Windows 2003 AD

Norman Zhang norman.zhang at rd.arkonnetworks.com
Mon Sep 13 21:29:27 UTC 2004


>>You're better off asking in a Windows 2003 group, but I can tell you the 
>>reason is because your Windows machine is trying to do a secure dynamic 
>>update and BIND doesn't understand it. This has nothing to do with rndc.
>>
>>allow-update should have IP addresses in it, not a key file.
> 
> Thanks. I updated
> 
> allow-update { 10.1.1.0/24; };
> 
> now I get
> 
> The SOA query for _ldap._tcp.dc_msdcs.hq.arkonnetworks.com to find the 
> primary DNS server returned:
> This operation returned because timeout period expired. (error code: 
> 0x000005B4 "ERROR_TIMEOUT")
> 
> Should I do a CNAME for _ldap._tcp.dc_msdcs?

My bad. I missed ";" in named.conf. I should have learned how to type. 
After adding the missing ";", things seem to work.

Regards,
Norman


More information about the bind-users mailing list