delegating DNS

M

Marty Mailey

Hi

a couple of questions on DNS
3 sites, 1 DC (2003 server) in each site. Each site has different
subnet.Domain is child of forest root. Before dcpromom 1st dcinto new child
domain, delegated new dns zone from forest root domain- this dc running DNS
service- gave it dns of new zone and IP address of would be 1st child domain
DC (running DNS service). This then creaed SRV records in DNS service
running on 1st child DC.
Do I need to do similar for further 2 DCs joing as additional DCs into child
domain?

Also as 2nd Dc promoted server object appears unsder site but nothing under
NTDS settings? Why?
 
H

Herb Martin

a couple of questions on DNS
3 sites, 1 DC (2003 server) in each site. Each site has different
subnet.Domain is child of forest root. Before dcpromom 1st dcinto new child
domain, delegated new dns zone from forest root domain- this dc running DNS
service- gave it dns of new zone and IP address of would be 1st child domain
DC (running DNS service). This then creaed SRV records in DNS service
running on 1st child DC.

You message is nearly incomprehensible -- conceptual separate your DNS
from the Active Directory Domain it supports.

DNS should be Dynamic (you should NOT be "creating SRV" records manually)
and your DCs should point to that dynamic DNS (set) ONLY as should your
clients.
Do I need to do similar for further 2 DCs joing as additional DCs into child
domain?

DNS for child domains must be kept CONCEPTUALLY separate from the
AD -- never think about more than one DNS zone at any one time (except
during
the actual process of delegation.)

Think of zones separates even if you choose to deploy multiple zones on any
particular DNS server (e.g., having the child "domain" DNS zone servers hold
a secondary copy of the parent "domain" DNS zones, vice versa.)

The latter (Parents hold child) is part of the motivation for adding the new
"Stub" zone feature in Win2003 DNS -- Stub zones can substitute for
delegation,
and for the idea of holding the ENTIRE zone file on the parent DNS.

(There are other uses but this is an important one.)
Also as 2nd Dc promoted server object appears unsder site but nothing under
NTDS settings? Why?

Replication. Each DC has a NTDS settings in Sites and Servers or it is
either
NOT a DC, or the information has not replicated (yet? correctly?).
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top