DNS Conditional forwarders. How to forward some domains externally, some subdomains internally.

Posted on 2014-08-07
Last Modified: 2014-09-05
I have remote site where users are logged into a windows domain. This site is not part of our main company. Say our main company is Microsoft.

Issue is, I want this remote site's DNS, to forward some DNS requests to our DNS servers for local resolution, and some DNS request on our domain to be resolved on the remote site DNS, which will get forwarded to the root server, AKA external websites.

So, by default I want ALL requests to forward on to our DNS server. However, there are some exceptions to that same domain, that need to resolve on that DNS/root dns servers, for public DNS resolution.

Only catch is our local DNS servers do NOT resolve externally domains at all.

AKA lets say, and I want to resolve externally, so those need to stay at the remote site. But ALL other subdomains need to get forwarded to our main company's DNS.

How would I do this on windows server 2003/2008?
Question by:LIBBB
    LVL 14

    Expert Comment

    setup conditional forwarding on dns servers

    Author Comment

    Thanks. Any idea about the wildcards though? If I setup a forward for, will fall under that forward? Or can I setup * forward?
    LVL 34

    Expert Comment

    U cannot add * as conditioanal forwarder

    However if you add conditional forwarder to, then  query to will get forwarded to conditional forwarder

    However if your forwarding domain is and you trying to resolve, it will not resolve that.

    If you created as dns forwader and as dns zone in local dns, then ur all queires like will be resolved internally
    If you trying to resolve, queries will get forwarded to conditional forwarder
    LVL 10

    Expert Comment

    by:Pramod Ubhe
    configure conditional forwarder for and create a forward lookup zone for on your internal dns (with @ record to the target IP). this will ensure that queries will be routed to @ record IP address and will go to the IP configured in conditional forwarder.

    Author Comment

    Hmm so far I don't know if I've found a solution. Because a good point has been brought up. There are other internal domains that multiple subdomains.

    How would I send domains that end with over to the other DNS server, with multiple subdomains?
    LVL 10

    Accepted Solution

    That is why you configure entire subdomain as forward lookup zone so that any queries to will not resolve internally. It's up to you to have it resolved by Internet or conditional forwarder.

    I had a setup in one of my prev org. Where we intentionally created zones for subdomains to avoid DNS resolution of main domain by internal DNS.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Better Security Awareness With Threat Intelligence

    See how one of the leading financial services organizations uses Recorded Future as part of a holistic threat intelligence program to promote security awareness and proactively and efficiently identify threats.

    One of the most often confused topics in the area DNS is the idea of GLUE records. Specifically, what they are, when they are needed, when they are provided, and how they are created. First, WHAT IS GLUE? To understand GLUE, you must first under…
    Occasionally you run into the website or two that will not resolve properly using your own DNS servers.  Some people simply set up global forwarders for their DNS server.  I don’t recommend doing this because it can cause problems resolving addresse…
    This tutorial will give a short introduction and overview of Backup Exec 2014 and the additional features that have been added over its predecessor Backup Exec 2012. As with Backup Exec 2012, the Backup Exec button in the upper left corner. From her…
    This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…

    779 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    17 Experts available now in Live!

    Get 1:1 Help Now