All,
Yesterday our network technician was working with Solarwinds support to set up IPAM (v4.3.2) so that it would pull the current DNS tables from our DNS server. Around the same time we started getting calls from users that they could not longer access their computers/servers.
We went to our DNS server and found the forward lookup zone for our domain was GONE! Completely gone!
We recreated the zone and computers began re-registering in DNS, but we are still trying to find the root cause of the problem.
The service ID used to allow IPAM to communicate with our DNS servers was setup as Domain Admin which should not have been the case! But it was, so it had the permissions to delete DNS zones. My question is, does IPAM allow changes on the Solarwinds server to be made to the actual DNS server? Could a deleted zone in IPAM result in the zone being deleted on the DNS server?
- If yes, how do we prevent this from happening?
Also, why does IPAM insist on grabbing it's own copy rather than just referencing the DNS server? Is it to take a load off the DNS Server? to still provid name/IP resolution if DNS server is down?
Thanks for you help!