Thursday, April 11, 2013

DNS Troubleshooting



What problem are you having?


The DNS server is not responding to clients.


Cause:  The Domain Name System (DNS) server is affected by a network failure.


Solution:  Verify that the server computer has a valid functioning network connection. First, check that related client hardware (cables and network adapters) are working properly at the client by using basic network and hardware troubleshooting steps.


If the server hardware appears to be prepared and functioning properly, check that it has network connectivity by using the ping command to contact other computers or routers (such as its default gateway) that are used and available on the same network as the affected DNS servers.


Cause:  The DNS server is reachable through basic network testing, but it is not responding to DNS queries from clients.


Solution:  If the DNS client can ping the DNS server computer, verify that the DNS server is started and able to listen to and respond to client requests. Try using the nslookup command to test whether the server can respond to DNS clients.

For more information, see Start or Stop a DNS Server.


Cause:  The DNS server has been configured to limit service to a specific list of its configured IP addresses. The IP address originally used in testing its responsiveness is not included in this list.


Solution:  If the server was previously configured to restrict the IP addresses for which it responds to queries, it is possible that the IP address that are being used by clients to contact it is not in the list of restricted IP addresses that are permitted to provide service to clients.


Try testing the server for a response again, but specify a different IP address that is known to be in the restricted interfaces list for the server. If the DNS server responds for that address, add the missing server IP address to the list.


Cause:  The DNS server has been configured to disable the use of its automatically created default reverse lookup zones.


Solution:  Verify that automatically created reverse lookup zones have been created for the server or that advanced configuration changes have not been previously made to the server.


By default, DNS servers automatically create the following three standard reverse lookup zones based on Request for Comments (RFC) recommendations.


These zones are created with common IP addresses covered by these zones that are not useful in a reverse lookup search (0.0.0.0, 127.0.0.1, and 255.255.255.255). By being authoritative for the zones corresponding to these addresses, the DNS service avoids unnecessary recursion to root servers to perform reverse lookups on these types of IP addresses.


It is possible, although unlikely, that these automatic zones are not created. This is because disabling the creation of these zones involves advanced manual configuration of the server registry by a user.


To verify that these zones have been created, do the following:

  1. Open DNS Manager.
  2. On the View menu, click Advanced.
  3. In the console tree, click Reverse Lookup Zones.

    Where?
    • DNS/applicable DNS server/Reverse Lookup Zones
  4. In the details pane, verify that the following reverse lookup zones are present:
    • 0.in-addr.arpa
    • 127.in-addr.arpa
    • 255.in-addr.arpa

Cause:  The DNS server is configured to use a nondefault service port, for example, in an advanced security or firewall configuration.


Solution:  Verify that the DNS server is not using a nonstandard configuration.


This is a rare but possible cause. By default, the nslookup command sends queries to targeted DNS servers using User Datagram Protocol (UDP) port 53. If the DNS server is located on another network and is reachable only through an intermediate host (such as a packet-filtering router or proxy server), the DNS server might use a nonstandard port to listen for and receive client requests.


If this situation applies, determine whether any intermediate firewall or proxy server configuration is intentionally used to block traffic on well-known service ports that are used for DNS. If not, you might be able to add such a packet filter to these configurations to permit traffic to standard DNS ports.


Also, check the DNS server event log to see if Event ID 414 or other critical service-related events have occurred that might indicate why the DNS server is not responding.


The DNS server does not resolve names correctly.


Cause:  The DNS server provides incorrect data for queries that it answers successfully.


Solution:  Determine the cause of the incorrect data for the DNS server.

Some of the most likely causes include the following:

  • Resource records were not dynamically updated in a zone.
  • An error was made when static resource records were manually added or modified in the zone.
  • Stale resource records in the DNS server database that were left from cached lookups or zone records were not updated with current information or removed when they were no longer needed.

To help prevent the most common types of problems, be sure to first review best practices for tips and suggestions for deploying and managing your DNS servers. Also, follow and use the checklists that are appropriate for installing and configuring DNS servers and clients, based on your deployment needs.


If you are deploying DNS for Active Directory Domain Services (AD DS), note the new directory-integration features. These features can cause some differences for DNS server defaults—when the DNS database is directory-integrated—that differ from the DNS server defaults that are used with traditional file-based storage.


Many DNS server problems start with failed queries at a client. Therefore, it is often a good idea to start there and troubleshoot the DNS client first.


For more information, see Troubleshooting DNS Clients


Cause:  The DNS server does not resolve names for computers or services outside your immediate network, for example, the names of computers or services that are located on external networks or the Internet.


Solution:  The server has a problem with its ability to correctly perform recursion. Recursion is used in most DNS configurations to resolve names that are not located within the configured DNS domain name that is used by the DNS servers and clients.


If a DNS server fails to resolve a name for which it is not authoritative, the cause is usually a failed recursive query. Recursive queries are used frequently by DNS servers to resolve remote names that are delegated to other DNS zones and servers.

