PC Review


Reply
Thread Tools Rate Thread

Standard Primary vs AD Integrated?

 
 
=?Utf-8?B?QnJ5YW4gRXJ3aW4=?=
Guest
Posts: n/a
 
      8th Jun 2007
Is there any reason why you would not want to AD integrate a DNS zone that is
not associated with an Active Directory domain. I know it can be done, are
there any issues associated with doing it or reasons why you might not want
to do this?

Thanks
 
Reply With Quote
 
 
 
 
Kevin D. Goodknecht Sr. [MVP]
Guest
Posts: n/a
 
      8th Jun 2007
Read inline please.

In news:860344F8-1FEE-48D0-A595-(E-Mail Removed),
Bryan Erwin <(E-Mail Removed)> typed:
> Is there any reason why you would not want to AD integrate a DNS zone
> that is not associated with an Active Directory domain. I know it can
> be done, are there any issues associated with doing it or reasons why
> you might not want to do this?


If you are hosting a zone for a Publicly available domain and want full
control of NS and SOA MNAME records. By using AD integrated zones, you
increase the security on the zone, but you lose some control over those
records. You can add NS records, but the DC will create it's own NS record
and name itself as the Master Name server on the SOA.
By using standard zones you can make the NS and MNAME records to suit the
network they serve.



--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps

===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
http://message.wftx.us/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


 
Reply With Quote
 
 
 
 
=?Utf-8?B?QnJ5YW4gRXJ3aW4=?=
Guest
Posts: n/a
 
      8th Jun 2007
That makes sense. What about zones for non ad ware devices that may only need
to be accessed/resolved by users in specific locations. By AD integrating,
this data gets unnecessarily replicated throughout the entire enterprise. Is
this a valid reason not to AD integrate a zone, especially one that host not
ad aware hosts?

Thanks

"Kevin D. Goodknecht Sr. [MVP]" wrote:

> Read inline please.
>
> In news:860344F8-1FEE-48D0-A595-(E-Mail Removed),
> Bryan Erwin <(E-Mail Removed)> typed:
> > Is there any reason why you would not want to AD integrate a DNS zone
> > that is not associated with an Active Directory domain. I know it can
> > be done, are there any issues associated with doing it or reasons why
> > you might not want to do this?

>
> If you are hosting a zone for a Publicly available domain and want full
> control of NS and SOA MNAME records. By using AD integrated zones, you
> increase the security on the zone, but you lose some control over those
> records. You can add NS records, but the DC will create it's own NS record
> and name itself as the Master Name server on the SOA.
> By using standard zones you can make the NS and MNAME records to suit the
> network they serve.
>
>
>
> --
> Best regards,
> Kevin D. Goodknecht Sr. [MVP]
> Hope This Helps
>
> ===================================
> When responding to posts, please "Reply to Group"
> via your newsreader so that others may learn and
> benefit from your issue, to respond directly to
> me remove the nospam. from my email address.
> ===================================
> http://www.lonestaramerica.com/
> http://support.wftx.us/
> http://message.wftx.us/
> ===================================
> Use Outlook Express?... Get OE_Quotefix:
> It will strip signature out and more
> http://home.in.tum.de/~jain/software/oe-quotefix/
> ===================================
> Keep a back up of your OE settings and folders
> with OEBackup:
> http://www.oehelp.com/OEBackup/Default.aspx
> ===================================
>
>
>

 
Reply With Quote
 
Kevin D. Goodknecht Sr. [MVP]
Guest
Posts: n/a
 
      9th Jun 2007
Read inline please.

In news:F46ACAB0-5B75-4AEC-BC7B-(E-Mail Removed),
Bryan Erwin <(E-Mail Removed)> typed:
> That makes sense. What about zones for non ad ware devices that may
> only need to be accessed/resolved by users in specific locations. By
> AD integrating, this data gets unnecessarily replicated throughout
> the entire enterprise. Is this a valid reason not to AD integrate a
> zone, especially one that host not ad aware hosts?


Actually, replication depends a lot on your Forest structure, if you have
multiple domains in your forest, you can choose to replicate to
DomainDNSZones or a custom replication partition.
Yes, you can use Primary/secondary zones for names that must resolve
differently from site to site.


--
Best regards,
Kevin D. Goodknecht Sr. [MVP]
Hope This Helps

===================================
When responding to posts, please "Reply to Group"
via your newsreader so that others may learn and
benefit from your issue, to respond directly to
me remove the nospam. from my email address.
===================================
http://www.lonestaramerica.com/
http://support.wftx.us/
http://message.wftx.us/
===================================
Use Outlook Express?... Get OE_Quotefix:
It will strip signature out and more
http://home.in.tum.de/~jain/software/oe-quotefix/
===================================
Keep a back up of your OE settings and folders
with OEBackup:
http://www.oehelp.com/OEBackup/Default.aspx
===================================


 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Creating a Child Process with access to Standard Out, Standard In, and Standard Error patrick.ohara@cognex.com Microsoft Dot NET Compact Framework 3 15th Jun 2007 09:34 PM
Re: primary contacts folder gets this message! this version of outlook web access only supports your primary contact folder jdigalbo@phillynews.com Microsoft Outlook Contacts 0 13th Jan 2005 11:08 PM
Backing up primary winxp so secondary can be primary when needed? DrB Windows XP Setup 0 11th Jul 2004 02:49 AM
System primary account in the primary domain missing Pradeep Microsoft Windows 2000 Active Directory 1 15th May 2004 04:45 PM
Cannot add primary key constraint since primary key is already set for the table Microsoft VB .NET 1 3rd Dec 2003 02:14 AM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 03:40 PM.