Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Windows 2003 DNS and ISA2004 Firewall

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 General ] >> General >> Windows 2003 DNS and ISA2004 Firewall Page: [1]
Login
Message << Older Topic   Newer Topic >>
Windows 2003 DNS and ISA2004 Firewall - 13.Dec.2004 2:44:00 PM   
bheusmann

 

Posts: 94
Joined: 13.Oct.2004
Status: online
I am having a troublesome time getting my DNS configured properly. I am
trying to configure a Split-DNS infrastructure as recommended by isaserver.org

Setup as follows:
2 Public IP's assigned to the WAN interface of the ISA Firewall
Private IP 10.0.0.x assigned to LAN Segment
Private IP 192.168.0.x assigned to Perimeter Segment

Perimeter Segment has my External Authoratative DNS for domain
conseptsolutions.com This Server is a W2K3 and a member of the domain
LAN Segment is my Active Directory / Exchange 2003 Server. This is a W2K3
server also with my internal DNS.

Here is a copy of a dns report from http://www.dnsreport.com

http://www.dnsreport.com/tools/dnsreport.ch?domain=conseptsolutions.com

My EXT DNS Server name is consolns01.conseptsolutions.com
My INT AD Server name is consolsrv01.conseptsolutions.com

I have my EXT DNS Forward Lookup Zones as follows:
www A 70.182.188.197
ns2 A 70.182.188.197
ns1 A 70.182.188.196
consolns01 A 192.168.0.2
consolsrv01 A 10.0.0.2
Same As Parent NS ns2.conseptsolutions.com
Same As Parent NS ns1.conseptsolutions.com
Same As Parent NS consolns01.conseptsolutions.com
Same As Parent MX 10 consolsrv01.conseptsolutions.com
Same As Parent A 192.168.0.2

Internal DNS Forward Lookup Zones:
consolsrv01 A 10.0.0.2
exchange A 10.0.0.2
mail CNAME exchange.conseptsolutions.com
webserver A 192.168.0.2
wpad CNAME consolisa01.conseptsolutions.com
www CNAME webserver.conseptsolutions.com
Same As Parent NS consolsrv01.conseptsolutions.com
Same As Parent A 10.0.0.2

Sorry for the long post. I appreciate any help. Thanks.

Bryan
Post #: 1
RE: Windows 2003 DNS and ISA2004 Firewall - 13.Dec.2004 3:14:00 PM   
tshinder

 

Posts: 47669
Joined: 10.Jan.2001
From: Texas
Status: online
Hi Bryan,

The external DNS and the internal DNS should have no knowledge of each other, and should have no records in common. For the exteranl DNS server, remove all references to internal IP addresses, since none of those are reachable to external hosts.

HTH,
Tom

(in reply to bheusmann)
Post #: 2

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 General ] >> General >> Windows 2003 DNS and ISA2004 Firewall Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts