[Webinar] Streamline your web hosting managementRegister Today

x
?
Solved

what is the correct DNS Forwarding configuration ??

Posted on 2011-09-28
6
Medium Priority
?
251 Views
Last Modified: 2012-05-12
Good morning

im in windows domain environment and i have couple of DNS servers on the network

my question is what is the correct DNS forwarding ORDER configuration , should my ISP DNS on top then my local or the opposite ?

and what other configuration make the resolving faster ????

0
Comment
Question by:F_A_H_D
  • 3
  • 2
6 Comments
 
LVL 3

Author Comment

by:F_A_H_D
ID: 36813053
sorry
 should i put my local secondary DNS on top or the ISP DNS ?
0
 
LVL 1

Expert Comment

by:archmuk
ID: 36813315
For internal  name resolution, Local DNS should be the first one.
The internal DNS should forward the request to the extrenal DNS (ISP DNS in your case) only for the names it cant resolve.
0
 
LVL 3

Author Comment

by:F_A_H_D
ID: 36814143
so in order i should put
1- local DNS
2- ISP DNS

??
0
SMB Security Just Got a Layer Stronger

WatchGuard acquires Percipient Networks to extend protection to the DNS layer, further increasing the value of Total Security Suite.  Learn more about what this means for you and how you can improve your security with WatchGuard today!

 
LVL 1

Expert Comment

by:archmuk
ID: 36814261
Actually the internal client should point toward internal DNS.
The Internal DNS should forward the DNS requests to external DNS. (Configure here:  on your DC : DNS ..Your DC name... Properties...Forwarders) Add the external DNS here
0
 
LVL 27

Expert Comment

by:DrDave242
ID: 36817849
In case this is still unclear, all of your domain-joined machines should use ONLY your internal DNS servers.  If you have a multi-site environment, machines at a given site should use at least one internal DNS server that is local to them before using a server at a different site (so the local server would be their preferred server, and a server at a different site could be used as an alternate).

ISP DNS servers should only be configured as forwarders on the internal DNS servers, and the internal servers should never be configured to forward to each other unless you've got more than one domain in your environment.  In that case, conditional forwarders should be used.
0
 
LVL 1

Accepted Solution

by:
archmuk earned 2000 total points
ID: 36864246
Just elaborating @DrDave242 comment:
Lets say your domain name is company.com which is configured on server IP a.b.c.d
and your ISP DNS is p.q.r.s
DNS entry on your clients of that domain should point to a.b.c.d
But on the Server a.b.c.d, you should point the forwarders to p.q.r.s
This way the client do the internal name resolution from the internal dns a.b.c.d but for extrernal name resolution go to p.q.r.s.
0

Featured Post

Will You Be GDPR Compliant by 5/28/2018?

GDPR? That's a regulation for the European Union. But, if you collect data from customers or employees within the EU, then you need to know about GDPR and make sure your organization is compliant by May 2018. Check out our preparation checklist to make sure you're on track today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I wrote this article to explain some important DNS concepts that should be known to avoid some typical configuration errors I often see in forums. I assume that what is described here is the typical behavior of Microsoft DNS client. I don't know …
Resolve DNS query failed errors for Exchange
Is your OST file inaccessible, Need to transfer OST file from one computer to another? Want to convert OST file to PST? If the answer to any of the above question is yes, then look no further. With the help of Stellar OST to PST Converter, you can e…
Enter Foreign and Special Characters Enter characters you can't find on a keyboard using its ASCII code ... and learn how to make a handy reference for yourself using Excel ~ Use these codes in any Windows application! ... whether it is a Micr…

612 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question