Configuring and Troubleshooting DNS

Slides:



Advertisements
Similar presentations
Chapter 8 Managing Windows Server 2008 Network Services
Advertisements

MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 6 Managing and Administering DNS in Windows Server 2008.
Web Server Administration
2.1 Installing the DNS Server Role Overview of the Domain Name System Role Overview of the DNS Namespace DNS Improvements for Windows Server 2008 Considerations.
Implementing Domain Name System
Domain Name System. DNS is a client/server protocol which provides Name to IP Address Resolution.
Ersin KARA Istanbul Kültür Üniversitesi Bilgisayar Mühendisliği III
1 DNS. 2 BIND DNS –Resolve names to IP address –Resolve IP address to names (reverse DNS) BIND –Berkeley Internet Name Domain system Version 4 is still.
DNS的配置和排错 刘道军老师主讲 Module 1 如有疑问请与我联系: D
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 2: Name Resolution and DNS.
Chapter 9: Configuring DNS for Active Directory
4.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure.
Hands-On Microsoft Windows Server 2003 Networking Chapter 6 Domain Name System.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 8: Managing and Troubleshooting DNS.
Hands-On Microsoft Windows Server 2003 Administration Chapter 9 Administering DNS.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 5 Introduction to DNS in Windows Server 2008.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 7: Planning a DNS Strategy.
Module 12: Domain Name System (DNS)
Chapter 10 Configuring DNS
Domain Name Services Oakton Community College CIS 238.
Windows Server 2008 Chapter 8 Last Update
Lecturer : Ms.Trần Thị Ngọc Hoa Chapter 2 Methods Configuring Name Resolution Methods.
Configuring and Managing the DNS Server Role Lesson 4.
11.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
DNS and Active Directory Integration
Chapter Overview Understanding DNS Creating Zones
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.1 ISP Services Working at a Small-to-Medium Business or ISP – Chapter 7.
© Wiley Inc All Rights Reserved. MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition.
Name Resolution Domain Name System.
TELE 301 Lecture 11: DNS 1 Overview Last Lecture –Scheduled tasks and log management This Lecture –DNS Next Lecture –Address assignment (DHCP)
Chapter 16 – DNS. DNS Domain Name Service This service allows client machines to resolve computer names (domain names) to IP addresses DNS works at the.
Module Overview Installing the DNS Server Role Configuring the DNS Server Role Configuring DNS Zones Configuring DNS Zone Transfers Managing and Troubleshooting.
Implementing DNS Module D 7: Implementing DNS
1 Objectives Discuss the basics of the Domain Name System (DNS) and its terminology Configure DNS clients Install a standard DNS server on Server 2008.
CN2140 Server II Kemtis Kunanuraksapong MSIS with Distinction MCT, MCITP, MCTS, MCDST, MCP, A+
Windows Server 2008 R2 Domain Name System Chapter 5.
Module 2: Implementing DNS to Support Active Directory
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 7: Domain Name System.
Module 5: Planning a DNS Strategy. Overview Planning DNS Servers Planning a Namespace Planning Zones Planning Zone Replication and Delegation Integrating.
Zone Properties. Zone Properties Continued Aging allows zone to remove “stale” or “old” records for clients who have not updated within a certain period.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 6: Name Resolution.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network, Enhanced Chapter 6: Name Resolution.
October 8, 2015 University of Tulsa - Center for Information Security Microsoft Windows 2000 DNS October 8, 2015.
CITA 310 Section 1 Name Resolution (Textbook Chapter 4)
DNS Zones. DNS records kept in zones DNS server is authoritative for a domain if it hosts the zone for that domain Sub-domains can be kept in same zone.
Fully Qualified Domain Names FQDNs. DNS Database A distributed, hierarchical database Resolves Fully Qualified Domain Names (FQDNs) to IP addresses –
1 Week 7 – DNS and ADDS Integration Review of DNS Concepts, Components, and Processes Install and Configure DNS in an AD DS Domain AD DS, DNS, and Windows.
Objectives Discuss the basics of the Domain Name System (DNS) and its terminology Configure DNS clients Install a standard DNS server on Server 2008 Create.
Module 6: Managing and Monitoring Domain Name System (DNS)
Configuring and Troubleshooting Domain Name System
Configuring Name Resolution and Additional Services Lesson 12.
Windows Server 2003 DNS 安裝設定與管理維護 林寶森
Domain Name System (DNS). DNS Server Service Overview of Domain Name System What Is a Domain Namespace? Standards for DNS Naming.
DNS DNS overview DNS operation DNS zones. DNS Overview Name to IP address lookup service based on Domain Names Some DNS servers hold name and address.
Linux Operations and Administration
Web Server Administration Chapter 4 Name Resolution.
Configuring and Managing the DNS Server Role Lesson 4.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY IT375 Window Enterprise Administration Course Name – IT Introduction to Network Security Instructor.
1 Internet Service DNS & BIND OPS335 Seneca College of Applied Technology.
DNS and Inbound Load Balancing
Understand Names Resolution
Module 5: Resolving Host Names by Using Domain Name System (DNS)
IMPLEMENTING NAME RESOLUTION USING DNS
Benefits of Using Domain Name System (DNS)
LINUX ADMINISTRATION 1
Configuring and Managing the DNS Server Role
Implementing DNS Module D 7: Implementing DNS
Managing Name Resolution
Chapter-2-NameServices
Windows Name Resolution
Presentation transcript:

