Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    [SOLVED] DNS Zone Transfer

    Scheduled Pinned Locked Moved DHCP and DNS
    25 Posts 6 Posters 5.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • bmeeksB
      bmeeks @manjotsc
      last edited by bmeeks

      @manjotsc said in DNS Zone Tranfer:

      @bmeeks Does it looks good?

      Thanks,

      Annotation 2021-02-24 185342.png

      Yes! That should work for you, but you still need to delete that manjot.net zone in the Forward Lookup Zones in the left-hand pane. You don't want to forward lookups for that zone because your AD DNS server is authoratative for that zone (or it should be).

      DNS can be a little confusing to the uninitiated, and sometimes when we first get into it, we tend to overestimate what we think we understand ... 😊. Go to Google and do a little research on these DNS terms: resolver, forwarder, and authoratative server. Again, I mean no disrespect as all of us were new to this at some point in our IT career, but your questions and replies indicate that perhaps you do not yet fully understand the critical distinction between those terms I suggested you Google.

      manjotscM 1 Reply Last reply Reply Quote 0
      • manjotscM
        manjotsc @bmeeks
        last edited by

        @bmeeks It has been deleted,

        Annotation 2021-02-24 191305.png

        Vendor: HP
        Version: P01 Ver. 02.50
        Release Date: Wed Jul 17 2024
        Boot Method: UEFI
        24.11-RELEASE (amd64)
        FreeBSD 15.0-CURRENT
        CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
        Current: 3606 MHz, Max: 3400 MHz
        4 CPUs : 1 package(s) x 4 core(s)

        bmeeksB 1 Reply Last reply Reply Quote 0
        • bmeeksB
          bmeeks @manjotsc
          last edited by bmeeks

          @manjotsc: that last post looks good on the Windows side. Now over on the pfSense side you need to be sure you have a properly configured domain override in place for manjot.net and the ARPA reverse pointer zones defined in Windows.

          For example, here is the Domain Overrides section from my pfSense box for my Windows AD domain:

          pfSense-unbound-zone_override.png

          This tells unbound that for all hosts in "themeeks.net", or that have an IP address in the 192.168.10.0 network, it should ask the DNS server at 192.168.10.4 for the hostname or IP (that's my Windows AD DNS). The only time unbound on pfSense will do this is when I ask it to resolve some IP in the logs that's in my local network, or if I, for instance, view the ARP Table under the DIAGNOSTICS menu.

          manjotscM 1 Reply Last reply Reply Quote 2
          • manjotscM
            manjotsc @bmeeks
            last edited by

            @bmeeks Thanks, I have configured it in pfsense.

            Vendor: HP
            Version: P01 Ver. 02.50
            Release Date: Wed Jul 17 2024
            Boot Method: UEFI
            24.11-RELEASE (amd64)
            FreeBSD 15.0-CURRENT
            CPU Type: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
            Current: 3606 MHz, Max: 3400 MHz
            4 CPUs : 1 package(s) x 4 core(s)

            bmeeksB 1 Reply Last reply Reply Quote 0
            • bmeeksB
              bmeeks @manjotsc
              last edited by

              @manjotsc said in DNS Zone Tranfer:

              @bmeeks Thanks, I have configured it in pfsense.

              That should fix it for you. Now, in the future, if you need to manually create any DNS records for a host, do so over in the Windows DNS server. With the configuration you have in place, your pfSense box will still see them.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.