Choosing an AD Namespace

This section discusses several scenarios for choosing AD domain names. Because you must create DNS zones to match these AD domains, you must integrate your choices with any pre-existing DNS zones.

Caution

Regardless of how you implement the namespace, exercise caution when implementing DNS. Allowing outside users to peruse a DNS that holds information about internal resources is a very serious breach of security. In a dynamic update scenario, it would be even worse if the records or zones were modifiable.

Using the Same Namespace Internally and Externally

This looks at first to be the easiest option. However, on careful perusal, there can be much work to do using this strategy. The foremost danger is security. If, for ...

Get Special Edition Using Microsoft Active Directory now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.