For recursion to work successfully, all DNS servers in the path of a recursive query must be able to respond to and forward correct data. If not, a recursive query can fail for any of the following reasons:

  • The recursive query times out before it can be completed.
  • A remote DNS server fails to respond.
  • A remote DNS server provides incorrect data.

Cause:  The DNS server is not configured to use other DNS servers to assist it in resolving queries.


Solution:  Check whether the DNS server can use both forwarders and recursion.

By default, all DNS servers are enabled to use recursion, although the option to disable its use is configurable in DNS Manager to modify advanced server options. The other possible situation in which recursion might be disabled is if the server is configured to use forwarders and recursion has been specifically disabled for that configuration.

Note  

If you disable recursion on the DNS server, you will not be able to use forwarders on the same server.


.
For more information, see Configure a DNS Server to Use Forwarders.


Cause:  Current root hints for the DNS server are not valid.


Solution:  Check whether server root hints are valid.

If they are configured and used correctly, root hints should always point to DNS servers that are authoritative for the zone that contains the domain root and top-level domains.

By default, DNS servers are configured to use root hints that are appropriate to your deployment, based on the following available choices when you use DNS Manager to configure a server:

  1. If the DNS server is installed as the first DNS server for your network, it is configured as a root server.

    For this configuration, root hints are disabled at the server because the server is authoritative for the root zone.
  2. If the installed server is an additional DNS server for your network, you can direct the Configure a DNS Server Wizard to update its root hints from an existing DNS server on the network.
  3. If you do not have other DNS servers on your network but you still need to resolve Internet DNS names, you can use the default root hints file, which includes a list of Internet root servers that are authoritative for the Internet DNS namespace.

Cause: The DNS server does not have network connectivity to the root servers.


Solution:  Test for connectivity to the root servers.


If root hints appear to be configured correctly, verify that the DNS server that is used in a failed query can ping its root servers by IP address


If a ping attempt to one root server fails, it might indicate that an IP address for that root server has changed. Reconfiguration of root servers, however, is uncommon.


A more likely cause is a full loss of network connectivity or in some cases, poor network performance on the intermediate network links between the DNS server and its configured root servers. Follow basic TCP/IP network troubleshooting steps to diagnose connections and determine whether this is the problem.


By default, the DNS service uses a recursive time-out of 15 seconds before failing a recursive query. Under normal network conditions, this time-out does not have to be changed. If performance requires it, however, you can increase this value.

To review additional performance-related information for DNS queries, you can enable and use the DNS server debug log file, Dns.log. This log can provide extensive information about some types of service-related events.


Cause: Other problems exist with updating DNS server data, such as an issue that is related to zones or dynamic updates.


Solution:  Determine whether the problem is related to zones. As needed, troubleshoot any issues in this area, such as possible failure of zone transfer.




The DNS server appears to be affected by a problem for reasons not described here.


Cause:  My problem is not described here.


Solution:  Search TechNet (http://go.microsoft.com/fwlink/?LinkId=170) for the latest technical information that might relate to the problem. If necessary, you can obtain information and instructions that pertain to your problem or issue.

If you are connected to the Internet, the latest operating system updates are available at Microsoft Update (http://go.microsoft.com/fwlink/?LinkId=284).



Monday, April 8, 2013

SCCM Basics & FAQ: SCCM Basics & FAQ

Hi,

Today One of my friend asked me about SCCM over phone. i have research on internet about  the same i have found the following post may useful for my readers. so i end up with this post. 

Microsoft SCCM -2007 (Configmgr) Provides A Comprehensive Solution For Change And Configuration Management For The Microsoft Platform, Enabling Organizations To Provide Relevant Software And Updates To Users Quickly And Cost-Effectively, Allows IT Staff To Monitor And Manage The Hardware & Software In A Modern Distributed Environment.


SCCM 2007 Features
  • HW/SW Inventory
  • Software Distribution
  • Software Update
  • Software Metering
  • Operating System Deployment (Image Capture/Deployment, User State Migration, Task Sequence)
  • Manage Site Accounts Tool (MSAC)
  • Asset Intelligence Remote Tools

NAP Works with Windows Server 2008 operating system Network Policy Server to restrict computers from accessing the network if they do not meet specified requirements The System Center Family, The products included under the System Center umbrella address the challenges of managing information technology in organizations of different sizes.
 
SCCM Basics & FAQ: SCCM Basics & FAQ: A Short notes on ' SCCM 2007 Basics' I've been looking for short notes that facilitate quick understanding knowledge on SCC...


