Re: Stub zones

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



I forgot one more, stubzones are only better than delegations because they mantain the related NS refreshed automatically, so you don't need to manually add new DNS servers to the delegation when they are added to that zone.

--
*************************************************
I hope that the information above helps you
Good Luck

Jorge Silva

MCSA + Exchange + MSCE
*************************************************

"Herb Martin" <news@xxxxxxxxxxxxxx> wrote in message news:%238ltNzgEHHA.4132@xxxxxxxxxxxxxxxxxxxxxxx
"Jorge Silva" <jorgesilva_pt@xxxxxxxxxxx> wrote in message news:ujWNBUVDHHA.2176@xxxxxxxxxxxxxxxxxxxxxxx
Hi
2 things:
Stubs don't replace the delegations.

Stubs CAN be used in place of a Delegation for
almost* identical results (although I personally don't
do this.)

*There are subtle differences in the cases of updated
DNS server addresses (and adding/removing DNS
servers) but these have little practical effect in most
small networks.

and
Stubs aren't the same has the Secondary zones.

No, they most definitely are not "the same" (since if
they were the same they would BE "secondary zones")
but they are best thought of as "secondaries without
most of the records."

Stubs are LIKE Secondary Zones in that they have the
SOA, NS, and address records for those DNS servers
and thus can be used to effectively find the authoritative
servers which can provide the "rest of the zone", BUT
are different in that they do not have the (vast majority)
of ordinary records held by a Primary or Secondary
zone server

The purpose of Stubs (as opposed to just using a Secondary)
is LARGELY for "giant zones" in which the admin would
like to use a Secondary but prefers to avoid transferring
entire zone, especially across slow WAN lines -- in such
giant zones it is probably that most requests will be for a
very small number (up to a few dozen) records, e.g., those
needed to resolve DCs and perhaps critical servers such
as file, print, or email servers while technically allowing
for any record to be resolved if that ever becomes necessary.


--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]



.



Relevant Pages

  • Re: Pre-authentication failed for Windows 2008 systems
    ... This posting is provided "AS IS" with no warranties, ... If you are asking if the primary DNS zone contains A ... Active Directory Integrated Zones ... There are no WINS servers configured for this interface. ...
    (microsoft.public.windows.server.security)
  • Re: Forward lookup zone not automatically created for new domain in fo
    ... Company.biz is the forest root. ... forward lookup zones on the domain controllers hosting shell.company. ... You need your DNS servers in every domain/tree ... servers are Win2003 you can do forest wide AD Integration ...
    (microsoft.public.windows.server.active_directory)
  • Re: [fw-wiz] PIX, DNS fixups and Zone Transfers
    ... > We've recently implemented a PIX firewall setup, resulting in two DNS ... On the DNS servers, the ... > the current setup so that lookups by machines on the DMZ would work fine. ... Our DNS zones have one primary and 4 secondaries, ...
    (Firewall-Wizards)
  • RE: replication scope question
    ... DNS installed that hosts secondary zones for all four of the zones on the DC. ... changing the scope to the default setting "All DNS servers in the Active ... Directory domain" or should I leave the replication scope alone? ...
    (microsoft.public.windows.server.active_directory)
  • RE: Sites and Services
    ... >> same as our existing Bind DNS name. ... Our Windows DNS servers then transfer the zones to ...
    (microsoft.public.windows.server.active_directory)