How to troubleshoot DNS issues in an Active Directory domain controller

Поделиться
HTML-код
  • Опубликовано: 1 июл 2020
  • Professor Robert McMillen shows you the correct way to setup DNS settings in an Active Directory domain controller for Windows Server 2019, 2016, and older. In this tutorial I show you how to fix slowness for people logging in and trying to access shared data by adding in proper DNS settings in your network interface card and DNS manager.
  • НаукаНаука

Комментарии • 117

  • @stuffandthings2647
    @stuffandthings2647 2 года назад +5

    Hi Robert,
    I have been following your videos for a few years. You have helped me greatly expand and brush up on my knowledge and I am extremely grateful for your dedication to teaching. From the bottom of my heart, thank you for helping me grow in my career as well as being an inspiration to myself and many others.

    • @techpub
      @techpub  2 года назад

      So glad to hear that. Thanks for watching!

  • @turb0z
    @turb0z Год назад +1

    This SAVED my clients butt! We just retired an old AD/DHCP/DNS server at a client of mine and I shut the old system down last week. After removing it, page load times when going to external websites were suuuper slow and they almost couldn't run payroll on Monday! Sure enough on the new server, the forwarders were set to the old internal Server IP! I updated to Google and bam, back to normal! Thank you for this!

    • @techpub
      @techpub  11 месяцев назад

      Glad it helped. Please consider subbing.

  • @michaelturner4521
    @michaelturner4521 10 месяцев назад

    Saw your video for the first time. I really like your approach and delivery. I am excited to check out the rest of them. If the rest are like the first I will be a very happy man.

    • @techpub
      @techpub  10 месяцев назад

      Welcome aboard!

  • @sebastianradzio6601
    @sebastianradzio6601 2 года назад +2

    What a great video! I liked the fact that you exposed the most common mistakes, some of those were also my mistakes.

    • @techpub
      @techpub  2 года назад

      Glad I could assist.

  • @ThePoorInvestor
    @ThePoorInvestor Год назад

    Thank you! For the longest time, I hadn't been able to solve why my PiHole was getting inundated with what seems to be looping DNS calls from Windows DNS Server. Finally, your explanation that I have to setup outside DNS servers under the DNS main DC --> Forwarder was the key that solved the problem! Thank you. Thank You.
    I also loved your video on setting up AD on TrueNAS. Very helpful in integrating.

    • @techpub
      @techpub  Год назад

      Thanks for watching!

  • @davidburgess150
    @davidburgess150 4 года назад +2

    Loving your videos Robert. Thank you very much

    • @techpub
      @techpub  4 года назад

      Glad you like them!

  • @NickBeaumont-wu5cc
    @NickBeaumont-wu5cc Месяц назад

    Robert you ARE the best. I am thankful for your videos and relaxing voice.

    • @techpub
      @techpub  13 дней назад

      Thanks very much Nick.

  • @helamanavalos9806
    @helamanavalos9806 3 года назад +2

    Thank you man!! I was having an issue with virtual machines, this fixed it! thank you!

    • @techpub
      @techpub  3 года назад

      Glad I could help!

  • @dschulle0508
    @dschulle0508 Год назад +2

    Awesome information- I learned a lot!!! Thank you so much for this.

    • @techpub
      @techpub  Год назад

      Glad it was helpful!

  • @NickBeaumont-wu5cc
    @NickBeaumont-wu5cc Год назад +1

    Great teacher, calming voice

  • @user-qn9py2qq6q
    @user-qn9py2qq6q 11 месяцев назад

    Thank you alot, you'd helped out to solve a problem with the DNS service in my Active Directory

    • @techpub
      @techpub  11 месяцев назад

      Glad it helped. Please consider subbing.

  • @user-de8xw5mh4d
    @user-de8xw5mh4d Год назад

    This video is very helpful. Thanks for putting it together.

    • @techpub
      @techpub  Год назад +1

      Glad it was helpful!

  • @socialp562
    @socialp562 2 года назад

    Many Tnx Mr. Robert McMillen

    • @techpub
      @techpub  2 года назад

      Glad it was helpful!

  • @banybru4830
    @banybru4830 2 года назад

    you are the best , thank you very much for all the videos you Share !

    • @techpub
      @techpub  2 года назад

      Glad I could help!

  • @chrisburg2502
    @chrisburg2502 2 года назад

    Thank you!! This solved my issue. Much appreciated!!

    • @techpub
      @techpub  2 года назад

      Thanks for watching!

  • @Gamer-pc1
    @Gamer-pc1 7 месяцев назад

    Thank you very much for this video, it was great help.

    • @techpub
      @techpub  7 месяцев назад

      You're welcome!

  • @lanreajala6470
    @lanreajala6470 2 года назад

    Thank you. That explains why I had a connection to my servers but no direct connection to the internet.

    • @techpub
      @techpub  2 года назад

      Glad it helped!

  • @muhammaddilawar300
    @muhammaddilawar300 2 года назад

    Thanks you Robert it's really helpful for me.

    • @techpub
      @techpub  2 года назад +1

      Thanks for watching!

  • @svensk2003
    @svensk2003 Год назад

    Super helpful information. Thanks!

    • @techpub
      @techpub  Год назад

      You are welcome! Thanks for watching.

  • @Kakoomalik
    @Kakoomalik 2 года назад

    Excellent Video. Really help us. Thanks Jani :)

    • @techpub
      @techpub  2 года назад +1

      Glad it helped. Thanks for watching.

  • @nubiandavis2610
    @nubiandavis2610 3 года назад

    Excellent video. You have a new subscriber

    • @techpub
      @techpub  3 года назад

      Welcome aboard!

  • @desiphool
    @desiphool 3 года назад

    Excellent video - thanks

    • @techpub
      @techpub  3 года назад

      Glad you enjoyed it

  • @adrianoferreiradasilva3246
    @adrianoferreiradasilva3246 2 года назад

    Great tutorial, thank you.

    • @techpub
      @techpub  2 года назад

      You are welcome!

  • @akinduser4255
    @akinduser4255 3 года назад

    Well compacted guide. 👍

    • @techpub
      @techpub  3 года назад +1

      Glad it was helpful!

  • @hornybushman987
    @hornybushman987 2 года назад

    Great video man. Thanks

    • @techpub
      @techpub  2 года назад

      Glad you liked it!

  • @geojosepht
    @geojosepht 3 года назад

    You saved me.. Thank you very much

  • @MattTheriot
    @MattTheriot 10 месяцев назад

    Thank you, very helpful for DNS noobs like me.

    • @techpub
      @techpub  10 месяцев назад +1

      Glad to help.

  • @jamesbeyan5016
    @jamesbeyan5016 2 года назад

    Thanks a lots for the video.

    • @techpub
      @techpub  2 года назад

      You are welcome!

  • @muhammadasif4916
    @muhammadasif4916 3 года назад

    Thank you so much Bro!

    • @techpub
      @techpub  3 года назад

      You are welcome. Thanks for watching.

  • @semhan75
    @semhan75 3 года назад

    Excellent, Thanks

    • @techpub
      @techpub  3 года назад

      Glad it helped.

  • @DJHicks
    @DJHicks 2 года назад

    This is excellent.

    • @techpub
      @techpub  2 года назад

      Glad you liked it. Thanks for watching!

  • @perry455
    @perry455 3 года назад

    Thank you so much!

    • @techpub
      @techpub  3 года назад

      You're welcome!

  • @jerryreescano2934
    @jerryreescano2934 3 года назад +4

    Great video, lots of good info! One quick question about IPV6. You mentioned that if the box is left unchecked, it could cause connection issues. Why is that if we're not using any IPV6 addresses?

    • @techpub
      @techpub  3 года назад +4

      The first domain controller needs IPv6 to work properly. Its just the way Microsoft programmed it, but all other devices don't need it so they can be unchecked.

    • @bentonjamie4642
      @bentonjamie4642 2 года назад

      instablaster

  • @foxxrider250r
    @foxxrider250r 3 года назад +2

    Great video! I have a question tho, when you Tracert to the public dns couldn't that possibly give you varying results each time? It wouldn't always take the same path would it?

    • @techpub
      @techpub  3 года назад +1

      It is possible but I don't see it happening too often.

