Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Shadow or Split-DNS server qyestions

0 views
Skip to first unread message

Thurman@discussions.microsoft.com Dan Thurman

unread,
Jun 14, 2008, 5:03:00 PM6/14/08
to

From everything I have read, I am not clear what is possible
using a single Windows 2000 DNS server hosting both private
and public IP addresses.

Q1: Can a single physical DNS server support both internal
and external zones for abc.com? With a linux DNS server,
one can set up two views: "External" and "Internal" and can
be configured such that public IP addresses are seen and
handled separately from private IP addresses, using the same
zone. In other words, Public DNS queries will be served public
IP addresses from the "External" view and Private DNS queries
will be served Private IP addresses from the "Internal" view, all
using the same single DNS server, NAT connected. Is this possible
with Windows 2000 DNS server on the same physical machine?

Q2: I have tried, within a single abc.com zone (with AD), setting up external
IP addresses, committed the update, only later to discover that the AD
later added private IP addresses which I did not want. This machine is
behind the firewall on the LAN but is public to private NAT connected.
Does this mean I am required to have two physical DNS server systems,
one placed on the public WAN and the other on my private LAN or that
on cannot use AD in this scenario?

Please advise.

Kind regards,
Dan Thurman

Anthony [MVP]

unread,
Jun 15, 2008, 2:08:09 PM6/15/08
to
Dan,
Q1: No
Q2: Yes
If you want the same host to have an internal and an external address, then
with Windows DNS you need two DNS servers to do it.
Anthony,
http://www.airdesk.co.uk

"Dan Thurman" <Dan Thu...@discussions.microsoft.com> wrote in message
news:D0BB7761-135A-4B3E...@microsoft.com...

0 new messages