Zone Properties. Zone Properties Continued Aging allows zone to remove “stale” or “old” records for clients who have not updated within a certain period.

Slides:



Advertisements
Similar presentations
Sergei Komarov. DNS  Mechanism for IP hostname resolution  Globally distributed database  Hierarchical structure  Comprised of three components.
Advertisements

MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 6 Managing and Administering DNS in Windows Server 2008.
Web Server Administration
2.1 Installing the DNS Server Role Overview of the Domain Name System Role Overview of the DNS Namespace DNS Improvements for Windows Server 2008 Considerations.
Implementing Domain Name System
Domain Name System. DNS is a client/server protocol which provides Name to IP Address Resolution.
The Domain Name System. CeylonLinux DNS concepts using BIND 2 Hostnames IP Addresses are great for computers –IP address includes information used for.
DNS的配置和排错 刘道军老师主讲 Module 1 如有疑问请与我联系: D
Chapter 9: Configuring DNS for Active Directory
4.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure.
Hands-On Microsoft Windows Server 2003 Networking Chapter 6 Domain Name System.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 8: Managing and Troubleshooting DNS.
Hands-On Microsoft Windows Server 2003 Administration Chapter 9 Administering DNS.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 5 Introduction to DNS in Windows Server 2008.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 7: Planning a DNS Strategy.
Domain Name Server © N. Ganesan, Ph.D.. Reference.
Chapter 10 Configuring DNS
Changes to DNS in Windows Server 2003 By David Pracht.
Domain Name Services Oakton Community College CIS 238.
Copyright line. Configuring DNS EXAM OBJECTIVES  An Introduction to Domain Name System (DNS)  Configuring a DNS Server  Creating DNS Zones  Configuring.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Configuring and Managing the DNS Server Role Lesson 4.
70-411: Administering Windows Server 2012
11.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
DNS. Introduction What is DNS? –Hierarchy or Tree –Dot used as a separator.
DNS and Active Directory Integration
Chapter Overview Understanding DNS Creating Zones
© Wiley Inc All Rights Reserved. MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition.
WINDOWS SERVER 2008 ACTIVE DIRECTORY, CONFIGURING
Name Resolution Domain Name System.
Module Overview Installing the DNS Server Role Configuring the DNS Server Role Configuring DNS Zones Configuring DNS Zone Transfers Managing and Troubleshooting.
Implementing DNS Module D 7: Implementing DNS
1 Objectives Discuss the basics of the Domain Name System (DNS) and its terminology Configure DNS clients Install a standard DNS server on Server 2008.
CN2140 Server II Kemtis Kunanuraksapong MSIS with Distinction MCT, MCITP, MCTS, MCDST, MCP, A+
Windows Server 2008 R2 Domain Name System Chapter 5.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 7: Domain Name System.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 6: Name Resolution.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network, Enhanced Chapter 6: Name Resolution.
October 8, 2015 University of Tulsa - Center for Information Security Microsoft Windows 2000 DNS October 8, 2015.
DNS Zones. DNS records kept in zones DNS server is authoritative for a domain if it hosts the zone for that domain Sub-domains can be kept in same zone.
Deploying a Web Application Presented By: Muhammad Naveed Date:
Fully Qualified Domain Names FQDNs. DNS Database A distributed, hierarchical database Resolves Fully Qualified Domain Names (FQDNs) to IP addresses –
1 Week 7 – DNS and ADDS Integration Review of DNS Concepts, Components, and Processes Install and Configure DNS in an AD DS Domain AD DS, DNS, and Windows.
Module 7: Resolving NetBIOS Names by Using Windows Internet Name Service (WINS)
Objectives Discuss the basics of the Domain Name System (DNS) and its terminology Configure DNS clients Install a standard DNS server on Server 2008 Create.
Module 6: Managing and Monitoring Domain Name System (DNS)
Configuring and Troubleshooting Domain Name System
Configuring Name Resolution and Additional Services Lesson 12.
11 MANAGING AND MONITORING DNS Chapter 4. Chapter 4: MANAGING AND MONITORING DNS2 DNS MANAGEMENT TOOLS  DNS console  Nslookup  DNSLint  Logging features.
Windows Server 2003 DNS 安裝設定與管理維護 林寶森
DNS DNS overview DNS operation DNS zones. DNS Overview Name to IP address lookup service based on Domain Names Some DNS servers hold name and address.
Linux Operations and Administration
Web Server Administration Chapter 4 Name Resolution.
1 CMPT 471 Networking II DNS © Janice Regan,
NT1330 Client Server Networking 2
OPTION section It is the first section of the named.conf User can use only one option statement and many option-value pair under the section. Syntax is.
2/26/2003 Lecture 4 Computer System Administration Lecture 4 Networking Startup/DNS.
Internet Naming Service: DNS* Chapter 5. The Name Space The name space is the structure of the DNS database –An inverted tree with the root node at the.
DNS, DHCP and VPN Borislav Varadinov Telerik Software Academy academy.telerik.com System Administrator
Configuring and Managing the DNS Server Role Lesson 4.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY IT375 Window Enterprise Administration Course Name – IT Introduction to Network Security Instructor.
S4T4N in. 3. Set a list of DNS servers for the client to use when resolving DNS names. This list includes a preferred DNS server and can also.
Understand Names Resolution
Networking Applications
Module 5: Resolving Host Names by Using Domain Name System (DNS)
IMPLEMENTING NAME RESOLUTION USING DNS
Configuring and Troubleshooting DNS
Configuring and Managing the DNS Server Role
Managing Name Resolution
Windows Name Resolution
Presentation transcript:

