If clients don’t appear in the DNS zone or PTR records are missing, they might not be properly registering themselves.
DHCP not configured to register DNS
Static IP clients not manually registering
DNS zone not allowing dynamic updates
Permissions issue on AD-integrated DNS zones
✅ Enable Dynamic Updates:
In DNS Manager → Zone Properties → set to “Secure only” (for AD)
Or “Nonsecure and secure” (if not domain-joined)
✅ DHCP Settings:
In DHCP console → IPv4 → Properties → DNS Tab
☑️ Enable dynamic updates
☑️ Discard records when lease is deleted
Set credentials for secure updates (non-admin domain user)
✅ Manually Register (Static Clients):
ipconfig /registerdns
✅ Check DHCP Client Permissions:
Ensure service account used by DHCP has rights to update DNS.
Zone transfers allow DNS servers to share zone data. If this fails, secondary DNS servers will not update, leading to inconsistent resolution.
“Zone transfer failed”
“AXFR not allowed”
Records not showing up on secondary server
✅ Verify Zone Transfer Settings:
In DNS Manager > Zone > Properties > Zone Transfers
Ensure “Allow zone transfers” is enabled
Choose:
Only to servers listed on Name Servers tab
Or specify IPs of secondary DNS servers
✅ Check Network Connectivity:
ping <secondary DNS IP> telnet <secondary DNS IP> 53
✅ Check Firewall Settings:
Port 53 TCP must be open on both servers for zone transfers (UDP is for queries)
✅ Verify Serial Number Sync:
In DNS Manager → right-click zone → Transfer from Master
Compare zone serial numbers between primary and secondary
✅ Event Viewer Logs:
Check for zone transfer errors under:
Event Viewer > DNS Server Logs
