ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Web Mail Not Working After Adding New DNS Zone

    Scheduled Pinned Locked Moved IT Discussion
    41 Posts 10 Posters 8.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DashrenderD
      Dashrender @alex.olynyk
      last edited by

      @alex.olynyk said in Web Mail Not Working After Adding New DNS Zone:

      so what is the best practice here? set everything twice?

      Best Practice - great question,

      I see to options

      1. do what you did and manage internal IPs and external IPs separately.
      2. if your router supports hairpin routing, then you can skip the internal hosting of zone roseradiology.com.

      Hairpin routing means that your PC wants to go to an internal resource, but DNS declares that it's on the internet somewhere. When the packet gets to the router, it (the router) realizes that the packet is really meant for an internal source, so it sends the packet back to the internal server. Not all routers/firewalls support this.

      1 Reply Last reply Reply Quote 0
      • Mike DavisM
        Mike Davis
        last edited by

        As far as best practice goes, Microsoft has gone back and forth on the issue between split DNS and internal domain name. The last time I looked, they recommended a subdomain for your internal network. So instead of domain.com inside and out, or domain.local inside and domain.com outside, they use ad.domain.com inside and domain.com outside.

        I've dealt with them all and they all have their advantages and disadvantages. At the end of the day, I think you just need to understand them and pick the one that works best for that client.

        1 Reply Last reply Reply Quote 2
        • alex.olynykA
          alex.olynyk @Dashrender
          last edited by

          @Dashrender so a split horizon DNS would be creating a zone for roseradiology.com and then adding internal records for mail, www, etc

          Our new active directory domain is rose.internal so would that be the top level domain?

          DashrenderD 1 Reply Last reply Reply Quote 0
          • KellyK
            Kelly
            last edited by

            What about creating a CNAME that points to the internal A record?

            For example:

            A 192.168.1.5 ownlcloud.rose.internal
            CNAME owncloud.roseradiology.com owncloud.rose.internal

            DashrenderD JaredBuschJ 2 Replies Last reply Reply Quote 1
            • DashrenderD
              Dashrender @alex.olynyk
              last edited by

              @alex.olynyk said in Web Mail Not Working After Adding New DNS Zone:

              @Dashrender so a split horizon DNS would be creating a zone for roseradiology.com and then adding internal records for mail, www, etc

              Our new active directory domain is rose.internal so would that be the top level domain?

              Correct, rose.internal is your internal TLD. But .internal does not exist on the internet, so you asked about registering it, you can't register is for use on the internet. Think of it like the 10.x.x.x network. You can use that internally, but not on the internet. You can have any TLD internally that you want, but when it comes to what is used on the internet, you have to follow the ICANN rules.

              1 Reply Last reply Reply Quote 0
              • DashrenderD
                Dashrender @Kelly
                last edited by

                @Kelly said in Web Mail Not Working After Adding New DNS Zone:

                What about creating a CNAME that points to the internal A record?

                For example:

                A 192.168.1.5 ownlcloud.rose.internal
                CNAME owncloud.roseradiology.com owncloud.rose.internal

                Is of course is the best solution when using Split Horizon DNS because if the internal IP changes, the records will all follow.

                1 Reply Last reply Reply Quote 1
                • alex.olynykA
                  alex.olynyk
                  last edited by

                  so whoever hosts the DNS for my domain should be able to create a CNAME to alias owncloud.roseradiology.com to owncloud.rose.internal? Correct?

                  DashrenderD scottalanmillerS 2 Replies Last reply Reply Quote 0
                  • DashrenderD
                    Dashrender @alex.olynyk
                    last edited by

                    @alex.olynyk said in Web Mail Not Working After Adding New DNS Zone:

                    so whoever hosts the DNS for my domain should be able to create a CNAME to alias owncloud.roseradiology.com to owncloud.rose.internal? Correct?

                    No, that is something you would do internally, on the DNS servers you control. In a Split Horizon setup, the two systems, internal DNS and external DNS, they both are handled completely separately.

