Solved

DNS msdcs has only one entry, our former PDC - is this ok?  Eventually we'll remove that server as a DC

Posted on 2014-03-13
4
382 Views
Last Modified: 2014-03-18
We have recently moved the Primary Domain Controller role(s) from one of our domain controllers to another.  

Other than a few bumps in the road, things have stabilized and seem to be working OK.

However, I've noticed something in our DNS that puzzles me.  In one of the msdcs items our former PDC is the only server listed.  

See attached image for an idea of which msdcs item I'm talking about.  You can navigate to it by going to:
DNS - <any DC> - Forward Lookup Zones - <domain.LOCAL> - _msdcs

There is only one item in this _msdcs section.  It's 'type' is "Name Server (NS)", and the item refers to our former Primary Domain Controller.

My questions are:
1).  Is it ok that this item lists our former PDC?  (Instead of our current PDC).
2).  If we dcpromo and remove the former PDC, will this object change automatically?
3).  Should we manually edit this object right now?  (and make it our current PDC)
4).  Should there be more than one item in this _msdcs container?

I understand the general role of the _msdcs container in DNS, but this separate item in the <our domain>.LOCAL section is a bit of a mystery to me - I haven't been able to find resources that explain it's role/function.

Thanks for the help!
-joel

Location of msdcs item
0
Comment
Question by:JHCompVerde
  • 2
  • 2
4 Comments
 
LVL 22

Accepted Solution

by:
Matt V earned 500 total points
Comment Utility
You can edit the properties of the zone and manually update the name servers.

We did this when we migrated from 2003 to 2008R2.
0
 

Author Comment

by:JHCompVerde
Comment Utility
That sounds good.  We can definitely do that, and change it to our current PDC.

Do you know if it's best practice to have more than one server listed in this container?

I'm not clear on what that particular container is for, so I'm hesitant to make changes without understanding it better.
0
 
LVL 22

Assisted Solution

by:Matt V
Matt V earned 500 total points
Comment Utility
I am pretty sure you can only replicate the zone to servers listed there.  Unless you weaken the security of who can do zone transfers.  

So any DC you want to answer for that zone should be in there.
0
 

Author Closing Comment

by:JHCompVerde
Comment Utility
Thanks for the information.  It would've been awesome to have a more thorough explanation of the "best practices" configuration for this item, but I understand that sometimes more in-depth learning/teaching has to take place with other resources (classes, manuals, training).
Thanks!      -joel
0

Featured Post

Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

Join & Write a Comment

I wrote this article to help simplify the process of combining multiple subnets. This can be used for route summarization also but there are other better ways to summarize routes, This article is a result of questions I participate in here at Ex…
This article is focussed on erradicating the confusion with slash notations. This article will help you identify and understand the purpose and use of slash notations. A deep understanding of this will help you identify networks quicker especially w…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now