  • @TheBe7ery
    @TheBe7ery 3 года назад

    you r my role model :D

    • @techpub
      @techpub  3 года назад

      Thanks and you are my reason for making videos.

  • @gunnerjoe53
    @gunnerjoe53 2 года назад +1

    If you have 3 or more DNS servers I have heard of doing this: DC1 Points to DC2 and DC3. DC2 points to DC1 and DC3. DC3 points to DC1 and DC2. I'm not sure if that is necessary, but I have heard that mentioned in various places.
    Joe

    • @techpub
      @techpub  2 года назад

      Yes bridgeheads will do this.

  • @vasillilov9524
    @vasillilov9524 2 года назад

    Great tutorial! Only missing explanation about root hints

    • @techpub
      @techpub  2 года назад

      I'll get on that.

  • @ivalinapasse2469
    @ivalinapasse2469 2 года назад +1

    Thanks 👍👍👍

    • @techpub
      @techpub  2 года назад

      Glad it helped.

  • @user-hv4ol8lb9e
    @user-hv4ol8lb9e 3 месяца назад

    Thanks a lot this so clear and j did not understand why all it-managers and youtubers say to add google and others dns on our tcip domain now j got it, completly wrong

    • @techpub
      @techpub  3 месяца назад

      Thanks for watching.

  • @eyepv4
    @eyepv4 11 месяцев назад

    Amazing

    • @techpub
      @techpub  11 месяцев назад

      Glad it helped. Please consider subbing.

  • @michaelortega804
    @michaelortega804 3 года назад

    hi there, nice content, i have a question: what will be the best approach/steps to change the ip of domain controller which is DNS and DHCP server? cheers

    • @techpub
      @techpub  3 года назад +1

      Thanks very much. You can change the IP and then restart the Netlogon service and the Active Directory service and you're good to go.

  • @pdxtech5842
    @pdxtech5842 Год назад

    I ran the Best Practices Analyzer, and it mentioned that the loopback/its own IP address should not be primary, if you have two or more DCs. Do you recommend adding the secondary DNS server as primary vs. using its own IP as a first DNS server?

    • @techpub
      @techpub  Год назад

      I've seen this recommendation for years, but I found if you don't have the loopback or the actual IP of the server you're on, then I find replication issues and an inability to demote the server later on.

  • @Tech-geeky
    @Tech-geeky 2 года назад

    Great stuff. However I assume "forwarders" is only for external only not internal ?
    Also as you mentioned, on the "interfaces" tab, if you. have multiple network adapters there is really no worry about requests/broadcasts to other devices. Unless they wish to connect, it's bypassing anyway. Think of it like a hub... All info gets broadcasted to all decides plugged into that multi-hub, but unless one is actually wanting to connect, it won't do any harm.. The only issue may be when you have potential/unwanted users able to sniff packets.
    But, only limiting adapter to the one that's active here is good, also for performance issue, (...but there could be some argument around that one.)..

    • @techpub
      @techpub  2 года назад

      Correct it is only for external. For internal, create a conditional forwarder.

  • @karamdhafer4895
    @karamdhafer4895 4 года назад

    I have problem with my database server i have server in the same subnet the server that is running the application can not get the database server until i have to ping it first ping will be request time out after that ping-able after everything is fine could you please tell me how to solve this issue

    • @techpub
      @techpub  4 года назад +2

      Go to the properties of the network card in device manager. Go to the power management tab and uncheck that it can be turned off due to inactivity. If that doesn't work then your switch port is turning it off and the switch will need to be adjusted.

  • @adrianoferreiradasilva3246
    @adrianoferreiradasilva3246 2 года назад

    Hey Robert let me ask you, our Fortigate here do the DHCP job but our Windows Server DNS is remote, when a user comes from a home office with an IP 192.... why the registration in the DNS does not occours imediately after the logon process? it takes hours, in some cases days even typing ipconfig /flushdns ipconfig /registerdns, disabling or enabling the wifi adapter. how can i fix this issue? i really need a way to force an IP update when the IP changes imediately, can you help me?

    • @techpub
      @techpub  2 года назад

      Sure. Just manually set the DNS on the client instead of using DHCP. That will make it work faster.

