Recommendations on integrating BIND and AD

phn at icke-reklam.ipsec.nu phn at icke-reklam.ipsec.nu
Thu Feb 5 18:00:22 UTC 2004


William Bell <halo64 at yahoo.com> wrote:
> Hi Kevin,
> Thanks for the info.  It was very helpful.
> Your configuration sounds a great deal like what I was hoping to do her=
e.
> Can you elaborate a bit more?  I'm also interested in the details of ho=
w you
> implemented it.

> One of the sticking points for our AD admin is the "fact" that ISC DHCP
> won't update DDNS securely in AD subdomains.   (This is what he told me
> anyway.  I haven't been able to confirm or deny it.)  You state that yo=
ur
> DHCP server updates the AD subdomains using TSIG.  How does that work? =
 I
> thought ISC's DHCP server didn't speak the same TSIG language as MS.

> Thanks again!
> -Bill

I never thought that anyone could have security as argument for
a windows solution. That person should stop smoking funny funguses!

--=20
Peter H=E5kanson        =20
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam out=
,
	   remove "icke-reklam" if you feel for mailing me. Thanx.


More information about the bind-users mailing list