DHCP And DNS Relation WIth ADo (Full Version)

All Forums >> [ISA 2006 Firewall] >> Network Infrastructure



Message


Intasar -> DHCP And DNS Relation WIth ADo (24.Jul.2008 5:05:41 PM)

Hello every one,

here i m making lots of topics for asking questions about  ISA2006 but now i want to understand some DHCP, DNS With AD Relationship.

i have BroadBand connection and the WAN Type is PPPoE !
i have modem that provide me my ISP and its configuration is simple

this is the DHCP of my modem

[image]http://www.roboimages.com/image/ri30260/dhcp.JPG[/image]

and this is the DNS

[image]http://www.roboimages.com/image/ri30261/dns.JPG[/image]

and this is the connection of my modem

[image]http://www.roboimages.com/image/ri30266/wan.JPG[/image]

and a modem IP Adress is = 192.168.1.1
and DHCP Assigned my IP Is 192.168.1.4
and the DNS Is alsoo Default = 192.168.1.1

so now its the modem configuration and i think its fine config ... !

now i managed server for our Network !
i installed windows server 2003 windows SP2 .. and i want to manage my Own DHCP In my Local Area Network Server with Different Ip Infrastecture.
Like (LAN) server IP is = 192.168.0.1
and clients ip is starting from =  192.168.0.2 with the end of 192.168.0.254

so now i m managed my DHCP +DNS+AD but clients have problem. evey client said they have an Ip Conflict error after Loggin on Network i thinking its the Ip conflict problem but the event viewer said its not the ip conflict problem so now i thought and 100 percent sure that my (LAN) DHCP Or DNS not working properly they will not recieved clients requests and not provided the IPS To any one.

so could any one tell me that my IP 192.168.0.1 is the right insfrastecture of the (LAN) network ? or during the DHCP Management whats IPS I WIll be given it ?

could any one tell me what IP Adress i will be putted in the Add Exclusion Page during DHCP Configuration And What puuted in the Router Option .. 192.168.1.1 Or 192.168.0.1 ?  and what IP Putted in the Domain Name And DNS Server page because modem's provide me its own DNS adress and my (LAN)Server DNS Is its IP it is 192.168.0.1 .. so what DNS Adress i will putted in the Domain Name And DNS Server page ?

please help me and fix my problem !
Thank you




paulo.oliveira -> RE: DHCP And DNS Relation WIth ADo (25.Jul.2008 7:48:34 AM)

Hi,

before give you any advice, please tell us howīs your ISA is connected. Is it with one NIC on the modemīs network (192.168.1.0) and the other on the internal network (192.168.0.0)? If so, then thatīs ok.

Now letīs answers some questions [:D]
quote:

so could any one tell me that my IP 192.168.0.1 is the right insfrastecture of the (LAN) network ? or during the DHCP Management whats IPS I WIll be given it ?

You can use it any private network that you want. But if youīre getting confused using 192.168.... for both networks, then change the internal network to something like 10.0.0.0/8 or 172.16.0.0/16.
quote:

could any one tell me what IP Adress i will be putted in the Add Exclusion Page during DHCP Configuration And What puuted in the Router Option .. 192.168.1.1 Or 192.168.0.1 ?

If you donīt have no IP to exclude, then you should exclude none. In the router option you have to configure the IP address of the ISAīs internal NIC (if thereīs no router or other device before it).
quote:

and what IP Putted in the Domain Name And DNS Server page because modem's provide me its own DNS adress and my (LAN)Server DNS Is its IP it is 192.168.0.1 .. so what DNS Adress i will putted in the Domain Name And DNS Server page ?

You have to keep in mind that the internal DHCP configuration will be distributed to internal clients, so all the DHCP option will be different from the modemīs option. Forget about the modem options for internal clients!

Note: In the internal DNS server, you have to configure it to forward DNS requests to an external DNS. In you case it will be 203.99.163.240 and 203.135.163.243

Regards,
Paulo Oliveira.




Intasar -> RE: DHCP And DNS Relation WIth ADo (25.Jul.2008 10:41:55 AM)

Hello Paulo

quote:

before give you any advice, please tell us howīs your ISA is connected. Is it with one NIC on the modemīs network (192.168.1.0) and the other on the internal network (192.168.0.0)? If so, then thatīs ok.


We have twi NIC first one is connected with modem and thats IP Is 192.168.1.4
and second is a Internal NIC we called it (LAN) NIC and its IP Is 192.168.0.1

quote:

You can use it any private network that you want. But if youīre getting confused using 192.168.... for both networks, then change the internal network to something like 10.0.0.0/8 or 172.16.0.0/16.