Configuring and Troubleshooting DNS

Module Overview Installing the DNS Server Role Configuring the DNS Server Role Configuring DNS Zones Configuring DNS Zone Transfers Managing and Troubleshooting DNS

Installing the DNS Server Role Overview of the Domain Name System Role Overview of the DNS Namespace DNS Improvements for Windows Server 2008 DNS Improvements for Windows Server 2008 R2 Considerations for Deploying the DNS Server Role

Overview of the Domain Name System Role Domain Name System is a hierarchical distributed database DNS is the foundation of the Internet naming scheme DNS supports accessing resources by using alphanumeric names DNS was created to support the Internet’s growing number of hosts

Overview of the DNS Namespace Root Domain Top-Level Domain net com org Second-Level Domain contoso Subdomain west south east sales FQDN: SERVER1.sales.south.contoso.com Host: SERVER1

DNS Improvements for Windows Server 2008 New or enhanced features in the Windows Server 2008 version of DNS include: Background zone loading IP version 6 support Support for read-only domain controllers Global single names Global query block list

DNS Improvements for Windows Server 2008 R2 New or enhanced features in the Windows Server 2008 R2 version of DNS include: DNS Security Extensions DNS Devolution DNS Cache Locking DNS Socket Pool Name Resolution Policy Table

Considerations for Deploying the DNS Server Role Subnet 2 DNS Zone DNS Client Subnet 1 DNS Client DNS Server Subnet 3 DNS Zone DNS Client

Configuring the DNS Server Role What Are the Components of a DNS Solution? DNS Resource Records What Are Root Hints? What Are DNS Queries? What Is Forwarding? How DNS Server Caching Works

What Are the Components of a DNS Solution? DNS Resolvers DNS Servers DNS Servers on the Internet Root “.” Resource Record .com .edu Resource Record

DNS Resource Records DNS resource records include: SOA: Start of Authority A: Host Record CNAME: Alias Record MX: Mail Exchange Record SRV: Service Resources NS: Name Servers AAAA: IPv6 DNS Record PTR: Pointer Record

What Are Root Hints? Root hints contain the IP addresses for DNS root servers Root (.) Servers DNS Servers Root Hints com DNS Server microsoft Client

What Are DNS Queries? An iterative query directed to a DNS server may be answered with a referral to another DNS server Client Local DNS Server Root Hint (.) .com mail1.contoso.com Recursive Query 172.16.64.11 Iterative Query Ask .com Ask contoso.com Authoritative Response Contoso.com Queries are recursive or iterative DNS clients and DNS servers initiate queries DNS servers are authoritative or nonauthoritative for a namespace An authoritative DNS server for the namespace will either: Return the requested IP address Return an authoritative “No” A nonauthoritative DNS server for the namespace will either: Check its cache Use forwarders Use root hints A query is a request for name resolution and is directed to a DNS server DNS Client mail1.contoso.com 172.16.64.11 A recursive query is sent to a DNS server and requires a complete answer Database Local DNS Server

