Active Directory's A record and delegation to subdomains

Adam Augustine adam_augustine at morinda.com
Tue Sep 18 17:42:10 UTC 2001


Thanks to Cricket and Tim for their replies. I didn't think this was all
that unreasonable, but you never know with MS...

If I have missed a part in the book or the list where that information is I
would love to have someone point it out to me, cuz that means I missed some
important section somehow...

Now that I know it is possible, I just need a little more clarification...

Any idea where I would find out what would be considered a "legacy LDAP
client"? Or what term I would search for to find a Knowledgebase or Q
article on legacy LDAP clients or this registry key? We don't have any
Win3.11 or NT3.x machines, but we do have Win95, 98, 2000, NT4.0, and up...

>Hi, Adam!

[SNIP]
>> Does AD really need that A record? The p525 doesn't mention it and the
>>stuff
>> on the list (what I have been able to gather anyway), isn't conclusive
>> either way. It doesn't work when we test it, but that may just be because
>>we
>> aren't doing it quite right. If it doesn't need it, how do we set it up?

>No, according to the guys at Microsoft, that A RR is only for legacy LDAP
>clients.  I thought I wrote that somewhere...  Anyway, I think there's a
>Registry setting you can use on the DC to tell it not to add that record.

>> Next question, will the same trick we are using to keep AD out of the
>> "production" domain (the technique described on p525) work in a scenario
>> where we have delegated subdomains?
[SNIP]

>Sure, that'll work even if you also have a _udp.morinda.com,
>_tcp.morinda.com
>and the like.

>> Maybe I should just hire Cricket and Co. to take a shot at it... :-)

>No need--this time.  ;-)

>cricket



More information about the bind-users mailing list