Migrating to AD but have non-windows DNS...problems?

T

ts

The company is still running and NT enviornment and wants to migrate to AD.
Currently they run DHCP and DNS services via several linux boxes.

Does AD require a Windows based DNS on the network for resolution or will
any DNS do?

TIA
 
J

Joe Richards [MVP]

Any DNS that supports SRV records, underscores, and dynamic updates. I ran a
Fortune 5 company off of Solaris machines running QIP DNS and DHCP.

joe
 
M

Manny Borges

Carey and Joe have given you the answer you sought. But I am curious as to
why a company would choose to use BIND instead of the native windows.

Note I said " instead of" not "with". For convenience, I would heavily
reccomend using your new DCS as DNS servers and using the linux boxes as
secondaries or as a split DNS system used to handle external queries.

I don't buy into the whole "BIND is more secure than MS DNS". I have seen no
evidence of this. If any one has a credible reason that could actually
happen I would be more than happy to switch my view.

--
Manny Borges
MCSE NT4-2003 (+ Security)
MCT, Certified Cheese Master

The pen is mightier than the sword, and considerably easier to write with.
-- Marty Feldman
 
J

Joe Richards [MVP]

It absolutely isn't more secure because Windows allows for the secure updates.
However, some companies with large deployed DNS architecture already may not
want to switch over in whole or in part to Windows DNS. You will find this in
many very large companies that have very decentralized management of AD. Done
properly, this will work fine. I implemented a very large AD in a Fortune 5
company that runs great and the AD Admins have no access to modify DNS other
than through nsupdate.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top