What Is Forwarding? A forwarder is a DNS server designated to resolve external or offsite DNS domain names contoso.com Root Hint (.) .com Iterative Query Ask .com Ask contoso.com Authoritative Response Forwarder Recursive Query for mail1.contoso.com 131.107.0.11 Recursive Query Local DNS Server Client ISP DNS All other DNS domains Local DNS Contoso.com DNS contoso.com www.contoso.com Query for Conditional forwarding forwards requests using a domain name condition Client Computer

How DNS Server Caching Works DNS server cache Host name IP address TTL ServerA.contoso.com 131.107.0.44 28 seconds ServerA is at 131.107.0.44 Where’s ServerA? ServerA Client1 ServerA is at 131.107.0.44 Where’s ServerA? Client2

Configuring DNS Zones What Is a DNS Zone? What Are the DNS Zone Types? What Are Forward and Reverse Lookup Zones? What Are Stub Zones? DNS Zone Delegation

What Is a DNS Zone? “.” .com Internet microsoft.com domain DNS root domain .com microsoft.com domain microsoft.com www.microsoft.com ftp.microsoft.com example.microsoft.com microsoft.com zone WWW FTP Zone database Delegated example.microsoft.com zone WWW.example example.microsoft.com www.example.microsoft.com ftp.example.microsoft.com FTP.example Zone database 17

What Are the DNS Zone Types? Zones Description Primary Read/write copy of a DNS database Secondary Read-only copy of a DNS database Stub Copy of a zone that contains only records used to locate name servers Active Directory integrated Zone data is stored in Active Directory rather than in zone files

What Are Forward and Reverse Lookup Zones? Namespace: training.contoso.com Forward zone Training DNS Client1 192.168.2.45 DNS Client2 192.168.2.46 DNS Client3 192.168.2.47 Reverse zone 2.168.192.in-addr.arpa DNS Server Authorized for training DNS Client2 = ? 192.168.2.46 = ? DNS Client3 DNS Client1 DNS Client2

What Are Stub Zones? With a stub zone defined, the location of the na.fabrikam.com zone is known without querying multiple DNS servers Contoso.com (Root domain) na.contoso.com sa.contoso.com ny.na.contoso.com rio.sa.contoso.com DNS server fabrikam.com na.fabrikam.com Stub zone: na.fabrikam.com Stub zone: rio.sa.contoso.com Without stub zones, the ny.na.contoso.com server must query several servers to find the server that hosts the na.fabrikam.com zone Contoso.com (Root domain) na.contoso.com sa.contoso.com ny.na.contoso.com rio.sa.contoso.com DNS server fabrikam.com na.fabrikam.com 20

DNS Zone Delegation contoso.com Sales.contoso.com Training.contoso.com

Configuring DNS Zone Transfers What Is a DNS Zone Transfer? Configuring Zone Transfer Security

What Is a DNS Zone Transfer? A DNS zone transfer is the synchronization of authoritative DNS zone data between DNS servers 1 SOA query for a zone 2 SOA query answered 3 IXFR or AXFR query for a zone IXFR or AXFR query answered (zone transferred) 4 Secondary server Primary and Master server

Configuring Zone Transfer Security Restrict zone transfer to specified servers Encrypt zone transfer traffic Consider using Active Directory-integrated zones Primary Zone Secondary Zone

Managing and Troubleshooting DNS What Is Time to Live, Aging, and Scavenging? Tools That Identify Problems With DNS Monitoring DNS Using the DNS Event Log Monitoring DNS Using Debug Logging

What Is Time to Live, Aging, and Scavenging? Feature Description Time to Live (TTL) Indicates how long a DNS record will remain valid Aging Occurs when records that have been inserted into the DNS server reach their expiration and are removed Scavenging Performs DNS server resource record grooming for old records in DNS

Tools That Identify Problems With DNS Used to: Nslookup Troubleshoot DNS problems Dnscmd Edit the DNS configuration Dnslint Diagnose common DNS issues Ipconfig Display and clear DNS resolver cache Monitoring tab Perform queries against server

Monitoring DNS Using the DNS Event Log Monitor DNS events in the event log to: Monitor zone transfer information Monitor computer events

Monitoring DNS Using Debug Logging Enable DNS debug logging to view granular verbose information about DNS activities

Summary Installing the DNS Server Role Configuring the DNS Server Role Configuring DNS Zones Configuring DNS Zone Transfers Managing and Troubleshooting DNS