Re: DNS Configuration



JBP wrote:
"JBP" wrote:

Hello,

I have xyz.abc.com AD 2003 parent domain and 123.xyz.abc.com chield
domain.
I am not able to understand the configuration of DNS server did by
the previous Sys Admin.

xyz.abc.com has two domain controller and both has Primary Zone for
the domain.

As per AD configuration 123.xyz.abc.com has three domain controller
but only one is running and the DC has GC, RID FSMO is switch off
since I don't know.

Please clarify the above statement. (especially clarify this part:DC has GC,
RID FSMO is switch off since I don't know.)

The DNS is not properly configured without zone
transfer with Parent domain.

What zones do you have in the parent DNS?
Are the zones stored in Active Directory?
How is replication set on each of the zones?



Can some one tell me how is the DNS configuration should be with
this senario.

By default, when the first Win2k3 DC is promoted in a forest, it creates a
_msdcs.forestrootdomain, which is set to replicate to all DNS servers in the
AD forest <forestrootdomain>. This zone will replicate even to the child DCs
as long as they are Win2k3.
Do you have this zone?

To get the DNS in other domains to resolve names in the <forestrootdomain>
you will need to do one of these:
1. Change the <forestrootdomain> zone to replicate to all DNS servers in the
forest.
-or-
2. On the DNS servers in the child domain, on the forwarder tab, create a
conditional forwarder for <forestrootdomain> with the DNS IP of the DNS
servers with the <forestrootdomain> zone.
-or-
3. Create a stub zone for <forestrootdomain>.



Thanks,


Hello anybody is listing me, Please help me I am waiting your valuable
suggestions.

Listening, but still trying to decypher your post.
THere reallly isn't that much to configuring a DNS server. Configuring the
DNS client is much more important.

The DNS client service must only use DNS servers that support the AD domain,
no ISP DNS server are allowed on any member of an AD domain.



--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps
===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
https://secure.lsaol.com/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


.



Relevant Pages

  • Re: missing information from forestdnszones / domaindnszones
    ... DNS is not installed on all DC's. ... If the zone was AD integrated, it acts as a primary zone on any DC ... on to their respective Site DCs (and the app partitions don't have anything ... SRV records to reflect the new configuration, ...
    (microsoft.public.windows.server.dns)
  • Re: DNS signature failed to verify error
    ... In our last we discussed the need for there to be a NS record for each DNS ... Under the zone domain.local there is a delegation _msdcs which only has one ... _msdcs.domain.local is configured the "Replicate to all DNS servers in the AD ... Thanks for the DCDiag syntax suggestion. ...
    (microsoft.public.windows.server.dns)
  • Re: /etc/resolv.conf changes
    ... DNS records files, the configuration is caching nameserver; ... {#Settings for the ROOT ZONE ... type master; #Specifies this as a MASTER ZONE ...
    (Fedora)
  • Re: DNS registration for PDC only correct on some DNS servers?
    ... RRs out of the zone to achieve a correct DNS configuration. ... the primary zone's properties dialog - you don't have to implicitly name allowed transfer servers via NS records. ...
    (microsoft.public.win2000.dns)
  • Re: DNS Cache Corrupt for individual zone
    ... for authoritative DNS of external hosts). ... We have a frustrating issue where the zone for one particular zone ... when the cache is in this state. ... DNS servers are only accessible in our internal DNS network. ...
    (microsoft.public.windows.server.dns)