Windows IT Pro is the authoritative and independent resource for windows nt, windows 2000, windows 2003, windows xp. Features a collection of resources and magazines for windows IT professionals.
  
  
  Advanced Search 


September 2007

Beware of Unused NICs

RSS
Subscribe to Windows IT Pro | See More Domain Name System (DNS) Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!

Executive Summary:
When you're configuring a new Microsoft Windows server that has multiple network interface cards (NICs), it's important that you disable any NICs that aren't plugged in to the network. If you don't disable an unused NIC, problems can arise on domain controllers (DCs) running Domain Name System (DNS). The DNS server problems can impede the performance of client computers.


When you're configuring a new server that has multiple NICs, it's important that you disable any NICs that aren't plugged in to the network. If you don't disable an unused NIC, the Windows software will assign it an IP address from the 169.254.x.x subnet. This address isn't used anywhere on the network and isn't routable across any WAN routers.

At this point you might be thinking, "So if it isn't connected, what's the problem?" Problems can arise on domain controllers (DCs) running DNS. Servers register all active IP addresses with the default DNS server. On a DC, this has the side effect of registering the server in Active Directory (AD) as a DC with two IP addresses: its valid IP address and the invalid 169.254.x.x address.

When a client makes a DNS request to find all the DCs for the appropriate domain, occasionally the client will be given the invalid 169.254.x.x address as a valid DC address because addresses are returned in a round-robin fashion. The client will then attempt to contact the DC using this invalid address. Of course, it won't be able to contact the DC, and the connection will fail. The client will then attempt to look up another DC using DNS. Eventually the client will succeed, and all will be fine. However, all these extra lookups will slow down the client computer.

We learned about this problem while attempting to connect a new storage appliance. The appliance was able to register with the domain but periodically would be unavailable when we attempted to browse for files located on the appliance. We had to manually go through DNS and remove all of the invalid entries and reregister the appliance with the domain to correct the problem.

So, the moral of the story is this: If you have multiple NICs in a server, disable those NICs that aren't being used.
—Chris Lamb, Director, IT Infrastructure, HIT Entertainment

End of Article



Reader Comments
Interesting point. After reading this I immediately checked our new server. The second NIC is on but not plugged in to any network. Windows lists it as disconnected with no IP address.

Then I checked our DNS registrations. It shows three 169 addresses. While not too bad for a 15,000 person organizaion, it's still three more then should be there. All three have "(same as parent folder)" for their hostname. Is there a way to track which machines these are coming from?

Mahoney August 30, 2007 (Article Rating: )


I fully support this article. I was getting an error when I ran dcdiag and netdiag on a new DC. So I was worried. Once I disabled the unused NIC all was good!

oalexis@dar.org September 07, 2007 (Article Rating: )


I know of no way to trace the DNS entry to see which machine registered the record, since there is no hostname registered with the 169 address. I think your only option is to go to each DC and check for enabled/disconnected nics. The issue is only relevant for domain controllers so it will limit the number of machines you need to check.

cwlamb September 26, 2007 (Article Rating: )


You must log on before posting a comment.

If you don't have a username & password, please register now.




Top Viewed ArticlesView all articles
WinInfo Short Takes: Week of November 24, 2008

An often irreverent look at some of the week's other news, including a Vista Capable dismissal request, Zune price reductions, Morrow musings, Novell and Microsoft sitting in a tree ... two years later, Yahoo!, IE 6 on Windows Mobile, and so much more ...

Command Prompt Tricks

One reader shares his tip for setting up the command prompt to reflect a remote path. ...

PsExec

This freeware utility lets you execute processes on a remote system and redirect output to the local system. ...


Windows OSs Whitepapers Why SaaS is the Right Solution for Log Management

Related Events SQL Server 2008 – Can You Wait? | Philadelphia

SQL Server 2008 – Can You Wait? | Atlanta

SQL Server 2008 – Can You Wait? | Chicago

Check out our list of Free Email Newsletters!

Windows OSs eBooks Understanding and Leveraging Code Signing Technologies

A Guide to Windows Certification and Public Keys

SQL Server Administration for Oracle DBAs

Related Windows OSs Resources Become a VIP member of the Windows IT Pro community!
Get it all with the VIP CD and VIP access. A $500+ value for only $279!

Subscribe to Windows IT Pro!
Solve your toughest technical problems with our experts and access 10,000 + articles online. 30% off

Monthly Online Pass - Only $5.95!
Get instant access to 10,000+ articles from Windows IT Pro Magazine!

TechNet Virtual Labs
Evaluate and test Microsoft's newest products.


Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro Windows Dev Pro IT Job Hound ITTV
IT Library Technology Resource Directory Connected Home Windows Excavator Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 Copyright © 2008 Penton Media, Inc., All rights reserved. Terms and Use | Privacy Statement | Reprints and Licensing