                    But, internally, where you have both rose.internal and roseradiology.com, you can create a record from one domain pointing to the other if you want.

                    1 Reply Last reply Reply Quote 0
                    • scottalanmillerS
                      scottalanmiller @alex.olynyk
                      last edited by

                      @alex.olynyk said in Web Mail Not Working After Adding New DNS Zone:

                      So if I add a record for mail.roseradiology.com that should fix?

                      Yes, but it's far from ideal.

                      1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller @alex.olynyk
                        last edited by

                        @alex.olynyk said in Web Mail Not Working After Adding New DNS Zone:

                        so whoever hosts the DNS for my domain should be able to create a CNAME to alias owncloud.roseradiology.com to owncloud.rose.internal? Correct?

                        but that would direct ALL external users to the same internal IP address causing them to fail.

                        dafyreD 1 Reply Last reply Reply Quote 0
                        • dafyreD
                          dafyre @scottalanmiller
                          last edited by

                          @scottalanmiller said in Web Mail Not Working After Adding New DNS Zone:

                          @alex.olynyk said in Web Mail Not Working After Adding New DNS Zone:

                          so whoever hosts the DNS for my domain should be able to create a CNAME to alias owncloud.roseradiology.com to owncloud.rose.internal? Correct?

                          but that would direct ALL external users to the same internal IP address causing them to fail.

                          he's talking about doing this on his INTERNAL DNS server, I do believe.

                          1 Reply Last reply Reply Quote 0
                          • scottalanmillerS
                            scottalanmiller
                            last edited by

                            people don't normally refers to the internal staff as "whoever hosts my..." That's an odd terminology to use for the guy at the desk next to yours.

                            DashrenderD JaredBuschJ 2 Replies Last reply Reply Quote 1
                            • DashrenderD
                              Dashrender @scottalanmiller
                              last edited by

                              @scottalanmiller said in Web Mail Not Working After Adding New DNS Zone:

                              people don't normally refers to the internal staff as "whoever hosts my..." That's an odd terminology to use for the guy at the desk next to yours.

                              Or your own desk. 😛

                              1 Reply Last reply Reply Quote 0
                              • JaredBuschJ
                                JaredBusch @scottalanmiller
                                last edited by

                                @scottalanmiller said in Web Mail Not Working After Adding New DNS Zone:

                                people don't normally refers to the internal staff as "whoever hosts my..." That's an odd terminology to use for the guy at the desk next to yours.

                                Yes, but if you recall (or go look at) the prior thread, it is clear that he has no understanding of DNS at all.

                                1 Reply Last reply Reply Quote 0
                                • JaredBuschJ
                                  JaredBusch @Kelly
                                  last edited by

                                  @Kelly said in Web Mail Not Working After Adding New DNS Zone:

                                  What about creating a CNAME that points to the internal A record?

                                  For example:

                                  A 192.168.1.5 ownlcloud.rose.internal
                                  CNAME owncloud.roseradiology.com owncloud.rose.internal

                                  I did not think Windows let you do that

                                  DashrenderD 1 Reply Last reply Reply Quote 0
                                  • JaredBuschJ
                                    JaredBusch
                                    last edited by

                                    For you internal DNS server, you have to now setup everything to match what your external DNS shows, except for the items that you want to point to internal addresses.

                                    Here is a live working example from a client

                                    Internal DNS for domain.com
                                    0_1464042365926_upload-a7758d34-dd8f-495b-b82b-ffa39610f2d7

                                    External DNS for domain.com
                                    0_1464042559840_upload-96b9816b-4492-4a84-ada5-abfcdb1b39cb

                                    1 Reply Last reply Reply Quote 1
                                    • DashrenderD
                                      Dashrender @JaredBusch
                                      last edited by

                                      @JaredBusch said in Web Mail Not Working After Adding New DNS Zone:

                                      @Kelly said in Web Mail Not Working After Adding New DNS Zone:

                                      What about creating a CNAME that points to the internal A record?

