Solved

delegate read-only permissions to DNS.

Posted on 2007-03-19
7
1,572 Views
Last Modified: 2011-04-14
I need to delegate read-only permissions to DNS.
DNS is 2003 AD Integrated.
I want to delegate to a service team group.
0
Comment
Question by:viperacom
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
7 Comments
 
LVL 14

Expert Comment

by:inbarasan
ID: 18754587
http://support.microsoft.com/kb/256643
It is possible to give read only permission on the zone. Pls check the above article.
0
 
LVL 14

Expert Comment

by:inbarasan
ID: 18754593
http://technet2.microsoft.com/WindowsServer/en/library/c5a89307-803d-4af4-af6a-0754b82c49121033.mspx?mfr=true

Check the above link . It shows step by step method to do the delegation
0
 
LVL 1

Author Comment

by:viperacom
ID: 18769519
sorry they didnt really help me.

I managed to fix the problem by editing the ACL on the zone to include read access to the group.
i also had to edit the security on the DNS system object within AD
0
Optimize your web performance

What's in the eBook?
- Full list of reasons for poor performance
- Ultimate measures to speed things up
- Primary web monitoring types
- KPIs you should be monitoring in order to increase your ROI

 
LVL 1

Author Comment

by:viperacom
ID: 18769522
suggest PAQ with points refunded
0
 

Accepted Solution

by:
AnnieMod earned 0 total points
ID: 19701158
PAQed with points refunded (500)

AnnieMod
Cleanup Admin
0
 
LVL 1

Expert Comment

by:Nelesh_N
ID: 23578543
I've done this but the test user can create dns records!!!
0

Featured Post

Use Case: Protecting a Hybrid Cloud Infrastructure

Microsoft Azure is rapidly becoming the norm in dynamic IT environments. This document describes the challenges that organizations face when protecting data in a hybrid cloud IT environment and presents a use case to demonstrate how Acronis Backup protects all data.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
Here's a look at newsworthy articles and community happenings during the last month.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Suggested Courses

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question