Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


September 2007

Beware of Unused NICs

RSS
Subscribe to Windows IT Pro | See More Domain Name System (DNS) Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!

Executive Summary:
When you're configuring a new Microsoft Windows server that has multiple network interface cards (NICs), it's important that you disable any NICs that aren't plugged in to the network. If you don't disable an unused NIC, problems can arise on domain controllers (DCs) running Domain Name System (DNS). The DNS server problems can impede the performance of client computers.


When you're configuring a new server that has multiple NICs, it's important that you disable any NICs that aren't plugged in to the network. If you don't disable an unused NIC, the Windows software will assign it an IP address from the 169.254.x.x subnet. This address isn't used anywhere on the network and isn't routable across any WAN routers.

At this point you might be thinking, "So if it isn't connected, what's the problem?" Problems can arise on domain controllers (DCs) running DNS. Servers register all active IP addresses with the default DNS server. On a DC, this has the side effect of registering the server in Active Directory (AD) as a DC with two IP addresses: its valid IP address and the invalid 169.254.x.x address.

When a client makes a DNS request to find all the DCs for the appropriate domain, occasionally the client will be given the invalid 169.254.x.x address as a valid DC address because addresses are returned in a round-robin fashion. The client will then attempt to contact the DC using this invalid address. Of course, it won't be able to contact the DC, and the connection will fail. The client will then attempt to look up another DC using DNS. Eventually the client will succeed, and all will be fine. However, all these extra lookups will slow down the client computer.

We learned about this problem while attempting to connect a new storage appliance. The appliance was able to register with the domain but periodically would be unavailable when we attempted to browse for files located on the appliance. We had to manually go through DNS and remove all of the invalid entries and reregister the appliance with the domain to correct the problem.

So, the moral of the story is this: If you have multiple NICs in a server, disable those NICs that aren't being used.
—Chris Lamb, Director, IT Infrastructure, HIT Entertainment

End of Article



Reader Comments
Interesting point. After reading this I immediately checked our new server. The second NIC is on but not plugged in to any network. Windows lists it as disconnected with no IP address.

Then I checked our DNS registrations. It shows three 169 addresses. While not too bad for a 15,000 person organizaion, it's still three more then should be there. All three have "(same as parent folder)" for their hostname. Is there a way to track which machines these are coming from?

Mahoney August 30, 2007 (Article Rating: )


I fully support this article. I was getting an error when I ran dcdiag and netdiag on a new DC. So I was worried. Once I disabled the unused NIC all was good!

oalexis@dar.org September 07, 2007 (Article Rating: )


I know of no way to trace the DNS entry to see which machine registered the record, since there is no hostname registered with the 169 address. I think your only option is to go to each DC and check for enabled/disconnected nics. The issue is only relevant for domain controllers so it will limit the number of machines you need to check.

cwlamb September 26, 2007 (Article Rating: )


You must be a registered user or online subscriber to comment on this article. Please log on before posting a comment. Are you a new visitor? Register now




Top Viewed ArticlesView all articles
WinInfo Short Takes: Week of November 23, 2009

An often irreverent look at some of the week's other news, including some post-PDC some soul searching, a Google Chrome OS announcement and a Microsoft response, Windows 7 off to a supposedly strong start, the Jonas Brothers and Xbox 360, and so much more ...

2009 Windows IT Pro Editors' Best and Community Choice Awards

Picking a favorite product from an impressive crowd of competitive offerings is never an easy task, and such was the case with our Editors' Best and Community Choice awards this year. ...

Command Prompt Tricks

One reader shares his tip for setting up the command prompt to reflect a remote path. ...


Related Events Deep Dive into Windows Server 2008 R2 presented by John Savill

7 Ways To Get More From Your SharePoint Deployment Now

Configuration Manager SP1 and R2 Overview

Check out our list of Free Email Newsletters!

Windows OSs eBooks Understanding and Leveraging Code Signing Technologies

A Guide to Windows Certification and Public Keys

SQL Server Administration for Oracle DBAs

Related Windows OSs Resources Introducing Left-Brain.com, the online IT bookstore
Looking for books, CDs, toolkits, eBooks? Prime your mind at Left-Brain.com

Discover Windows IT Pro eLearning Series!
Clear & detailed technical information and helpful how-to's, all in our trademark no-nonsense format


Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound
Left-Brain.com Technology Resource Directory asp.netPRO ITTV Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement