Re: DNS not working over internet
- From: "Herb Martin" <news@xxxxxxxxxxxxxx>
- Date: Wed, 30 Apr 2008 18:25:13 -0500
"oz@telnet25@.Gmail.com-Nospam.org"
<oztelnet25GmailcomNospamorg@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:FAE1B79D-C9E0-47B5-B051-AADD0D3F550F@xxxxxxxxxxxxxxxx
Martin, I would say, it is because why not to have it?
No particular reason NOT to have it but that is not the same as
saying that it is "recommended for every size network".
It is because we can
use it for several very useful tasks as below.
Beautiful build in trouble shooting NSlookup. It is because you may need
to
provide IP to name resolution for some of the application to work
properly.
It is because if you do security related work and you have the IP and want
to
map it back to the name.
Small networks don't usually have any such issues -- doesn't fit your
"every size network".
I am sure you are not opposing to have it, and you and I know AD is not
depend on reverse lookup zone, but I am sure if you stood up a network you
would take another 1 extra minute and you would create reverse lookup
zone,
beside forward lookup zone.
I don't like to give advice like "recommended for every size network"
for something that is mostly a convenience of the admins and may not
even be very useful.
You are correct -- I have NO reason to AVOID having it, just don't
like to make unsupportable recommendations.
If you still think, you would not need reserve lookup zone, I would say
that
is your personal choice
Right, but not something that is clearly needed either.
Many people think incorrectly that their problems are due to some failure
of the reverse zones and waste a LOT of time and attention working on
them when they are largely a convenience and largely unnecessary.
When you give such recommendations, make it clear that it is a "nice to
have" and describe the main reasons.
--
Oz ozugurlu,
Systems Engineer
MCITP (EMA), MCITP (SA),
MCSE 2003 M+ S+ MCDST
Security Project+ Server+
oz@xxxxxxxxxx
http://smtp25.blogspot.com
"Herb Martin" wrote:
"oz@telnet25@.Gmail.com-Nospam.org"
<oztelnet25GmailcomNospamorg@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:26E4B971-8976-42D6-8897-9F71DEAFBF05@xxxxxxxxxxxxxxxx
Reverse lookup ( zone) is recommended for ever size network, ...
Why?
.
- Prev by Date: RE: Local Network DNS Changes - Help Requested
- Next by Date: Re: Restrict Dynamic Updates
- Previous by thread: RE: Backup DNS does not take over
- Next by thread: Re: Restrict Dynamic Updates
- Index(es):
Relevant Pages
|
|