Thanks
R.karthikeyan

Friday, April 5, 2013

Google Apps Alternative



I have been using Google Apps (Standard Edition) ever since I started using my first custom domain email and I continue to be a great fan of it till date. The reason why I still use and recommend Google Apps is because of their phenomenal features, simplicity and its availability free of cost. I got free 50 email accounts when I signed up for it in early 2009 (Before January 2009 it was 200 email accounts).
  • On May 10, 2011 the number of free email accounts dropped from 50 to 10
  • December 7, 2012 Google discontinued the free version of Google Apps
Those who subscribed the service before December 7, 2012 can continue to use the service free of cost.
But, what about if you are signing up today? The only option in Google Apps is to subscribe for their business edition.
Google Has officially ended its 10 user Free Google Apps Accounts and the search for a free Google Apps Alternative began. You can still get a 1 user Google Apps account through the Google Apps Engine but since it’s only good for one user it doesn’t really make sense for anybody other than people building apps that need a noreply@domainname.com email.

I started to look for a Google Apps Alternative because I didn’t want to setup an email server for all my new hosting clients and most importantly as replacement for Google Docs. Thankfully there are few Google Apps Alternative services that are defiantly good enough to replace Google Apps and not look back.
Zoho Mail  is a great replacement for Google Apps and has loads of add-ons. I love the fact that even the free version is completely add free. The interface is nice and very easy to get used to. They have android and iOS apps and have a 99.9% uptime guarantee. The main downfall is that the free version only allows a maximum of 5 users. That may work for some people but it’s just too few for most of my clients. My typical client setup includes 3 primary email accounts. sales@domainname.com info@domainname.com and webmaster@domainname.com, It still leaves the client only 2 emails.

The best Google Apps Alternative I found to date is the new outlook.com you can use your own custom domain and since its Microsoft you get excel/word/PowerPoint all better than the Google Docs we all grown use to. There’s also a nice online calendar and the UI is very clean and modern. You are allowed 500 emails/users and get 7 gigs space free on SkyDrive. After using it for a few days I have really grown used to it and the main thing I miss about Google Apps is the option to get a Google Voice number for free. I’m not sure how long Google is going to give out Free Google Voice numbers since it looks like it’s moving away from free services. I’m starting to keep an eye out on Google Analytics alternatives in case the big changes coming soon include eliminating free Analytics. Online Outlook is very easy to setup.

If you have any other alternatives I’d love to hear about them in the comments!

Thanks
R.karthikeyan

Share this

Labels

WINDOWS SERVER (22) Windows (20) IIS (15) Interview questions (10) TFS (9) Troubleshooting Tips (9) Fortigate Firewall (8) SQL (8) Backup (6) Team Foundation Server (6) Webserver (6) Windows Administration Task (6) Microsoft certification (5) Virtualization (5) ADDS (4) Active Directory (4) FTP (4) PHP (4) SQL 2012 (4) SQL Server (4) server (4) DBA (3) MSSQL (3) Networking (3) Offer (3) Webhosting (3) Windows 8 (3) 74-409 (2) Agile Methodology (2) Apache (2) CLI Commands (2) DNS (2) Dedicated server (2) Difference between Active and Passive Connection Mode (2) Fortinet (2) GPO (2) IIS8 (2) IPAddress (2) IPV6 (2) MVA (2) Microsoft News (2) NAT (2) Software Development (2) TFS2013 (2) Uncategorized Post (2) XAMPP (2) firewall Administration. (2) powershell (2) .htaccess (1) ALM (1) Agile vs Scrum Difference (1) Blogging TIPS (1) CPanel (1) Command for Administrator (1) DC (1) DHCP (1) Domain joining nano server (1) Exam 74-409 (1) Excel TIps (1) File server (1) Fortigate Firewall HA (1) Fortigate Firmware Upgrade (1) Free Exam 70-740 (1) Free Voucher (1) Generation2 VM (1) Group Policy (1) HP (1) HP ILO IP CHange (1) HP OA IP Change (1) HP Proliant Servers (1) HTTP to HTTPS (1) Hyper-V (1) IAS (1) IIS Server hardening (1) ILO (1) Install dll (1) MCSA 2016 (1) Microsoft Virtual Academy (1) Microsoft file sharing Port (1) Migration (1) MySQL (1) NPS (1) Nano server (1) Network Drive (1) OA (1) Plesk Panel (1) Ports (1) Ports for windows file sharing (1) RADIUS (1) RDP (1) Remote Desktop Connection (1) SCRUM (1) SQL ErrorLog (1) SQL TEMPDB (1) Second Shot (1) Server 2012 (1) Startup Parameters (1) TEMPDB Movement (1) TIPS (1) Team Foundation Server 2013 (1) Temp profile. (1) Troubleshooting DNS (1) URL Rewriting (1) VDOM (1) VPS (1) VSS (1) Virtual Labs (1) Visual Studio (1) Visual Studio 2012 (1) Visual Studio 2013 (1) Visual source safe (1) Waterfall Model vs Agile Methodology (1) Windows 2016 (1) Windows 7 (1) Windows Server 2012 (1) Windows command line (1) XP (1) certification path (1) exam (1) free online courses (1) protocols/ports for windows file sharing on a firewall (1) sql error (1) what features has been installed in your SQL Server (1) windows 2012 (1) windows Time Service (1) work item types difference (1)

E-Books

Blogger Gadgets