                                      For example:

                                      A 192.168.1.5 ownlcloud.rose.internal
                                      CNAME owncloud.roseradiology.com owncloud.rose.internal

                                      I did not think Windows let you do that

                                      You absolutely can do this.
                                      0_1464043080529_one.png

                                      JaredBuschJ 1 Reply Last reply Reply Quote 1
                                      • JaredBuschJ
                                        JaredBusch @Dashrender
                                        last edited by JaredBusch

                                        @Dashrender said in Web Mail Not Working After Adding New DNS Zone:

                                        @JaredBusch said in Web Mail Not Working After Adding New DNS Zone:

                                        @Kelly said in Web Mail Not Working After Adding New DNS Zone:

                                        What about creating a CNAME that points to the internal A record?

                                        For example:

                                        A 192.168.1.5 ownlcloud.rose.internal
                                        CNAME owncloud.roseradiology.com owncloud.rose.internal

                                        I did not think Windows let you do that

                                        You absolutely can do this.

                                        Of course you can add a CNAME to an existing zone. I thought @Kelly was saying to add a CNAME for owncloud.roseradiology.com without adding roseradiology.com as a forward lookup zone.

                                        That was what I thought you could not do.

                                        DashrenderD 1 Reply Last reply Reply Quote 0
                                        • DashrenderD
                                          Dashrender @JaredBusch
                                          last edited by

                                          @JaredBusch said in Web Mail Not Working After Adding New DNS Zone:

                                          @Dashrender said in Web Mail Not Working After Adding New DNS Zone:

                                          @JaredBusch said in Web Mail Not Working After Adding New DNS Zone:

                                          @Kelly said in Web Mail Not Working After Adding New DNS Zone:

                                          What about creating a CNAME that points to the internal A record?

                                          For example:

                                          A 192.168.1.5 ownlcloud.rose.internal
                                          CNAME owncloud.roseradiology.com owncloud.rose.internal

                                          I did not think Windows let you do that

                                          You absolutely can do this.

                                          Of course you can add a CNAME to an existing zone. I thought @Kelly was saying to add a CNAME for owncloud.roseradiology.com without adding roseradiology.com as a forward lookup zone.

                                          That was what I thought you could not do.

                                          huh, yeah I would guess you couldn't do that either, again, if you're not hosting the zone you want to Cname to, you can't do it.

                                          JaredBuschJ 1 Reply Last reply Reply Quote 0
                                          • JaredBuschJ
                                            JaredBusch @Dashrender
                                            last edited by

                                            @Dashrender said in Web Mail Not Working After Adding New DNS Zone:

                                            @JaredBusch said in Web Mail Not Working After Adding New DNS Zone:

                                            @Dashrender said in Web Mail Not Working After Adding New DNS Zone:

                                            @JaredBusch said in Web Mail Not Working After Adding New DNS Zone:

                                            @Kelly said in Web Mail Not Working After Adding New DNS Zone:

                                            What about creating a CNAME that points to the internal A record?

                                            For example:

                                            A 192.168.1.5 ownlcloud.rose.internal
                                            CNAME owncloud.roseradiology.com owncloud.rose.internal

                                            I did not think Windows let you do that

                                            You absolutely can do this.

                                            Of course you can add a CNAME to an existing zone. I thought @Kelly was saying to add a CNAME for owncloud.roseradiology.com without adding roseradiology.com as a forward lookup zone.

                                            That was what I thought you could not do.

                                            huh, yeah I would guess you couldn't do that either, again, if you're not hosting the zone you want to Cname to, you can't do it.

                                            Interestingly enough, it lets you add it, but it does not work.

                                            owncloud.domain.local resolves to 10.201.1.17

                                            0_1464043429314_upload-0e34e285-bc53-4015-aab7-b650abf2353d

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 2 / 3
                                            • First post
                                              Last post