008 R2 now that SP1 is out.

Cheers!

Matt

8 comments:

  1. earring hook. provide the remaining hemp twine and hemp strings and pull them halfway by means of one other hemp earring hook. On each earrings tie away the strings and twine with an overhand knot.

    ReplyDelete
  2. earring hook. provide the remaining hemp twine and hemp strings and pull them halfway by means of one other hemp earring hook. On each earrings tie away the strings and twine with an overhand knot.

    ReplyDelete
  3. earring hook. provide the remaining hemp twine and hemp strings and pull them halfway by means of one other hemp earring hook. On each earrings tie away the strings and twine with an overhand knot.

    ReplyDelete
  4. earring hook. provide the remaining hemp twine and hemp strings and pull them halfway by means of one other hemp earring hook. On each earrings tie away the strings and twine with an overhand knot.

    ReplyDelete
  5. earring hook. provide the remaining hemp twine and hemp strings and pull them halfway by means of one other hemp earring hook. On each earrings tie away the strings and twine with an overhand knot.

    ReplyDelete
  6. 5000/5000
    عدد الأحرف المسموح بها: 5000
    لم تكن الخنافس اليابانية (Popillia japonica) مشكلة كبيرة في الولايات المتحدة حتى عام 1919 تقريبًا ، عندما بدأت هذه الأم المليئة باليابان غزوًا خطيرًا ، ربما بعد الانتقال إلى أمريكا الشمالية على نباتات الزينة المستوردة. اليوم ، هم مصدر إزعاج خطير للحديقة والمزارعين في جميع أنحاء أمريكا الشمالية.شركة رش مبيدات
    شركة مكافحة النمل الابيض بجدة
    شركة مكافحة حشرات بجدة
    شركة رش مبيدات بجدة

    ReplyDelete
  7. I really enjoy reading and also appreciate your work. Go with site webstagram to downlaod free anything you like on instagram.

    ReplyDelete
  8. Nice article. it is very nice solution Have given dns server 2008. it is very simple fix. whatsapp mod

    ReplyDelete


Copyright © 2010 Paul Guenette and Matthew Sleno.