"newguy" <> wrote in message
news:F69F6626-F7E6-49C9-AD67-...
>I have a reverse lookup zone that is corrupt. I tryed to delete but it
>tells
> me I am not allowed. so here are my questions.
>
> How do i fix it? I was just going to delete it and create a new one
> Would this prevent people from pinging outsided IPs?
>
>
> I get errors in the event log with ID of 4015 and 4521.
Well, it's difficult to tell with the limited info you provided. This could
be caused by a number of factors. If it simply cannot contact AD, that can
cause it. What will stop it from contacting AD? A host of reasons. One of
the main reason is a DNS misconfiguration in the DC's IP configuration,
meaning if you are using the ISP's DNS server in its IP configuration.
Please post an unedited ipconfig /all from the DC to better assist.
Some questions, if you can respond to them, please:
Is the "DHCP Client Service" disabled on this DC? (It's a required service
even if the machine has a static IP configuration).
Does this DC have more than one NIC (multihomed)?
Is this DC using an ISP's DNS address in it's IP configuration?
Are you logged on with an administrator account of the domain?
How many DCs do you have? If more than one, keep in mind, if you delete any
AD integrated zone, the deletion is domain or forest wide, depending ont he
zone's replication scope, and not just on that DC. So was it already deleted
on another DC and the console hasn't been refreshed to show it was deleted?
If you delete it, no, it will not prevent Internet resolution. Pings,
however can be stopped by firewall rules or security software. The key to it
here is you are concerned with resolution. Nslookup is the better tool to
test resolution, not ping.
If you are having problems deleting it, try and see if you can change the
zone to a Primary zone. But keep in mind, this is another domain/forest wide
change, where it will remove the zone from all other DCs. If this works,
then try to delete that zone.
Please read the following to see if it helps.
http://eventid.net/display.asp?event...ce=DNS&phase=1
http://eventid.net/display.asp?event...ce=DNS&phase=1
--
Ace
This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.
Please reply back to the newsgroup or forum to benefit from collaboration
among responding engineers, and to help others benefit from your resolution.
Ace Fekay, MCT, MCSE, MCSA 2003 & 2000, MCSA Messaging
Microsoft Certified Trainer
http://twitter.com/acefekay
For urgent issues, you may want to contact Microsoft PSS directly. Please
check
http://support.microsoft.com for regional support phone numbers.