Solved

Fully Qualified Domain Name

Posted on 2012-03-10
12
1,082 Views
Last Modified: 2012-03-13
Hi,

I have registered domain 'mycompany.com'. when promoting windows 2003 r2 to a domain controller, what name is requried in the FQDN? e.g. mycompany.com or www.mycompany.com?

Please help.

Thanks
0
Comment
Question by:ayha1999
  • 3
  • 3
  • 2
  • +4
12 Comments
 
LVL 17

Expert Comment

by:Gaurav Singh
ID: 37704416
mycompany.com is your FQDN
0
 
LVL 9

Expert Comment

by:Ashok Dewan
ID: 37704417
It should be Mycompany.com and not www.mycompany.com because www = World Wide Web, this for web server not for domain controller.
0
 
LVL 37

Assisted Solution

by:Neil Russell
Neil Russell earned 100 total points
ID: 37704438
In lots of peoples opinion, NEITHER!!

Using an internet registered domain name is not always a wise thing to do when it comes to naming your internal windows domain.
Better is to use  mycompany.local rather than mucompany.com for your internal windows domain.
0
 
LVL 4

Expert Comment

by:Gavincr001
ID: 37704450
Just what Neilsr said, otherwise you'll run into problems later on.
0
 
LVL 12

Accepted Solution

by:
Dave earned 150 total points
ID: 37704454
Did the company you registered "mycomany.com" with provide you with a DNS service? If so you probably can't easily use "mycompany.com" or "www.mycompany.com" as your active directory domain.

When you promote Windows Server to being a domain controller it wants to add a number of "srv" records to the DNS and if the entry for "mycompany.com" is managed by your ISP it won't be able to create these entries.

There are two ways round this. For most folks the simplest thing is to use a different domain. You need to make sure you use something thats  not going to be used as an internet domain, ".local" and ".pvt" are currently "un-allocated" rather than "reserved" so "could" be allocated at a later date. Sadly the only reserverd Top Level Domains (TLDs) are not really usable. see

http://www.windowsitpro.com/article/dns/q-can-i-use-the-local-or-pvt-top-level-domain-tld-names-as-part-of-an-active-directory-ad-tree-name-

http://www.faqs.org/rfcs/rfc2606.html

You could also use a subdomain of your "mycompany.com" e.g. "ad.mycompany.com"

The other solution is to use a "split DNS" where the internal users see different DNS addresses to the external users.

Whilst this sounds complex you probably need to do this any way. You almost certainly have a NATed  internal network that uses private IP addresses, so internal users will need to get 192.168.x.x address as a result of DNS lookups for local hosts...
0
 
LVL 25

Expert Comment

by:-MAS
ID: 37704701
As suggested by Neilsr, it is better to have different name for internal domain which ends up in .local, .internal, .domain,  e.g .mycompany.local,  mycompany.internal, mycompany.domain

Do not use .com, .net, .org  as it may end up in problems
0
Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

 
LVL 7

Author Comment

by:ayha1999
ID: 37704706
If I use mycompany.local, is there any problem to use the same Server as Web Server, MS Exchange Mail Server, Blackberry Enterprise Server etc? So users need to access the server from outside or using VPN.
0
 
LVL 37

Expert Comment

by:Neil Russell
ID: 37704714
No this is normal practice.
0
 
LVL 12

Expert Comment

by:Dave
ID: 37704799
How many users do you have? Putting WEB and Exchange on the same box isn't normally considered "best practice".  Unless you have Small Business Server Exchange will try and use all the RAM on the box and starve the other applications of resource. One thing to avoid if at all possible is putting Exchange on a Domain Controller.

If you want to run it all on a single physical box consider using a virtualization hypervisor ...
0
 
LVL 7

Author Comment

by:ayha1999
ID: 37704954
Actually I am not going to use all in the domain controller but just asking the possiblity of running those if I congiure DNS mycompany.local.
0
 
LVL 12

Expert Comment

by:Dave
ID: 37705167
All the DNS does is convert a name e.g. mycompany.local , mycompany.com into an IP address e.g. 192.168.1.1, 207.46.170.123.

So there is no reason why www.mycompany.com can't resolve (point to, lookup to) the same IP address as mycompany.local.

Try pinging "news.eclipse.co.uk" and "news.btinternet.com". I get the same ip address because both eclipse and btinternet use giganews to provide usenet news, even though they are competitors...
0
 
LVL 7

Author Closing Comment

by:ayha1999
ID: 37715966
Thanks for your participation and support.
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I had a question today where the user wanted to know how to delete an SSL Certificate, so I thought that I would quickly add this How to! Article for your reference. WHY WOULD YOU WANT TO DELETE A CERTIFICATE? 1. If an incorrect certificate was …
Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now