?
Solved

2003 DNS Delegation

Posted on 2004-03-25
1
Medium Priority
?
316 Views
Last Modified: 2010-04-19
I would like to know if there is a way to delegate autority on a DNS zone to a group of users without adding servers.

We use windows 2003 DNS integrated to 2003 AD.

Let's say for example I'm in domain.com and I want to create the zone a.domain.com and delegate the autority only to this zone.  I know I can add a pair of machines to serve as primary and secondary DNS for the zone but wonder if, since the main zone is integrated to AD, I can leave the new zone in AD too.

Thanks

Ben
0
Comment
Question by:bbourdua
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 16

Accepted Solution

by:
JamesDS earned 500 total points
ID: 10684757
bbourdua

It isn't possible to delegation administration of a zone to a group of users in the same as you can delegation administration of an OU (for instance). However as you say you can delegate part of a zone or subdomain to a set of servers.

AD integrated zones under Windows 2003 support the application partition which will allow you to choose which DCs get what in terms of DNS. What I suggest is that you delegate the zones as planned, and use the application partition to confine replication of the delegated zone to a subset of servers. Then you can set permissions on those servers to allow only certain users the relevant privs needed to manage the DNS service.

This will solve your problem, but the solution is not perhaps as easy to setup or manage as you had hoped
Cheers

JamesDS
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

by Batuhan Cetin Within the dynamic life of an IT administrator, we hold many information in our minds like user names, passwords, IDs, phone numbers, incomes, service tags, bills and the order from our wives to buy milk when coming back to home.…
I've always wanted to allow a user to have a printer no matter where they login. The steps below will show you how to achieve just that. In this Article I'll show how to deploy printers automatically with group policy and then using security fil…
Do you want to know how to make a graph with Microsoft Access? First, create a query with the data for the chart. Then make a blank form and add a chart control. This video also shows how to change what data is displayed on the graph as well as form…
In this video, Percona Solutions Engineer Barrett Chambers discusses some of the basic syntax differences between MySQL and MongoDB. To learn more check out our webinar on MongoDB administration for MySQL DBA: https://www.percona.com/resources/we…
Suggested Courses

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question