DNS between diffrent forests

Posted on 2006-06-20
Last Modified: 2010-04-18
I have two forests that are at present only joined by a simple VPN, i can ping machines at each site via internal numbers.

How do i get dns to work in this situation

Forwarders for each others domains work partially but take out all the web servers.

is ther eany way of linking the two like you would with in the same forest?
Question by:mhamer
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2

Expert Comment

ID: 16941700

are your DNS zones AD integrated ?

LVL 33

Accepted Solution

NJComputerNetworks earned 500 total points
ID: 16941719
Create a secondary zone on your server... point to the remote DNS server.

Create a secondary zone on the remote DNS server...  Point this to your DNS server as source.

Then updates your the DNS Suffixes of your clients and machines to include both forward lookup zones...

For example, if the zones are called:  yourdomain.local  and theremotedomain.local  you would add both of these dns suffixes to your clients and server.


Expert Comment

ID: 16941852
Hi NJ,

Absolutely right, but is it gonna work in the case of AD integrated zones, and no cross-forest trust  (never used that config before) ?

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

LVL 33

Expert Comment

ID: 16941905
Yes..  I believe so..  
(it's been awhile here too...but I'm pretty sure this is the way to go..)

Author Comment

ID: 16942405

yes both are ad intergrated

I had tried the zone transfer on secondary zone

which nearly works

there domain is

when i do a zone transfer i get and thats populated, but the corp folder just has one entry (the DC  and it says ip unknown

LVL 33

Expert Comment

ID: 16942466

Follow these instructions again...  the zone you want is  (use the IP address of the DNS server for this forward lookup zone.)


Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

On July 14th 2015, Windows Server 2003 will become End of Support, leaving hundreds of thousands of servers around the world that still run this 12 year old operating system vulnerable and potentially out of compliance in many organisations around t…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit If you want to manage em…
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question