Zone Properties

Zone Properties Continued Aging allows zone to remove “stale” or “old” records for clients who have not updated within a certain period of time Aging and Scavenging must be set on both zone and server to work

Zone Properties Continued

“Security” tab gives permission to make changes to the zone

Zone Properties Continued

Recap SOA contains information about the zone – Refresh Interval – zone transfer frequency – Expires After – how long without a zone transfer – Aging and Scavenging Old or Stale Records Set on server and zone

Single-label/NetBIOS Names

Single-Label Names The host name is a single-label name – Example: “ping client2” – “client2” is a single-label name because it is not an FQDN

Single-Label Names Continued The computer first tries to resolve the name by appending “Primary DNS Suffix” – Name of domain to which it belongs

Single-Label Names Continued Client then tries “DNS Devolution” – Allows client to try all DNS domains above it in the DNS “tree” – Example: client in sales.west.Company.com attempts to contact “client2:” client2.sales.west.Company.com client2.west.Company.com client2.Company.com

Tips Support for NetBIOS/single-label names: – In your own domain: a GlobalNames zone. – In other domains: “DNS Suffix Search List” in Group Policy. DNS Devolution can be disabled using Group Policy.

GlobalNames Zones Continued To implement a GlobalNames zone: 1.Create a new zone named GlobalNames 2.Run dnscmd /enableGlobalNamesSupport 1 command 3.Create records for NetBIOS clients

DNS Suffix Search List The DNS Suffix Search List: – Used to provide a list of DNS suffixes to be tried with single-label names – Example: Computer that attempts to contact “client2” might need to try: client2.Company.com client2.partner.com client2.vendor.com

DNS Suffix Search List Continued Configure the DNS Suffix Search List using Group Policy.

DNS Suffix Search List Continued

Recap Support for NetBIOS/single-label names: – In your own domain: a GlobalNames zone Create a GlobalNames zone and run dnscmd – In other domains: “DNS Suffix Search List” in Group Policy.

DNS Server Properties

DNS Server Properties Continued “Enable round robin” is used when there are duplicate records for a host The DNS server will cycle though the records as queries come in from clients

DNS Server Properties Continued “Enable netmask ordering” is used when there are duplicate records for a host The DNS server will provide the record that best matches the client’s IP address

Duplicate Records If a server has two records for the same host, Netmask Ordering and Round Robin can both be used If both are enabled, Netmask Ordering takes precedence

Duplicate Records Continued If the client’s IP address is Class A, Netmask Ordering will return the record. If the client’s IP address is Class C, Netmask Ordering will return the record. Round Robin will alternate between the records as client requests are processed.

Recap Extra logging, enable Debug Logging Duplicate records: – Netmask Ordering – Round Robin Unix DNS = enable BIND Secondaries

DNS Records

“A” records map an FQDN to an IPv4 address. “AAAA” records map an FQDN to an IPv6 address.

DNS Records Continued “CNAME” records provide alias’s for servers. Commonly used for servers that host multiple web sites.

DNS Records Continued “MX” records identify servers. The lower the priority the more preferred the server.

DNS Records Continued “PTR” (pointer) records map either an IPv4 or an IPv6 address to an FQDN.

DNS Records Continued “SRV” records identify services on the network. The default priority is 0. If there are multiple records, preference is given to the server with the lower priority.

DNS Records Continued “NS” records identify authoritative DNS servers for the zone. “SOA” (Start of Authority) records are the first record in any zone and contain settings for the zone.

DNS Records Continued Active Directory records are kept in an “_msdcs.domain” zone. – For example, “_msdcs.Company.com.”

Recap A – Name to IPv4 AAAA – Name to IPv6 PTR – IPv4 or IPv6 to Name CNAME – Alias MX – , priority – lower gets more traffic SRV – Services NS – DNS servers

DNSCMD

DNSCMD is used to administer DNS from the command line.

DNSCMD Switches CommandDescription /ageallrecords Sets the current time on all time stamps in a zone or node. /clearcache Clears the DNS server cache. /createbuiltindirectorypartitions Creates the built-in DNS application directory partitions. /createdirectorypartition Creates a DNS application directory partition.

DNSCMD Switches CommandDescription /deletedirectorypartition Deletes a DNS application directory partition. /directorypartitioninfo Lists information about a DNS application directory partition. /enlistdirectorypartition Adds a DNS server to the replication set of a DNS application directory partition. /recordadd Adds a resource record to a zone. /recorddelete Removes a resource record from a zone.

DNSCMD Switches Continued CommandDescription /zonechangedirectorypartition Changes the directory partition on which a zone resides. Used to change the replication scope for an ADI zone. /zonedeleteDeletes a zone from the DNS server. /zoneexport Writes the resource records of a zone to a text file for auditing purposes. /zoneadd Creates a new zone on the DNS server: /primary = Standard Primary /Secondary = Standard Secondary /dsprimary = ADI

DNSCMD Switches Continued CommandDescription /zonerefresh Forces a refresh of the secondary zone from the master zone. /zoneresettypeChanges the zone type. /zoneupdatefromds Updates an Active Directory– integrated zone with data from Active Directory Domain Services (AD DS).

DNSCMD Switches Continued CommandDescription /resetlistenaddresses Can be used to limit DNS servers to responding to DNS queries only on particular addresses. Example, only IPv6 clients. /startscavengingInitiates server scavenging.

DNSCMD Switches Exampled To set the replication scope on an ADI zone to all DNS servers in the forest: Dnscmd server /zonechangedirectorypartition zonename /forest

Recap Don’t memorize dnscmd switches unless they are very odd