AD & DNS??

This is a discussion on AD & DNS?? within the Bind Users forums, part of the DNS and Related Forums category; Hello guys! I like to start a conversation regarding DNS and AD. I like to get in contact with people ...


Go Back   Usenet Forums > DNS and Related Forums > Bind Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-19-2004
fih
 
Posts: n/a
Default AD & DNS??

Hello guys!

I like to start a conversation regarding DNS and AD. I like to get in
contact with people running DNS for companies with more than 20000 hosts.

Basically these are the facts:

At our 60000 users company it's blowing a heavy Microsoft Active Directory
wind. Microsoft have recommended our AD team to create one global AD zone,
we can call it microstuff.net. We are also currently using a geographical
DNS namespace under our own root name servers. We manage our geographical
and reverse zones with QIP. (We have lately been looking at Nominums very
interesting DNS solution, which might replace QIP in the future)

My thinking was that I will delegate microstuff.net to AD DNS servers and
they would have their SRV records in their huge global zone, and the
A-records would be located in the geographical zone as usual with PTR
pointing back to the GEO zone. In my world this would be a good DNS
solution, except for maybe the global SRV record zone.

When I have been discussing this with Microsoft they recommend us to have AD
members A-records in the global AD zone microstuff.net along with the SRV
records, because programmers some times takes for granted that the A-records
exists in the same zone as the SRV records.

We have been discussing three solutions:

1. A-records in geographical zones with corresponding PTR records. SRV
records in the AD zone microstuff.net. (This is what I want but is
depreciated by Microsoft)

2. A-records and SRV-records in microstuff.net and corresponding
PTR-records. (This is what Microsoft wants)

3. A-records in geographical zones with corresponding PTR records. SRV
records in the AD zone microstuff.net + an extra A-record for each AD member
in microstuff.net. (This is a terrible compromise since all AD members will
have two A-records and one PTR record.)

I like to know how other great companies have solved this.




Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 05:35 PM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0