Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Server > DNS Server > Re: AD DNS - stop adding unwanted host records!

Reply
Thread Tools Display Modes

Re: AD DNS - stop adding unwanted host records!

 
 
Meinolf Weber [MVP-DS]
Guest
Posts: n/a

 
      07-27-2009
Hello jwbernin,

You are aware that with your DC in the internet and somebody hacks it, your
complete environment is open? I strongly recommend to use only private iprange
and make all external connections over a firewall like ISA server or CISCO
ASA. There you can place the really needed servers in a DMZ, basically NOT
DCs.

Why must you join clients from the internet to your network? For external
connections use a dedicated RRAS/VPN server.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> OK, here's what I want to achieve.
>
> I have a private network, 172.x, that is where most of my
> administrative and backup traffic should be - e.g. domain
> authentication
> to member servers, DC updates, DNS zone xfers, etc. I also need to be
> able to join workstations from the public side of things - 152.x. I
> need to resolve our DNS addresses (in the bioinf.unc.edu domain) to
> the
> 152.x addresses, but I also need to be able to resolve addresses in
> the
> same DNS domain (with different names) to 172.x addresses.
> E.g. I want 'ad0.bioinf.unc.edu' to resolve to 152.19.180.180 (which
> it does now), and I want ad0-pvt.bioinf.unc.edu to resolve to
> 172.29.26.180, from the same DNS server. I want AD traffic to default
> to 172.x, but go out 152.x if it came from a 152.x address. I want to
> add a NetApp filer to this domain by giving it the 172 address for the
> DC, but I also want to be able to add a public workstation to the
> domain by giving it the 152.x address.
>
> http://forums.techarena.in
>



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: AD DNS - stop adding unwanted host records! Meinolf Weber [MVP-DS] DNS Server 3 07-28-2009 12:18 AM
Re: AD DNS - stop adding unwanted host records! Meinolf Weber [MVP-DS] DNS Server 0 07-27-2009 04:34 PM
Host (A) records commaster DNS Server 1 03-01-2006 02:22 PM
2 host records with same IP eldonti DNS Server 1 06-16-2005 01:45 AM
Re: Stop unwanted pop-ups Jonathan Kay [MVP] Windows MSN Messenger 0 07-24-2003 06:12 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59