Designing DNS for Active Directory Security

The successful operation of Active Directory depends on the successful operation of DNS. After your organization has designed its forest and domain plan, you must design the DNS infrastructure to support Active Directory. DNS provides three crucial functions for Active Directory in Windows Server 2003 and Windows 2000:

  • Name resolution DNS resolves host names to IP addresses and vice versa. DNS is the default location mechanism in Windows Server 2003 and Windows 2000.

  • Service locator Computers that run Windows 2000 and later use DNS to locate services (represented by Service resource records, also known as SRV records) such as the Global Catalog and Kerberos KDCs, as well as domain controllers, domains, ...

Get Microsoft® Windows® Security Resource Kit, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.