Re: Forwarding or Stub Zones?
From: huff-n-puff (huffnpuff_at_discussions.microsoft.com)
Date: 10/06/04
- Next message: -: "Whose Net Logon service registers GC SRV records?"
- Previous message: Phil Teale: "Re: DNS SRV Records Question"
- In reply to: Ace Fekay [MVP]: "Re: Forwarding or Stub Zones?"
- Next in thread: Ace Fekay [MVP]: "Re: Forwarding or Stub Zones?"
- Reply: Ace Fekay [MVP]: "Re: Forwarding or Stub Zones?"
- Reply: Jonathan de Boyne Pollard: "Re: Forwarding or Stub Zones?"
- Messages sorted by: [ date ] [ thread ]
Date: Wed, 6 Oct 2004 16:13:01 -0700
My DMZ has approx 30 servers providing various services.
We have 3 DNS servers on the DMZ providing approx 70 DNS zones to the
internet.
The servers on the DMZ do not query our ISP they query the DNS servers on
our DMZ.
Just to clarify your suggestion.
Set all the servers on the DMZ to query the LAN DNS servers which would in
turn forward the request to the DNS servers on the DMZ then pass the response
back to the DNS servers on the LAN which would in turn pass the response back
to the server on the DMZ.....
Would that not create a hell of a lot of traffic on our firewall?
"Ace Fekay [MVP]" wrote:
> In news:F3DA7D72-5DA3-40B1-9858-7E69EE8878F5@microsoft.com,
> huff-n-puff <huffnpuff@discussions.microsoft.com> made a post then I
> commented below
> > We host our own domains so using the ISP isn't an option.
> >
> > Thanks for the quick response though.
> >
> > M
> >
>
>
> I believe what Dan is saying he configured all his DMZ machines to ONLY use
> the internal DNS servers, and not your external or ISP's DNS. This way they
> all resolve the internal stuff. If they need external resolution, assuming
> your internal DNS are configured with forwarding, they will still resolve
> outside names.
>
> --
> Regards,
> Ace
>
> Please direct all replies ONLY to the Microsoft public newsgroups
> so all can benefit.
>
> This posting is provided "AS-IS" with no warranties or guarantees
> and confers no rights.
>
> Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
> Microsoft Windows MVP - Windows Server - Directory Services
>
> Security Is Like An Onion, It Has Layers
> HAM AND EGGS: A day's work for a chicken;
> A lifetime commitment for a pig.
> --
> =================================
>
>
>
- Next message: -: "Whose Net Logon service registers GC SRV records?"
- Previous message: Phil Teale: "Re: DNS SRV Records Question"
- In reply to: Ace Fekay [MVP]: "Re: Forwarding or Stub Zones?"
- Next in thread: Ace Fekay [MVP]: "Re: Forwarding or Stub Zones?"
- Reply: Ace Fekay [MVP]: "Re: Forwarding or Stub Zones?"
- Reply: Jonathan de Boyne Pollard: "Re: Forwarding or Stub Zones?"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|