After succeeding to install Wingate with 6 computers behind, I noticed very much activity coming from the comp acting as the wingate server (172.16.1.1)...this activity caused the DNS-service logfile to grow in 4 hours up to 270 MB. Here a few lines of the logfile:
03/03/06 07:09:43 172.16.1.1 Guest 0000494695 Requested: DNS: TXT lookup "_domainkey.starke-tele.com."
03/03/06 07:09:43 172.16.1.1 Guest 0000494696 Requested: DNS: TXT lookup "_domainkey.starke-tele.com."
03/03/06 07:09:43 172.16.1.1 Guest 0000494697 Requested: DNS: TXT lookup "_domainkey.starke-tele.com."
03/03/06 07:09:43 172.16.1.1 Guest 0000494698 Requested: DNS: TXT lookup "_domainkey.starke-tele.com."
03/03/06 07:09:43 172.16.1.1 Guest 0000494699 Requested: DNS: TXT lookup "_domainkey.starke-tele.com."
03/03/06 07:09:43 172.16.1.1 Guest 0000494700 Requested: DNS: TXT lookup "_domainkey.starke-tele.com."
...there are tons of these lines (all the same) in the logfile.
It stopped when I stopped the DNS-service ?! I'm afraid there is something going wrong, isn't it ?
But I can't imagine what this caused, because at this time (5-7am in the morning) only the server was online, all other pc's were not running and the internet explorer was not running ??!!
STOP: I now saw that (at about 5 o'clock in the morning) there had come in an e-mail from an office called starke-tele.com on the MDaemon e-mail server...but why causes an e-mail the server to look for this domain, when nobody is on the pc ???
And right now there has come in an e-mail from a friend of mine with the domain "legolivotto.com" and now in the activity window of gatekeeper, the server pc looks up for this domain with a lot DND service requests (DNS: A lookup "legolivotto.com") ...it does not stop....so I have stopped the logging of this, because the logfile would explode ???!!!
It also is going on in spite of the fact that the e-mail was fetched from the server by the recepient and deleted from the MDaemon server ??!! Is this normal ? I only can stop this behaviour when I stop the DNS-service and start it again, this I have to do because with stopping this service the other pc's behind can not reach certain internetsites...
The DNS-service is binded only on any internal adapter and on MS TCP loopback interface (127.0.0.1).
My hosts and lmhost files are updated also, so they have the right ip adresses and names of the comps in my network...but this I think is not important for this issue??!!.
My szenario:
My Wingate server pc (WinXP prof. with SP1) has 2 network cards installed, one for the internal network (172.16.1.1) and one for the dsl connection. The 6 computers behind have all WinXP prof. with SP1 installed and fixed ip-adresses. The server pc is running the MDaemon e-mail server and ftp serving software.
And additionally I have to say I have not yet made users for Wingate...all guests are allowed to connect to the internet...because I'm still testing this...
Greetings
Christian