[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now


DNS Suffix

Posted on 2009-04-28
Medium Priority
Last Modified: 2012-05-06
A year ago we removed a subdomain from our forest and slowly have found a few refrences to it still on the system so lately had pressumed nothing to do with that subdomain exsits anymore.

until today

if we do ipconfig /all on the DCs we get a the DNS Suffix Search List show the domain that shouldnt exist anymore

anyone know of a way to remove this?
Question by:Bolton09
  • 2
LVL 40

Expert Comment

ID: 24250306
Go to the TCP/IP Settings of your NIC -> Advanced, DNS tab. There you will probably see the suffix added. Just remove it from there.


Author Comment

ID: 24250381
yes thanks ive seen that but really i am wondering if we should run a utility or something to find/remove old domain information

(the person who removed it is no longer here so we don't know what he did exactly)

LVL 40

Accepted Solution

coolsport00 earned 2000 total points
ID: 24250418
You can use this KB article (http://support.microsoft.com/kb/216498) to assist with that. Now I know this says "unsuccessful attempt...", but it is a good way to check even under normal demotion to see if all data has been removed from AD. And also see: http://support.microsoft.com/kb/q230306

LVL 18

Expert Comment

ID: 24250560
If you find these in many clients, you should probably use GPO to make the adjustment. The setting in a GPO can be found from Computer Configuration>Administrative Templates>Network>DNS Client>DNS Suffix Search List>DNS Suffixes.
This way you don't have to make changes in machine by machine.

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Active Directory can easily get cluttered with unused service, user and computer accounts. In this article, I will show you the way I like to implement ADCleanup..
It’s time for spooky stories and consuming way too much sugar, including the many treats we’ve whipped for you in the world of tech. Check it out!
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…

872 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question