  • @Swifty7x
    @Swifty7x 2 года назад

    Thx 🙏

    • @techpub
      @techpub  2 года назад

      Thanks for watching!

  • @MunavvarPatel71
    @MunavvarPatel71 6 месяцев назад

    Hi Robert
    Thanks for the video..
    Need your help regarding the DNS issue in my DC.
    Will you help?

    • @techpub
      @techpub  5 месяцев назад

      Thanks for watching! What is the issue?

  • @NguyenNguyen-pe7om
    @NguyenNguyen-pe7om 2 года назад

    Thanks.....

  • @goummoprivat
    @goummoprivat 8 месяцев назад

    Hi Mr Robert, I just discovered your channel. I watch you from Cameroon, an African country popular for soccer and MMA fight. I appreciate your videos and thank you for helping us. Please do you have a UDEMY channel so that I purchase your courses or any Amazon account where you sell techie stuffs. Thank You

    • @techpub
      @techpub  8 месяцев назад

      Greetings! Check out my channel here: www.udemy.com/user/robert-mcmillen-5/ and thanks for watching.

  • @TheLashely
    @TheLashely 3 года назад

    how to install windows server 2019 active directory on vps and how to join local computer on that active directory server ?

    • @techpub
      @techpub  3 года назад

      Here you go: ruclips.net/video/PHkKCugmZGg/видео.html and ruclips.net/video/6Lsv4N1hGnM/видео.html were both done from a virtual computer.

    • @TheLashely
      @TheLashely 3 года назад

      @@techpub thank you for the reply but I am asking about cloud server

  • @UzairAli001
    @UzairAli001 2 года назад

    5:28 Thanks, My forwarders was not correctly configured that's why internet was not working in DC

    • @techpub
      @techpub  2 года назад

      Happy to help!

  • @psycl0ptic
    @psycl0ptic 2 года назад

    why not set loopback as 2ndary DNS? This is still MS documented way to configure AD DNS

    • @techpub
      @techpub  2 года назад

      Yes you can do that. Many people don't quite grasp the loopback concept so I just used regular IPs.

  • @raulferro3998
    @raulferro3998 2 года назад

    I thought the amount of hops is not that important anymore as networks use link state protocols now?

    • @techpub
      @techpub  2 года назад

      Yes, link state will open the shortest path but not everyone is using them internally, or at the ISP (although they should). The amount of hops and their speed is a good indicator of which public DNS server would be best.

  • @thecrew2algeria472
    @thecrew2algeria472 Год назад

    • @techpub
      @techpub  Год назад

      Glad I could help.

  • @LaMiGrAFrAnK
    @LaMiGrAFrAnK 2 года назад

    I am yet to find a single article explaining or stating why you should not disable IPv6 other than "Microsoft does not recommend this." Okay.. tell me EXACTLY what "core component" may be affected by doing this? Especially when dealing with an environment that does not speak out to the internet, only uses IPv4 and has no need for IPv6 communication. All IPv6 enabling has done (in my experience) is send out TCP/ DNS communication that lead to headaches to troubleshoot unless your environment is ready ahead of time to deal with IPv6...

    • @techpub
      @techpub  2 года назад +1

      My experience is that you need it for the first DC and any Exchange or MS SQL servers. No idea why but if you don't, stuff won't work right. The rest you can disable.

  • @bageeshpv9605
    @bageeshpv9605 3 года назад

    can't open company website from inside our lan

    • @techpub
      @techpub  3 года назад

      Create a host record that points to the outside IP for the website.

    • @bageeshpv9605
      @bageeshpv9605 3 года назад

      @@techpub Thanks now its working.

  • @muhammadshahzeb9793
    @muhammadshahzeb9793 9 месяцев назад

    An error occurred when DNS was queried for the service location (SRV) resource record used to locate an Active Directory Domain Controller (AD DC) for domain "DC1.shahzeb".
    OK
    The error was: "An existing connection was forcibly closed by the remote host." (error code 0x00002746 WSAECONNRESET)
    The query was for the SRV record for _ldap._tcp.dc._msdcs.DC1.shahzeb

    • @techpub
      @techpub  8 месяцев назад

      Check to see if udp or tcp port 53 is open on the destination. Run netstat -an. If not open, then create a firewall rules to open it.