Solved

Setting up a secondary DNS server in Server 2003 ?

Posted on 2003-11-17
2
267 Views
Last Modified: 2010-04-14
I setup a scondary DNS server in a pure Server 2003 environment for redundnacy. After setting my PC to use the secondary server for DNS I expected not to be able to get out to the Internet until I set the appropriate forwarders in the DNS. However, it worked perfectly.

1. Is it getting the forwarder IP address from the Active directory integrated DNS on my other server ?  

2. Should I add in the correct forwarders on the 2nd DNS server or leave it the way it is and why?

Thanks



0
Comment
Question by:bwalan
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 11

Expert Comment

by:adonis1976
ID: 9764331
anser to question 1: since it is integrated zone, the second DNS is picking the info from the first one.

answer to question 2: you might want to, because, if the first one goes down, it will not have any information whatsoever about forwarders.

just a tip. Also allow dynamic updates on the DNS console, so that the changes made to one DNS server is replicated to second DNS.
0
 
LVL 5

Accepted Solution

by:
ralonso earned 100 total points
ID: 9764643
I am not (yet) very familiar with 2003, but I believe that your second DNS server is just performing iterative queries by using the root hints it will have by default.

I don't think it will be using the forwarders' configuration from any other server.

(isn't it scary when everyting that microsoft has done for a while is either "dynamic" or "active"...)

Using forwarders (or not) means that instead of running several iterative queries to various DNS servers in the internet you just forward the requests to one (or more) servers. Usually in your ISP. Forwarders allow you to use less bandwith. Still, if the DNS servers in your provider are not available, your server would not resolve names properly.

And taking into account the amount of DNS traffic (small UDP packets), I wouldn't use forwarders unless you have a very small line and a lot of computers.
0

Featured Post

Secure Your Active Directory - April 20, 2017

Active Directory plays a critical role in your company’s IT infrastructure and keeping it secure in today’s hacker-infested world is a must.
Microsoft published 300+ pages of guidance, but who has the time, money, and resources to implement? Register now to find an easier way.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
Recently, Microsoft released a best-practice guide for securing Active Directory. It's a whopping 300+ pages long. Those of us tasked with securing our company’s databases and systems would, ideally, have time to devote to learning the ins and outs…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question