Avatar of solac
solac
 asked on

Confusion over Windows DNS Zones

I have three domain controllers running Win 2008 R2 with DNS.  For some reasons, there are two sub zones under the Forward Lookup Zone.  I dont think they belong there.  Please refer to the diagram for explanation.

As you can see from the diagram, there are two sub zones, little.xyzsb.org  and super.xyzsb.org under each DNS server.  Both zones have entries for nameservers and SOA.

Are there any reasons I should not keep them?
dnszones.png
Windows Server 2008DNS

Avatar of undefined
Last Comment
Pramod Ubhe

8/22/2022 - Mon
Delete

Honestly you and/or you admins are the only ones that can determine if those zones are needed.  Are teh nameservers for those zones different than your three DNS servers?  If so are the zones valid (in other words do records resolve for those zones i.e. www.little.xyzsb.org)?

You can look in your DNS logs (assuming you have logging enabled) to see if anyone is actually querying your DNS servers for those zones, or you can use netmon or wireshark to watch DNS traffic based on those zones.

The last thing you want to do is delete a zone that you don't think is in use only to find out that it is in use resulting in a service outage.
ASKER CERTIFIED SOLUTION
Pramod Ubhe

Log in or sign up to see answer
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform
Sign up - Free for 7 days
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
ask a question
Experts Exchange has (a) saved my job multiple times, (b) saved me hours, days, and even weeks of work, and often (c) makes me look like a superhero! This place is MAGIC!
Walt Forbes