Trying to add dns to two domains


G

Guest

we have 2 domains here and I am trying to add each others DNS to them. I
added an AD integrated forward lookup zone to each DNS server and can only
ping using the host name with the FQDN not just by the host name. I did
enable dynamic updates.
I also created an AD Integrated reverse lookup zone.

Any idea what I missed? I would like to get this working today.

Thanks
 
Ad

Advertisements

K

Kevin D. Goodknecht Sr. [MVP]

In
John McCoy said:
we have 2 domains here and I am trying to add each others DNS to
them. I added an AD integrated forward lookup zone to each DNS server
and can only ping using the host name with the FQDN not just by the
host name. I did enable dynamic updates.
I also created an AD Integrated reverse lookup zone.

Any idea what I missed? I would like to get this working today.

Thanks

Under Win2k AD zones do not replicate accross domain boundries, so you need
a secondary zone for the other domain in each DNS server.
Then, in order to resolve or ping host names only you must create your own
DNS suffix search list using "append these DNS suffixes" using both domain
names. You can assign this DNS suffix search to XP and 2k3 clients using a
Group Policy -Note- this policy can only be applied to XP and 2k3 clients.
Win2k, NT4 and Win9x don't support this policy.
The policy is located here and must be edited from XP or Win2k3 the first
time:
Computer Configuration
-Administrative Templates
- Network
-DNS Client
-DNS Suffix Search list
 
G

Guest

Thank you, also according to MS I need to create a trust between the two
domains which I do not have as of yet.
 
K

Kevin D. Goodknecht Sr. [MVP]

In
John McCoy said:
Thank you, also according to MS I need to create a trust between the
two domains which I do not have as of yet.

You don't need trust for DNS resolution, but you do for access. You can't
set up trust until you have full resolution of the AD domain.
 
G

Guest

Thank you very much, I did do the group policybut it has not taken effect
yet. I manually added the DNS suffix and that worked just fine. I am assuming
the group policy will take effect soon, I did it this morning.

Thanks
 
G

Guest

Kevin, I created this policy using my XP machine but the servers here and at
our other domain are running Windows 2000, will the policy I created still
take effect?

Thanks
 
Ad

Advertisements

K

Kevin D. Goodknecht Sr. [MVP]

In
John McCoy said:
Kevin, I created this policy using my XP machine but the servers here
and at our other domain are running Windows 2000, will the policy I
created still take effect?

The policy can be published by Win2k DCs but not to Win2k clients.
 
Ad

Advertisements


Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top