No i m not confused in this ..  i m using this since 2 years but after saving knowlege from here i thought some thing rong in my Management so i just ask about it now i understand that we are using any ips infrastecture in private networking no reason that is 192.168/254 or 10.0.0/254

quote:


If you donīt have no IP to exclude, then you should exclude none. In the router option you have to configure the IP address of the ISAīs internal NIC (if thereīs no router or other device before it).


u means in the Router option i m puted the Internal (LAN) IP Adress that is 192.168.0.1 ? or puted the modem (WAN) Ip Adress 192.168.1.4 ?

quote:

You have to keep in mind that the internal DHCP configuration will be distributed to internal clients, so all the DHCP option will be different from the modemīs option. Forget about the modem options for internal clients!


ok i m understand now i Forget it Modem DHCP and DNS

quote:

Note: In the internal DNS server, you have to configure it to forward DNS requests to an external DNS. In you case it will be 203.99.163.240 and 203.135.163.243


Internal DNS Ip is 192.168.0.1 with aptech.net domain so In the DNS Property have Forwarder Tab so i m putted this 203.99.163.240 and 203.135.163.243 those Ips There with domain name ? could you plz guide me how can i do forward this ?

Thanks




paulo.oliveira -> RE: DHCP And DNS Relation WIth ADo (25.Jul.2008 11:59:33 AM)

Hi,

quote:

u means in the Router option i m puted the Internal (LAN) IP Adress that is 192.168.0.1 ? or puted the modem (WAN) Ip Adress 192.168.1.4 ?

Yes, you have to put ISAīs internal IP address, in your case 192.168.0.1.
quote:

Internal DNS Ip is 192.168.0.1 with aptech.net domain so In the DNS Property have Forwarder Tab so i m putted this 203.99.163.240 and 203.135.163.243 those Ips There with domain name ? could you plz guide me how can i do forward this ?

Yes, put these two IP address with all others domain names selected.

Regards,
Paulo Oliveira.




Intasar -> RE: DHCP And DNS Relation WIth ADo (25.Jul.2008 1:56:11 PM)

Hello paulo,

i m manage same this setting in my (LAN) server but the DHCP will be not working properly .. on my all clients have Ip Conflict error after every 5 to 20 mins they will be very angry on me.

i m checking the event viewer of my first client so my second client mac wil be showing there but its amazing that my second client is my own home p-c and every one not changed the ip of my p-c but that will be conflict with the first client . .and its problem with al clients conflicting wit heach others NICs.

after thinking about this problem i thought the problem is from my DHCP so now i will be deleted it and problem will be gone now i have no DHCP but i will try to manage another one again and tell u the problem if i have.

yes one more problem here ... after installing ISA 2006 i m download the Best Practice Analyzer for ISA 2006 now i m checking my rules so best analyzer showing me fine but the DHCP, DNS, DOMAIN CONTROLLER want access rule to Internal to Local host  or To external.

its the errors :

quote:

ISA Server may block traffic to the local DHCP server. You may need to add access rules to allow DHCP traffic to and from the Local Host network, or to disable the DHCP Server service


quote:

ISA Server may block traffic to the local DNS server. You may need to add a policy rule to allow DNS traffic to the Local Host network, or to disable the DNS Server service.


quote:


ISA Server may block traffic to this domain controller. You may need to add access rules to allow Active Directory traffic to and from the Local Host network, or to demote the domain controller.



how can i fix this problem... every rule will be fine and i m making rules to give access those problems but its not resolved could your tell me what rule i will be makin to give access of these three Important options ?

Thanks




Intasar -> RE: DHCP And DNS Relation WIth ADo (31.Jul.2008 2:09:03 PM)

Hello Once AGain,

some time in event viewer have this Erro ..

quote:


Disk cache C:\urlcache\Dir1.cdat failed to initialize. Some errors were encountered when ISA Server restored specific data cache files. ISA Server will now attempt to recover these files. These errors may have occurred because there was not enough time to complete all necessary shutdown operations, when ISA Server was previously shut down. To avoid this in future, you can increase the value of the HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\WaitToKillServiceTimeout registry key.  Identify the reason for cache failure by examining previous recorded events, or the error code. Check that the disk is connected and that it is not corrupt.  (Internal code: 503.7361.5.0.5604.100)

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


i m setted the wait to kill time and given all values expected 1, 0, 2 but it wil not resolved and please reply my first two question ... i realy want help

Thanks advanced




Intasar -> RE: DHCP And DNS Relation WIth ADo (6.Oct.2008 12:06:40 PM)

Can Any One Help ?




Page: [1]