Simple question about zone and CNAME

Phil Mayers p.mayers at imperial.ac.uk
Tue Apr 9 07:02:32 UTC 2013


On 04/08/2013 06:59 PM, Novosielski, Ryan wrote:

> Someone can correct me if I'm wrong, but I think they'd be right if
> and only if the webserver they're adding the A record for happens to
> also be the AD server.

In principle that's correct.

In practice, running a publicly accessible webserver on your AD 
controllers is a bad move IMO. The security implications are gruesome.

I think I almost dislike the idea so much that I'd suggest split DNS 
before this. And given how much I dislike split DNS, that's saying 
something.

But hey, to each their own.


More information about the bind-users mailing list