Skip to Main Content
DNS on Windows 2000, Second Edition
book

DNS on Windows 2000, Second Edition

by Matt Larson, Cricket Liu
September 2001
Intermediate to advanced content levelIntermediate to advanced
352 pages
11h 1m
English
O'Reilly Media, Inc.
Content preview from DNS on Windows 2000, Second Edition

DNS and Internet Firewalls

The Domain Name System wasn’t designed to work with Internet firewalls. It’s a testimony to the flexibility of DNS that you can configure DNS to work with, or even through, an Internet firewall.

That said, configuring the Microsoft DNS Server to work in a firewalled environment, although not difficult, takes a good, complete understanding of DNS. Describing it also requires a large portion of this chapter, so here’s a roadmap.

We start by describing the two major families of Internet firewall software: packet filters and application gateways. The capabilities of each family have a bearing on how you’ll need to configure your DNS servers to work through the firewall. The next section details the two most common DNS architectures used with firewalls, forwarders and internal roots, and describes the advantages and disadvantages of each. Finally, we discuss split namespaces and the configuration of the bastion host, the host at the core of your firewall system.

Types of Firewall Software

Before you start configuring your DNS servers to work with your firewall, it’s important that you understand what your firewall is capable of. Your firewall’s capabilities will influence your choice of DNS architecture and will determine how you implement it. If you don’t know the answers to the questions in this section, track down someone in your organization who does know and ask. Better yet, work with your firewall’s administrator when designing your DNS architecture ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

DNS on Windows Server 2003, 3rd Edition

DNS on Windows Server 2003, 3rd Edition

Cricket Liu, Matt Larson, Robbie Allen
VMware vSphere Troubleshooting

VMware vSphere Troubleshooting

Muhammad Zeeshan Munir
Windows NT TCP/IP Network Administration

Windows NT TCP/IP Network Administration

Craig Hunt, Robert Bruce Thompson

Publisher Resources

ISBN: 0596002300Supplemental ContentCatalog PageErrata