mthsupport
asked on
Child Domain
I'm looking for some more clarity on the whole child domain setup. Typically my customers all have an external .com or .net domain that is hosted at an external registrar such as GoDaddy or Network Solutions. In the past for internal network setups I have just used the domain.local deployment and managed split DNS when necessary. Is this still the preferred setup? Or should I consider the child domain setup where my internal domain is corp.domain.com?
If it is the latter, how do I go about the setup since my root/parent domain is hosted at an external resource that may or may not allow delegation.
If it is the latter, how do I go about the setup since my root/parent domain is hosted at an external resource that may or may not allow delegation.
ASKER
No plan to use Office 365. I'm trying to better understand how to setup the child domain on my internal LAN. Especially when my parent domain is hosted externally.
For example, during DC Promo I get asked if this is a new forest or existing forest. How do I answer that if NS doesn't allow delegation?
For example, during DC Promo I get asked if this is a new forest or existing forest. How do I answer that if NS doesn't allow delegation?
Split DNS with both FQDN (external) and a private (internal) is still best practice for this type of setup. However, it is strongly recommended by Microsoft & Apple to not use the domain.local namespace for your internal DNS as this will cause problems with Bonjour which also uses .local (now that Bonjour is no longer just a Mac package).
Then forward internal DNS queries for external DNS names to your external DNS.
Then forward internal DNS queries for external DNS names to your external DNS.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Okay that all makes sense. So when would I need delegation? Just to access internal resources using an external fqdn?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Try not splitting out to a child domain because that just add increasing complexity, extra DCs, etc.
Thanks
Mike