Solved

Creating DNS zones for Parent - Child Domains

Posted on 2006-06-22
9
456 Views
Last Modified: 2011-10-03
Here is the situation. I have a root domain (purely for administration) and 2 child domains( one in Greece & US) each with multiple sites. The root domain & child domain reside in same site.

 Within the US Child domain, I have 2 sites (atlanta & NYC), I want the DC in those locations to host DNS for their clients and have all internet traffic generated to be directed to the local ISP

How is DNS set up in the Parent domain to reflect this and also how is it setup in the child domain to be site specific?
0
Comment
Question by:broberc6
  • 2
  • 2
  • 2
  • +1
9 Comments
 
LVL 33

Accepted Solution

by:
NJComputerNetworks earned 84 total points
ID: 16962020
"Within the US Child domain, I have 2 sites (atlanta & NYC), I want the DC in those locations to host DNS for their clients and have all internet traffic generated to be directed to the local ISP"

The internet traffic (web browsing) will traverse using your ROUTER rules...and not DNS rules.  In other words, the client will use thier TCP/IP Gateway settings to get out to the internet.  So, as long as you routers are setup properly, the clients will use the local ISP internet connection.

You can use this command to test...(from a command prompt)

TRACERT www.yahoo.com <enter>  

This will show you the path the client is using to get out to the internet.
0
 

Author Comment

by:broberc6
ID: 16962097
How would the zones in the parent domain and the child domain?
0
 
LVL 33

Expert Comment

by:NJComputerNetworks
ID: 16962125
"How would the zones in the parent domain and the child domain?"  Sorry, I don't understand what you mean... its like saying "how would the dog in the house?"
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 51

Assisted Solution

by:Netman66
Netman66 earned 83 total points
ID: 16962334
On the Parent domain:

All zones should be AD Integrated.
The _msdcs zone should have a replication scope of "To all DNS servers in the Forest"
The domain.local zone should have a replication scope of "To all DNS servers in the domain"

On each child:

The _msdcs zone should propogte automatically from the parent.
The child.domain.local zone should remain local to the domain only.

On the Forwarders tab on each of the child domain's DNS servers:

Setup Conditional Forwarding for the Parent domain to forward to that DNS server.

On the Forwarders tab of the parent DNS server:

Setup Conditional Forwarding for each of the child domains and forward to the correct DNS server.


On the Forwarders tab of ALL DNS servers - any other domain - send to the Local ISP.


ALL client computers should contain only their local DNS server's address and nothing else.

Each DC should be a GC.

Hope this helps.
NM
0
 
LVL 70

Assisted Solution

by:Chris Dent
Chris Dent earned 83 total points
ID: 16967588

Just a couple of questions / comments on the proposed setup:

> On the Forwarders tab on each of the child domain's DNS servers:
> Setup Conditional Forwarding for the Parent domain to forward to that DNS server.

Wny not just configure the Parent Zone to replicate it's own domain.local to the entire forest. The zone should be small anyway and changes are going to be minimal. It's size compared to the usual GC type replication is also pretty insignificant so wouldn't burden anything. Only applies if Windows 2003 is being used.

> On the Forwarders tab of the parent DNS server:
> Setup Conditional Forwarding for each of the child domains and forward to the correct DNS server.

Unnecessary. The Parent domain should know about the child domains as they should be within it's DNS hierarchy. That is, the parent zone should have Name Server records for each sub-domain (or child domain). If there are Name Server records you don't need Forwarders as it knows exactly where to send the request already.

Chris
0
 
LVL 51

Expert Comment

by:Netman66
ID: 16967705
You could make the domain zones part of the Application partition so they replicate to all servers in the Forest, sure.  Most of the time there is no need for domains (internally) to resolve anything in the other domains except the servers so why make the local DNS server authoritative for the zone?  This is why I stated it the way I did, with Conditional Forwarding.

It's not as much about the parent knowing the child as it is about the child knowing about the parent.

0
 
LVL 70

Expert Comment

by:Chris Dent
ID: 16967745

Oh I agree completely. We just switched from using Forwarders for our domain to replicating the root domain to the entire forest... nice and neat :)

Chris
0

Featured Post

Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Scenerio: You have a server running Server 2003 and have applied a retail pack of Terminal Server Licenses.  You want to change servers or your server has crashed and you need to reapply the Terminal Server Licenses. When you enter the 16-digit lic…
A quick step-by-step overview of installing and configuring Carbonite Server Backup.
This Micro Tutorial will give you a basic overview how to record your screen with Microsoft Expression Encoder. This program is still free and open for the public to download. This will be demonstrated using Microsoft Expression Encoder 4.
Established in 1997, Technology Architects has become one of the most reputable technology solutions companies in the country. TA have been providing businesses with cost effective state-of-the-art solutions and unparalleled service that is designed…

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question