Skip to Main Content
DNS on Windows Server 2003, 3rd Edition
book

DNS on Windows Server 2003, 3rd Edition

by Cricket Liu, Matt Larson, Robbie Allen
December 2003
Intermediate to advanced content levelIntermediate to advanced
416 pages
13h 50m
English
O'Reilly Media, Inc.
Content preview from DNS on Windows Server 2003, 3rd Edition

Internet Forwarders

Given the dangers of allowing bidirectional DNS traffic through the firewall unrestricted, most organizations elect to limit the internal hosts that can “talk DNS” to the Internet. With an application gateway firewall, or any firewall without the ability to pass DNS traffic, the only host that can communicate with Internet name servers is the bastion host (see Figure 16-3).

A small network, showing the bastion host
Figure 16-3. A small network, showing the bastion host

With a packet-filtering firewall, the firewall’s administrator can configure the firewall to let any set of internal name servers communicate with Internet name servers. Often, a small set of hosts runs name servers under the direct control of the network administrator (see Figure 16-4).

A small network, showing select internal name servers
Figure 16-4. A small network, showing select internal name servers

Internal name servers that can query name servers on the Internet directly don’t require any special configuration. Their root hints files contain the Internet’s root name servers, which enables them to resolve Internet domain names. Internal name servers that can’t query name servers on the Internet, however, need to know to forward queries they can’t resolve to one of the name servers that can. This is done with the Forwarders tab on the server’s Properties window, described in Chapter 11

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Windows Server 70-741: Networking with Windows Server 2016

Windows Server 70-741: Networking with Windows Server 2016

Andrew Warren
Mastering VMware vSphere 6.7 - Second Edition

Mastering VMware vSphere 6.7 - Second Edition

Martin Gavanda, Andrea Mauro, Paolo Valsecchi, Karel Novak
Exam Ref MD-100: Windows 10, First Edition

Exam Ref MD-100: Windows 10, First Edition

Andrew Bettany, Andrew Warren

Publisher Resources

ISBN: 0596005628Supplemental ContentErrata Page