Stub with W2K DNS Server

Barry Finkel b19141 at achilles.ctd.anl.gov
Mon Jun 18 14:34:19 UTC 2001


From: "Schor Martin" <schor at genesiscom.ch> wrote:

>I want to set up the following DNS Design.
>
>We have two domains company.com and domain.com on a BIND 8.X Server, which
>resolves the Internal Namespace. For the Internet it forwards to the DMZs
>DNS Server. Now a Windows 2000 Deployment is going on. All the W2K CLients
>will be in domain.com. For Dynmaic Update reasons I now want to delegate the
>zones _msdcs.domain.com, _tcp.domain.com, etc to new ADS integrated W2K DNS
>Servers, but keep the parent domains on the BIND Servers.
>
>The Clients will have the "local" W2K DNS Servers defined in their
>resolvers. Since the zones are pretty big I do not want to make the W2K DNS
>Servers Secondaries for the Parent Domains.

Is there a need for this?

     "The Clients will have the "local" W2K DNS Servers defined in their
     resolvers"

Have the four delegated "_" zones be slaved on your BIND DNS, the same
DNS where all your other hosts go to resolve DNS queries.  Why
configure DNS on your W2k clients differently than your other clients?
Your W2k DNS will, in essence, be a "semi-hidden" master.  I say 
"semi-hidden" because even though no clients will point to it for
name/address resolution, there will be an NS record in the four "_"
zones because MS requires the NS record to be there.  I have officially
asked MS to give me an option to remove this NS record.  Currently, if
I remove it via the MS DNS GUI, the record re-appears.
----------------------------------------------------------------------
Barry S. Finkel
Electronics and Computing Technologies Division
Argonne National Laboratory          Phone:    +1 (630) 252-7277
9700 South Cass Avenue               Facsimile:+1 (630) 252-9689
Building 221, Room B236              Internet: BSFinkel at anl.gov
Argonne, IL   60439-4844             IBMMAIL:  I1004994



More information about the bind-users mailing list