Windows Server - resolve external web site w/o www

Asked By dlw
13-Nov-09 12:30 PM
Our domain name is company.com  we have an alias that forwards
www.company.com to our external web site.  It is hosted by HubSpot.  In order
for us to manage the site, we also need just plain company.com to resolve to
the site.  Is there any way to make this happen?
I was trying to do a redirect in IIS, but IIS is not running on the DC, BUT
when you type just company.com into a browser, it comes up with an Under
Construction page.  Where is that coming from?
Active Directory
(1)
IIS
(1)
LdapIpAddress
(1)
Netlogon
(1)
Trainer
(1)
Windows
(1)
Boyne
(1)
Accelerator
(1)
  Ace Fekay [MCT] replied to dlw
13-Nov-09 12:46 PM
This is a little tricky because the blank domain entry, which on a DC is
called the LdapIpAddress, is a necessary address for Active Directory. it is
the record that shows up as "(same as parent)" with an IP address. That IP
address is the DC. Normally to do what you want to get to the blank domain
name (without www), you would change this, but you will have numerous Active
Directory problems. Eventually the Netlogon service will overwrite it with
the correct IP of the DC during the next registration cycle.

To get around this, install IIS on the DC (which is not normally recommended
due to security reasons). Then once installed on the DC (apparently you
already installed IIS), go into the default website, and under the document
page, select 'redirect to a URL' and type in your www.whatever.com address.

Here is more info on this scenario, and other similar scenarios.

Split Zone or no Split Zone - Can't Access Internal Website with External
Name
http://msmvps.com/blogs/acefekay/archive/2009/09/04/split-zone-or-no-split-zone-can-t-access-internal-website-with-external-name.aspx


--
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

Please reply back to the newsgroup or forum for collaboration benefit among
responding engineers, and to help others benefit from your resolution.

Ace Fekay, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007, MCSE & MCSA
2003/2000, MCSA Messaging 2003
Microsoft Certified Trainer

For urgent issues, please contact Microsoft PSS directly. Please check
http://support.microsoft.com for regional support phone numbers.
  J de Boyne Pollard replied to dlw
18-Nov-09 12:10 PM
dlw> Our domain name is company.com =A0

No, it is not.

obscure-your-dns-data.html>

dlw> In order for us to manage the site, we also need just plain
company.com to
dlw> resolve to the site. =A0

And in order for other things on your LAN to work, you need that name
to resolve to your domain controllers.

dcs-overwrite-domain-name.html>

As the FGA says, in an ideal world your WWW browser would use SRV
resource records, and you would _not_ need "just plain example.com to
resolve to the site", at all.

dlw> Is there any way to make this happen?

Yes.  The FGA lists three, the first of which requires Microsoft to
pull its finger out.  M. Fekay gave a third.  Here is a fourth:  Use a
proxy HTTP server, tell all of your WWW browsers about it, and
configure the proxy HTTP server to handle http://example.com./
specially.  No DNS service involved.
  Grant Taylor replied to dlw
20-Nov-09 12:54 AM
Set up IIS (or what ever web server /is/ running on your DC) to return a
301 redirect to "www.company.com".


If you are getting a web page (even an "Under Construction" page) off
your DC, then there is a web server running on it.



Grant. . . .
  Grant Taylor replied to J de Boyne Pollard
20-Nov-09 12:56 AM
Granted, a reverse proxy (a.k.a. web accelerator) will work, but it will
potentially cause a lot more traffic through the proxy system than a
simple redirect would.

Here is a fifth (and in my opinion the most proper one even if it is a
lot of work).  Rename your domain so that AD and your web presence do
not collide.  Sub-domains are wonderful.



Grant. . . .
Create New Account
help
NLBS and Active Directory Windows Server Hi, We have a setup where we need NLBS installed and used for IIS on two systems running Windows 2003 R2. We also need an Active Directory in that setup. Is it OK / supported to install Active Directory on those 2 systems and than install the NLBS with IIS ? Thanks, Alain Windows Server Clustering Discussions SQL Server 2005 (1) SQL Server (1) Windows Server
Linux -> Active Directory Password Synchronization Windows Server , Active, Directory, Password, Synchronization" / > Hello, I am trying to create a utility to set a Windows password to do? According to uname, I am using GNU / Linux 2.6 Thanks. Windows Server Active Directory Discussions Active Directory (1) Linux (1) IIS (1) Svyatoslav (1) Kerberos (1) Goerlich (1) Windows (1) Apache (1
IIS7 and Active Directory Windows Server Hi, I have IIS7 setup with a directory secured using BASIC Authentication only. The directory is on a network share but only two Active Directory usernames have NTFS permissions to this folder. One username is for the IIS entry to have permission to the share. The second username is to be used externally works great. The username can login fine. But. . . So can all the other usernames within Active Directory. I have isolated this shared folder to only allow these two usernames (both in
User privilege caching in Active Directory? Windows Server Hello! I have an Active Directory domain and a web application (that is developed with .Net and runs on the domain propagation to the computers of the domain: I'm also talking about privileges on the Active Directory itself (i.e. privilege to create users in a certain ou, etc.) I've tried 0 \ DirectoryServices, but nothing changed. . . Any suggestion would be greatly apreciated! Thankyou! Filippo Windows Server Active Directory Discussions Active Directory (1) Vista (1) IIS (1) MSEtechnology (1) DirectoryEntry (1) Filippo (1) Jagger
2003 Server Active Directory DNS zone event id 5153 Windows Server Server ran out of space on c drive where Active Directory resides along with DNS zones. The Active Directory integrated zone is broken and has nothing in it when viewed with notepad. This is why Exchange is still working. I cannot ping computer by name on the network. The Active Directory zone file will not load. Is there a way to reinitialize the zone file so