Wednesday, January 12, 2011

DNS Zones changed

Last night, I made a change to DNS, which was part of the decommissioning of Windows 2000 domain, and domain controllers, as well as part of trying to fix some lingering issues, and event log errors.

The DNS Zone replication has now moved from replicating across domain controllers, to replicating across the DNS Domain and Forest servers.
During the process I ran into a snag, and had make some changes in ADSI, and at that time, I found thousands of stale objects in the MicrosoftDNS, ForestDnsZones, and the DomainDnsZones.

I have done some cleanup, restarted and replicated the domain controllers and DNS servers.
From a diagnostic perspective, at this point, everything is still returning green with no issues.
If you see some problems that may be related to DNS, please let me know, and I can take a look.

Since I was moving DNS Zones around, and doing a bunch of replications and deletions, it may be possible that some static entries may have gotten inadvertently removed, which may cause some services not to function, but fortunately, easily fixable.
I have also tested those at random, and all entries were there as expected. So, again, if there is any issue related to that, please let me know.

On the bright side, given that there was so many stale records (took about 15 minutes just to delete them), I would expect DNS and replication to become much faster, especially that it is now 100% Active Directory integrated.

For any questions, please talk to me,


  • This change was made on 01/12/2011 @ 17:00

No comments:

Post a Comment

Please make your comment. (GMK)

Note: Only a member of this blog may post a comment.