Solved

DNS Across two domains

Posted on 2006-06-21
8
175 Views
Last Modified: 2010-04-13
Dear All,

I've recently setup a two-way trust between two completely seperate Active Directory domains.

Both have AD intergrated DNS zones and both are obviously running their own DNS Servers.

What is the best/correct way to enable DNS resolution between the domains? Do I setup a secondary to each DNS zone on the 'other' DNS server? Anything I need to bear in mind in relation to permissions?

Any help/pointers to usefull examples/documents gratefullyreceived

A.
0
Comment
Question by:arakis
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
  • 2
8 Comments
 

Author Comment

by:arakis
ID: 16955791
Forgot to say they're both 2000 AD.

A.
0
 
LVL 48

Expert Comment

by:Jay_Jay70
ID: 16956020
you can load a secondary zone if you wish   or you can add the remote DNS server as forwarder, or you can point to it as a secondary server
0
 
LVL 20

Expert Comment

by:brwwiggins
ID: 16961785
I would either do a secondary or stub zones.
0
Three Reasons Why Backup is Strategic

Backup is strategic to your business because your data is strategic to your business. Without backup, your business will fail. This white paper explains why it is vital for you to design and immediately execute a backup strategy to protect 100 percent of your data.

 

Author Comment

by:arakis
ID: 16962876
Thanks Jay_Jay and brw.

JJ - I know which options are available but which would you choose and is there a 'microsoft' recommended method? I've looked but can't find one.

Also, BRW I think stub zones are only available in 2003 AD?

Looks like 'secondary' zonemay be the way to go....is it just the same method to create a secondary to an AD intergrated zone as it id to a standard?

Thanks again for your advices.

A.
0
 
LVL 20

Accepted Solution

by:
brwwiggins earned 150 total points
ID: 16963552
you're right, forgot stub zones are 2003 feature

I should just stick to the 2003 TA i guess :)

anyways, the secondary should work fine. You will have to configure zone transfers from the primary servers in order to receive updates.

You know one thing you could try, I've never thought about creating a primary zone that has just NS records that point to the other server. That's basically all that a stub zone is.
0
 
LVL 48

Assisted Solution

by:Jay_Jay70
Jay_Jay70 earned 150 total points
ID: 16964874
myself, i would load a secondary, this doesnt mean it correct, but thats the way i would go
0
 

Author Comment

by:arakis
ID: 16976478
Thanks for your help.

I created two secondary's and its working fine.

Have split the points as I thought fair.

A.
0
 
LVL 48

Expert Comment

by:Jay_Jay70
ID: 16976935
excellent, all the best
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Remote Access to a Windows 2000 Computer 2 518
Group Policy 9 561
Need the Best Data Leakage Protection (Cloud Based) 1 367
Need to recover old Windows backup files in Windows 7 6 685
NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
Recently we ran in to an issue while running some SQL jobs where we were trying to process the cubes.  We got an error saying failure stating 'NT SERVICE\SQLSERVERAGENT does not have access to Analysis Services. So this is a way to automate that wit…
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

739 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question