Re: DNS settings fore hosting

From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 04/11/04


Date: Sun, 11 Apr 2004 08:20:27 -0700

You really need to let us know a little more of your hosting
requirements and offerings.
If nothing requires that you have AD in the outer network
world then you would be best off without placing it there.
To me, ease of management is only a valid reason if the
scale of your environment is sufficiently large or you are
using clustering techniques.
That given, the DNS services used for the AD if it is present
should be use only for and by the AD participant machines.
If this means IP filtering to control access so be it.
The DNS used for public presence of the hosted webs needs
to be elsewhere, not on the AD supporting DNS.
That said, you are leaf probably without the option on using
AD integrated DNS zones, which also means you will not be
able to secure dynamic updates.
Now, how often does this hosting supportative data change?
Two cases, new zones and new records, and the other changes
to records existing within a zone.
This last is really what should guide in setting the default TTL

-- 
Roger Abell
Microsoft MVP (Windows Server System: Security)
MCSE (W2k3,W2k,Nt4)  MCDBA
<gortex_78NOS@PAMhotmail.com> wrote in message
news:165d101c41f3b$d045e6b0$a001280a@phx.gbl...
> Hello
>
> Can some body tell me the recomednded setings fore dns
> servers if I am going to host multiple sites and domains
> on the internet.
>
> my questions are
>
> recommended steing for ( i run 2 windows 2003 server
> standard EDT)
>
> 1)SOA setings (TTL, refresh, retry)
> 2)shuld the records be active directory integraded, I
> hadde some problems when they whore.
> 3)Dynamic uppdates yes ore no?
> 4)Zone transfers, none ore any
>
> If sombody knows eny good site where this is explained
> more ( windows settings for hosting companies)


Relevant Pages

  • Re: DCDIAG DNS Failure
    ... Without advance view I have 4 forward lookup zones and 7 reverse ... My DNS server is not multihomed. ...
    (microsoft.public.windows.server.dns)
  • Re: DCDIAG DNS Failure
    ... so the sddcsrv03 is a DC and DNS server right? ... also describe your actual reverse ... and forward zones. ...
    (microsoft.public.windows.server.dns)
  • Re: Pre-authentication failed for Windows 2008 systems
    ... This posting is provided "AS IS" with no warranties, ... If you are asking if the primary DNS zone contains A ... Active Directory Integrated Zones ... There are no WINS servers configured for this interface. ...
    (microsoft.public.windows.server.security)
  • Re: DCDIAG DNS Failure
    ... Without advance view I have 4 forward lookup zones and 7 reverse ... do you need all these reverse zones or your DNS server is multihomed ... -Your exchange server that is giving you problems, can it send Mail outside, ...
    (microsoft.public.windows.server.dns)
  • Re: DNS Issues causing 1030 and 1058 errors
    ... netlogon services. ... recreate the DNS zone. ... the zones and subfolders required for AD) ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)