Re: dns on multiple domains



Kevin,
Thanks for your reply and I appologize for the delay in my response.

I think I'm confusing myself, we are about attept public internet access.
I've not configured DHCP or DNS for none AD devices or users. I think that is
where I'm making it more difficult than it needs to be.

Should I just set up a DHCP scope and point the dns stuff to my ISPs or to
my DNS servers=a AD integratred reverse look up zone so it replicates between
my two DCs???
Thanks again,

"Kevin D. Goodknecht Sr. [MVP]" wrote:

Read inline please.

In news:5E4B51B2-CD5A-4FFD-98E3-23AB16766A4F@xxxxxxxxxxxxx,
okon3 <okon3@xxxxxxxxxxxxxxxxxxxxxxxxx> typed:
"Kevin D. Goodknecht Sr. [MVP]" wrote:

Read inline please.

In news:35CBD83B-0907-40A4-AF2F-02B5F48EA7EB@xxxxxxxxxxxxx,
okon3 <okon3@xxxxxxxxxxxxxxxxxxxxxxxxx> typed:
I have 2 domains and 3 domain controllers.
One domain for our voice network(Cisco windows 2000 server unity
server with Exchange) with one of the DCs and integrated dns and it
also has an integrated reverse lookup zone for our data network.
Our data domain has the other two DC's(windows 2000 server soon to
be upgraded to 2k3 server) and integrated DNS, one of these DCs has
a primary DNS zone for our voice domain, the other DC has no
reference
to the voice domain(I would like it to).

Can I integrate the voice domains dns into our data domain dns
servers or what would be the recommended path?

Thanks

Yes, you can setup a zone stored in AD for another domain, but,
before you could use Secure updates, you'll need to create a trust,
and make sure the server in the external Domain has update rights in
the zone. There is no replication between external domains, but you
can have Authentication in the zone.

OK thanks, is there a benefit other than redundancy without
replication?

SECURITY

also:
Is there a limit to the number of AD integrated zones on 2000 or 2003
server?

I have over 1000 zones on two servers and haven't found the wall yet.

We are about to add some subnets for separate wireless
access and other projects that we would like to keep separate from
our internal data subnet, can I integrate these subnets as well if
there is no real authentication taking place? AD network
authentication that is.

Any zone on a Domain Controller can be stored in Active Directory, (ADI) if
your DCs are in different Forests, or different Domains under Win2k, there
will be no replication between the servers, but you can still have a trust
and Authenticate between them. Just to read DNS requires no Authentication,
and is probably the only service on Win2k or Win2k3 that doesn't require
some sort of Authentication to read. However, setting the zone to Only
Secure updates, will require AD Authentication with a privileged account to
update.



--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps

===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
http://message.wftx.us/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================



.



Relevant Pages

  • RE: exchange server cannot mount mailbox store
    ... What's the exact detailed DNS Events ... Type desired internal IP address of your SBS server. ... it will delete the reverse lookup zone if the zone no longer ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)
  • Re: Event 4515 :another copy of zone has been found
    ... running on the old 2000 server. ... I then installed DNS on ... I seem to remember hearing that if you just delete/remove the zone it ... Container), the Configuration Partition, and the Schema Partition. ...
    (microsoft.public.windows.server.dns)
  • Re: Replication between parent child domains
    ... install dns before i run the dcpromo on the melbourne server. ... DNS server will forward any query it can't answer, Checks zone ...
    (microsoft.public.windows.server.active_directory)
  • Re: Replication between parent child domains
    ... DNS server will forward any query it can't answer, Checks zone ... DNS Servers) all queries will go to tld DNS server (including Internet ... Stub zones: Stub zones contain a read-only copy with specific records ...
    (microsoft.public.windows.server.active_directory)
  • Re: DNS Redesign Issue
    ... -Using DNS console you can right-click the zone and export to a File, ... -To export a Zone and import that Zone in another DNS Server you need to use ... Create a child zone dallas on the DNS server in the child domain ...
    (microsoft.public.windows.server.dns)

Loading