Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

Can I use Server 2008 DNS without it being a DC?

Posted on 2009-07-08
7
Medium Priority
?
252 Views
Last Modified: 2012-05-07
Currently all of our organizations DNS servers are Windows 2003 domain controllers using AD.  I am attempting to configure our first Windows 2008 Server but only want to use it as a file server and DNS server for a remote location.  

Is it possible to have DNS working on this server without making it a DC?  Can AD integrated zones work without it being a DC?

Any help would be appreciated.
0
Comment
Question by:ATSOL
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
7 Comments
 
LVL 3

Accepted Solution

by:
AdoBeebo earned 100 total points
ID: 24804834
AD Integrated DNS Zones require the host server to be a DC, because the DNS zone is stored and replicated using the AD.
You can still setup Primary, Secondary and Stub zones on a non-DC 2008 Server
In your situation you could consider using a read only domain controller for the remote site (RODC) and cache the required passwords on that server. This will lower WAN link traffic as local user authentication can be handled locally, and it is a more secure compromise which will allow you to keep AD IZ like DNS functionality while not exposing unrequired portions of your AD in a non-secure location
0
 

Author Comment

by:ATSOL
ID: 24804914
So if I manually setup zones on my non-DC 2008 server that are identical to the existing zones in the other DNS servers, will it automatically populate the records for those zones?  I don't want it to overwrite my existing dns zones with an empty zone from this new server.
0
 
LVL 10

Assisted Solution

by:Datedman
Datedman earned 100 total points
ID: 24805010
You can make a secondary DNS server for an AD zone.  You may need to add it to the SOA tab on one of the AD servers so that it'll be allowed to replicate.
0
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 3

Expert Comment

by:AdoBeebo
ID: 24805135
A secondary zone is like a read-only DNS zone, so if you're not sure stick to secondary. You'll also need to add the server to the Replication tab, under Allowed to Replicate, or similar (from memory)
 
0
 
LVL 10

Expert Comment

by:Datedman
ID: 24805198
btw if it is read-only DNS, keep in mind that machine using it as their DNS server will not be able to register their DNS records...so may be a problem with say, sharing a printer between machines at the remote location?  hmmm do you use WINS?  
0
 

Author Comment

by:ATSOL
ID: 24805442
If I understand it correctly, an RODC would just forward the request onto a writeable DC.  The writeable DC would then update DNS in the RODC.  We are not using WINS.  At this point I'm just trying to decide whether to use one of three methods for my new server > DC, RODC or non-DC secondary zone.
0
 
LVL 10

Expert Comment

by:Datedman
ID: 24805476
I'd just make it a DC.  Why bother with RODC?  Not sure why you didn't want to make it a DC...

BTW should make a new site in AD Sites and Services with the remote subnet/new server.
0

Featured Post

Fill in the form and get your FREE NFR key NOW!

Veeam® is happy to provide a FREE NFR server license to certified engineers, trainers, and bloggers.  It allows for the non‑production use of Veeam Agent for Microsoft Windows. This license is valid for five workstations and two servers.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
OfficeMate Freezes on login or does not load after login credentials are input.
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…

604 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question