bind vs. MS DNS
Barry Finkel
b19141 at achilles.ctd.anl.gov
Mon Jun 21 14:11:45 UTC 2004
At 11:44 AM 6/17/2004, Barry Finkel wrote:
>>I believe that if one takes a DC and turns off self-registration in
>>TCP/IP properties, then that DC will NOT register its SRV records in
>>DNS. I believe that the registry setting referenced in MS article
>>
>> 816592 HOW TO: Configure DNS dynamic update in Windows 2003
>>
>>affects whether the DC will do DDNS for the SRV records or will produce
>>a netlogon.dns file (that can be $INCLUDEd into a BIND zone file, as
>>I did in my initial W2k DNS testing).
>>
>>In my setup I want each DC to register its SRV records dynamically in
>>my MS W2k+3 DNS Server, but I do NOT want the DCs to do DDNS
>>self-registration, which I do not allow on my BIND servers. If I
>>disable self-registration, then I disable SRV DDNS at the same time.
>>
>>We have an open trouble ticket with MS on a related issue (EventID
>>40961), and I will suggest to MS that they decouple self-registration
>>and registration of SRV records.
and Danny Mayer <mayer at gis.net> replied:
>Why bother in the first place? When you set up a DC add the SRV record
>into the zone yourself just as you would any other record. I have no idea
>what your trouble ticket is about, but nothing prevents you from creating
>your own SRV record.
I could add the SRV records to my W2k+3-hosted zones via
1) netlogon.dns
2) the DNS GUI
3) the "dnscmd" command line interface.
But why should I do that when the DCs can register their SRV records
dynamically. My trouble ticket with MS involves the hourly
self-registration attempts by the DC. In W2k the attempts just failed;
I could ignore the "update denied" messages in my BIND syslog.
In W2k+3 each failure produces a 40961 EventID record. I cannot disable
self-registration on the DC without (in the same process) disabling
the DC registration of its SRV records. As I have no idea when a DC
might want to unregister SRV records or register new SRV records, I
prefer to have the registration process automatic.
----------------------------------------------------------------------
Barry S. Finkel
Computing and Instrumentation Solutions Division
Argonne National Laboratory Phone: +1 (630) 252-7277
9700 South Cass Avenue Facsimile:+1 (630) 252-4601
Building 222, Room D209 Internet: BSFinkel at anl.gov
Argonne, IL 60439-4828 IBMMAIL: I1004994
More information about the bind-users
mailing list