For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

gymmbo_199516's avatar
gymmbo_199516
Icon for Nimbostratus rankNimbostratus
Apr 27, 2015

Trying to add F5 name server to MS DNS and getting errors

I am trying to my name servers that I have associated with my GTM to my Microsoft DNS and I am getting errors. The error comes when I am trying to add the name server to be part of the list of servers in a zone. The two errors I am getting is "an unknown error occurred while validating" and the second error states "The zone transfer settings cannot be updated. The IP address is invalid." which it isn't. Our DNS is AD integrated.

 

I have a case open w/ MS but I am hoping to save $$$ and time on this. Any insight is appreciated.

 

Thanks,

 

8 Replies

  • mikeshimkus_111's avatar
    mikeshimkus_111
    Historic F5 Account

    Hi gymmbo, can you clarify what you mean by associating GTM to your MS DNS? Do you mean that you are trying to transfer your DNS zone to GTM for the purpose of using DNS Express, for example?

     

  • Thanks for the quick reply. My director has set up three non-microsoft name records that the IP is associated with our GTMs. As it has been explained to me he is trying to transfer one of our DNS zones to the GTM in addition to our DCs (w/ DNS). We current are leveraging three different zones and naturally the DCs we have propagate between the three but we are not able to even get the record validated.

     

  • mikeshimkus_111's avatar
    mikeshimkus_111
    Historic F5 Account

    It sounds like you have 3 Wide IPs set up on the GTM, which will also answer requests for records in the zone you wish to transfer. Have you configured the zone in MS DNS to allow transfers to the self-IP address of the GTM BIG-IP?

     

  • I believe that is part of the issue we are having. In MS DNS when I try to add the FQDN of the name server it resolves but I get the error "an unknown error occurred trying to validate".

     

  • mikeshimkus_111's avatar
    mikeshimkus_111
    Historic F5 Account

    If you are trying to transfer a zone to GTM, then you just need to add the GTM self-IP address as an allowed server for zone transfers in MS DNS. Which FQDN are you trying to add, and where?

     

  • That is the problem I am having, adding the IP or FQDN as an allowed server. The IP and name are pingable. I am trying to add the record in the Name Servers tab of DNS and it is something like this... ns1.domain.com that resolves to 192.168.1.10 and is a standard IP in our scheme. When the name resolves that is when I get the validation error.

     

  • mikeshimkus_111's avatar
    mikeshimkus_111
    Historic F5 Account

    You should be adding this to the Zone Transfers tab. The MS DNS server is still authoritative for the zone, so it doesn't need the GTM address added as a name server.

     

  • It is in there but again, the An unknown error occurred trying while validating the server with the big red circle with an X in the middle. Very unhappy. The name and IP are also in the Reverse Lookup Zone.