DNS/ Active Directory

Discussion in 'Hardware' started by gcgl, Aug 25, 2010.

  1. gcgl

    gcgl Private E-2

    Running Windows Server 2008 R2 and trying to install Active directory. I have 2 network adapters (nic).

    1. Connected to the local network (static ip address)
    2. connected to the internet (dhpc)

    an error message appears saying change 1 or more network adapters to static ip address.

    i then disable the internet connection network adapter and it worked fine.

    i the enabled the second network adpater, on server manager under the dns roles i get 3 errors
    1.event id 408
    2.event id 407
    3.event id 404


    need help

    thanks
     
  2. KingSteve

    KingSteve MajorGeek

    your domain controller only needs one nic. it should be behind a firewall and only connected to the LAN. DNS errors are the least of your problems if you dont get that public IP off your DC...

    keep the internet NIC disabled and get a firewall.
     
  3. gcgl

    gcgl Private E-2

    so how would i access the internet?
     
  4. KingSteve

    KingSteve MajorGeek

    through an actual router. you have a router right?
     
  5. gcgl

    gcgl Private E-2

    The overview of the current system we a server and a netgear 8 port switch which i want to connect 4-6 users. we have one internet connection which we need to share. when i trying to install active directory i get error messages saying the

    -The DNS server must resolve names in the forest root name zone
    -The DNS server must resolve LDAP resource records for the domain controller
    -The DNS server must resolve Kerberos resource records for the domain controller
    -The DNS server must resolve the name of this computer
     
  6. KingSteve

    KingSteve MajorGeek

    I realize that, but you need to get your network working first. You'll be doing a lot of unnecessary troubleshooting trying to get routing and remote access working, which you shouldnt have on a domain controller anyway since there is no security. If that DC is compromised, every computer along with any central or decentralized data storage is compromised. At very least you need an actual router that will keep any critical systems off a direct connection with the internet.

    You'll use the router as a NAT device instead of your DC. Since its a very small network, you could even just use a netgear or linksys from bestbuy, and have that pass out addresses on dhcp. Then you can connect the switch you have to a switch port on the router, and connected your computers and server to that. Thatll keep you fairly secure since youre behind a router.

    Since you said in your first post that everything worked fine when you disabled the nic connecting you to the internet, buying a router will solve your problems.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds