Professional Documents
Culture Documents
DNSCONCEPTS
DNSCONCEPTS Her
search
June15th,2007
November20th,2006
October31st,2006
DNSVideo,CBT,webcast,technetwebcast
ThispagecontainsalinktotheDNSwebcaststhatareavailableatTechnet.Ihave
triedcollectingallofthemandhaveputthematonesinglelocation.Pleasedownload
themextractthemandyouarereadytowatchthem.Justwatchthemandyouwould
learnagreatdeal.Herearesomeofthequestionsthatthesevideoswouldhelpyou
answer.Kindlydownloadthevideosonebyoneifyoudon'thavealiveIdorhotmailID.
Incaseyouhaveoneyoucandownloadallofthematonego.
1)WhatisDNS?
Ans:Itsadistributednamingsystemwhichisorganizedinahierarchy.Itsusedin
privatenetworkorinternetbycomputers,servicesorentitieslyingwithin.
2)WhatisDomainNamingService?
Ans:AdomainnamingservicetranslatesnamestoIPaddressandviceverse.Since
humanscan'tremembernumbersbutnames,thissystemwasdesignedsothatithelps
themrecognizeaserviceorcomputerbynamebutcomputersareabletotalktoeach
otherusingIPaddresses.
3)Whatisforwardlookup?
Ans:WhenDNSserverisqueriedforanameanditreturnsanIPaddressinreply,its
calledforwardlookup.ForexamplewhenItypeyahoo.comintheinternetexplorer,the
dnsserverreturnsanIPaddresstowhichacomputerisabletoconnect.
4)Whatisreverselookup?
Ans:WhenaDNSclientqueriesaDNSserveraboutanIPandtheDNSserver
respondsbyprovidinganameisknownasreverselookupinDNS.
5)WhatisDNScache?
Ans:AllthequeriesthataDNSclientdoes,itsresultsaresavedbyitinitstemporary
storagesothatnexttimewhenithastofindoutaboutanIPorname,itwouldfirstlook
intothecache.Ifitsnotthere,thenonlyit'llcontacttheDNSserver.Thistemporary
storageiscalledDNScache.Ithelpsincreasethespeedofnameresolutionfor
frequentlyqueriednames.
Q:HowDNSqueryworks?
Ans:Theanswerisadetailedone.Pleasevisitthispage[http://technet.microsoft.com/en
us/library/cc775637%28v=ws.10%29.aspx]toknowmore.
6)WhatareDNSforwarders?
Ans:WhenwesetupDNSserverswewantqueriesforinternetnamestobeforwarded
toISPDNSsothatthosecanberesolvedbytheservertowhichtheyhavebeen
forwardedandreturnedbacktomyDNSserver.TheseserverstowhichtheDNS
queriesareforwardedtoarecalled"DNSForwarders".
Internetnamesarejustoneexample,wecouldaswellsetupforwardersforaparticular
domainnameaswell.
7)WhatisPrimaryDNSServer?
Ans:ItstheWritablecopyoftheDNSwheretheDNSdatabaseisstored.Allthe
changesrelatedtocreation,deletionormodificationofaDNSrecordorZoneisdoneon
thisserver.
8)WhatissecondaryDNS?
Ans:SecondaryDNSserversarereadonlyreplicaofprimaryDNSservers.Theyare
createdtodistributetheloadofprimaryDNSserversandtopreventthewritablecopyof
theDNStotheexternalworld.SecondaryDNSserversdothesamejobofcarryingout
nameresolutionbyusingareadonlycopyoftheprimaryDNSserverdatabase.They
getthiscopyofprimaryDNSserverdatabaseusingoneoftheDNSZonetransfer
methods.TheyareAXFR,IXFRandFullZoneTransfer.
http://dnsfunda.blogspot.in/
1/4
28/12/2015
DNSCONCEPTS
IXFRIncrementalZoneTransfer.
AXFRaugmentedZonetransfer.
Full/CompleteZoneTransfer
ToknowmoreaboutZonetransferindetailpleasevisitthispage
[http://technet.microsoft.com/enus/library/cc781340%28v=ws.10%29.aspx]andread
thoroughly.
9)WhatisActiveDirectoryIntegratedDNS[http://technet.microsoft.com/en
us/library/cc978010.aspx]?
Ans:ActiveDirectoryintegratedDNSenablesActiveDirectorystorageandreplication
ofDNSzonedatabases.Windows2000DNSserver,theDNSserverthatisincluded
withWindows2000Server,accommodatesstoringzonedatainActiveDirectory.When
youconfigureacomputerasaDNSserver,zonesareusuallystoredastextfileson
nameserversthatis,allofthezonesrequiredbyDNSarestoredinatextfileonthe
servercomputer.ThesetextfilesmustbesynchronizedamongDNSnameserversby
usingasystemthatrequiresaseparatereplicationtopologyandschedulecalledazone
transferHowever,ifyouuseActiveDirectoryintegratedDNSwhenyouconfigurea
domaincontrollerasaDNSnameserver,zonedataisstoredasanActiveDirectory
objectandisreplicatedaspartofdomainreplication.
10)WhatisstandaloneDNSServer?
Ans:AnonADintegratedDNScanbetermedasstandaloneDNSserver.Itstheonly
DNSserverinanenvironment.
11)HowDNScandoloadbalancing?
Ans:DNScandoloadbalancingbyusingthefollowingmethods:
1)DNSRoundRobin
2)UsingweightsonDNSrecords.ForexamplewecandefineweightoneachMX
recordtodefinehowmuchofloadwewantaparticularservertohandle.
12)WhatisSecondaryZone?
Ans:ThezonehostingthereadonlycopyofaPrimaryDNSserver'swritablecopyof
Zoneiscalledasecondaryzone.
13)WhatisSRVrecord?
Ans:TheSRVRRidentifiesthehost(s)thatwillsupportparticularservices.TheMX
[http://www.zytrax.com/books/dns/ch8/mx.html]RRisaspecialisedexampleofservice
discoverywhiletheSRVRRisageneralpurposeRRtodiscoveranyservice.
14)WhatisArecordandPTRrecord?
Ans:"A"recordsarehostrecordswhereanameismappedtotheIPaddressassigned
toit.A"PTR"recordswhereIPaddressesaremappedtoaname.
15)WhatisaStubZone[http://technet.microsoft.com/en
us/library/cc779197%28v=ws.10%29.aspx]?
Ans:Astubzoneisacopyofazonethatcontainsonlythoseresourcerecords
necessarytoidentifytheauthoritativeDomainNameSystem(DNS)serversforthat
zone.AstubzoneisusedtoresolvenamesbetweenseparateDNSnamespaces.This
typeofresolutionmaybenecessarywhenacorporatemergerrequiresthattheDNS
serversfortwoseparateDNSnamespacesresolvenamesforclientsinboth
namespaces.
Astubzoneconsistsof:
Thestartofauthority(SOA)resourcerecord,nameserver(NS)resourcerecords,and
theglueAresourcerecordsforthedelegatedzone.
16)WhatisadelegatedDNSzone?Whendoweuseit?
Ans:DelegatedDNSzonesarecreatedwhenwewantthenameresolutionof
subdomainsorchilddomainstobebrokenupwithinDNS.Formoredetailspleasevisit
thispage[http://technet.microsoft.com/enus/library/cc785881%28v=ws.10%29.aspx].
17)StepsbyStepmethodtoinstallDNSinWindows?
Ans:StepbystepmethodtoinstallDNSinwindows2003isgivenhere
[http://support.microsoft.com/kb/814591].
http://dnsfunda.blogspot.in/
2/4
28/12/2015
DNSCONCEPTS
StepbyStepmethodtoinstallDNSinWindows2008isgivenhere
[http://www.youtube.com/watch?v=K7Qv125YJeo].
19)HowtotroubleshootActiveDirectoryrelatedDNSproblemsusingDCDiag
tool?
Ans:Pleasefindthestepshere[http://www.youtube.com/watch?v=LnVwsFQmYjI].Dolook
forpart2ofthisyoutubevideo.
20)NewfeaturesofDNSinWindows2008?
Backgroundzoneloading:DNSserversthathostlargeDNSzonesthatarestored
inActiveDirectoryDomainServices(ADDS)areabletorespondtoclientqueries
morequicklywhentheyrestartbecausezonedataisnowloadedinthe
background.
IPversion6(IPv6)support:TheDNSServerservicenowfullysupportsthelonger
addressesoftheIPv6specification.
Supportforreadonlydomaincontrollers(RODCs):TheDNSServerrolein
WindowsServer2008providesprimaryreadonlyzonesonRODCs.
Globalsinglenames:TheGlobalNameszoneprovidessinglelabelnameresolution
forlargeenterprisenetworksthatdonotdeployWindowsInternetNameService
(WINS).TheGlobalNameszoneisusefulwhenusingDNSnamesuffixesto
providesinglelabelnameresolutionisnotpractical.
Globalqueryblocklist:ClientsofsuchprotocolsastheWebProxyAutoDiscovery
Protocol(WPAD)andtheIntrasiteAutomaticTunnelAddressingProtocol
(ISATAP)thatrelyonDNSnameresolutiontoresolvewellknownhostnamesare
vulnerabletomalicioususerswhousedynamicupdatetoregisterhostcomputers
thatposeaslegitimateservers.TheDNSServerroleinWindowsServer2008
providesaglobalqueryblocklistthatcanhelpreducethisvulnerability.
Watchthevideosandhavefunlearninganswerstotheabovementionedquestionsand
gainmuchmoreadditionalknowledgeaswell.Hopeithelpsyouall.
DownloadDNSVideos[https://skydrive.live.com/?
cid=3FE361D5D156ADD9&id=3FE361D5D156ADD9%21278]
+Downloadonebyoneifyoudon'thavealiveIDorahotmailID.
WhatisEDNS?
Itscalled"ExtendedmechanismsforDNS".Moredetailscanbefoundatthelinks
givenbelow:
http://spanougakis.wordpress.com/2011/05/01/ednswhatisallabout2/
[http://spanougakis.wordpress.com/2011/05/01/ednswhatisallabout2/]
http://social.technet.microsoft.com/Forums/enUS/winservergen/thread/b4e22807a4ed
4a9ebe23cdcc2b77ed22/[http://social.technet.microsoft.com/Forums/en
US/winservergen/thread/b4e22807a4ed4a9ebe23cdcc2b77ed22/]
http://sysadminthings.blogspot.ca/2011/09/thingsineverknewaboutdnsedns.html
[http://sysadminthings.blogspot.ca/2011/09/thingsineverknewaboutdnsedns.html]
Q:WhendoesDNSworksusingUDPandwhenitusesTCP?
Ans:DNSusesbothTCPandUDPforvalidreasons.NotethatUDPmessagesarenot
largerthan512Bytesandaretrucnctedwhengreaterthanthissize.SoDNSusesTCP
forZonetransferandUDPfornamequerieseitherregular(primary)orreverse.UDPcan
beusedtoexchangesmallinformationwhereasTCPmustbeusedtoexchange
informationlargerthan512bytes.Ifaclientdoesn'tgetresponsefromDNSitmust
retransmitthedatausingTCPafter35secondsofinterval.
TheNetworkFiles,Case#53:DiagnosingDiseasesofDNS
Networktroubleshooterssoonlearnthatthefirstplacetolookwhenthenetworkstops
workingisDNS...andsoonafterthat,theylearnthattheintheboxDNS
troubleshootingtool,nslookup,isaprettybasicanswer.SoifkeepingDNSworkingis
http://dnsfunda.blogspot.in/
3/4
28/12/2015
DNSCONCEPTS
partofyourjob,don'tmissthis"beyondthebasics"DNStroubleshootingsession
presentedbyMarkMinasi,theauthoroftheMasteringWindowsServerbooksthathave
taughtDNStomoreWindowsadminsthananyother.Westartwith"dig,"thenslookup
replacementthatisamustknowforDNStechies.Thenweseehowtogiveyour
troubledDNSqueriesathoroughworkupwithNetworkMonitor(evenifyou'venever
usedNetmon),whereyou'llbeabletofindoutwhythosedynamicupdatesaren't
happening.Fromthere,getthescoopon"EDNS,"afeatureofDNSserverssince2003
thathasbeenblamedwronglyforahostofDNSills.Afterthat,seehowtotake
yourDNSsystem'spulsewithDNSLint,afree,nottobemissedutility.Thenseehow
tounderstandwhatthoseDNSlogsareREALLYsaying.Attendthistalkandyou'llsoon
beknownas"DoctorDNS!"
[http://channel9.msdn.com/Events/TechEd/NorthAmerica/2011/WSV306]
DNSSECDeploymentwithWindowsServer2012
[http://channel9.msdn.com/Events/TechEd/NorthAmerica/2012/WSV325]
IthasadetaileddiscussiononhowtodeployDNSSECintheEnterprise.We
coverzonesigning,validation,andlastmilesecurity.Wealsodiscussusing
validationtoprotectthenetworkedge.
Posted4thSeptember2007byChandanPatralekh
Labels:ADintegratedDNSserver,DelegatedDNS,DNSCAche,DNS
Forwarders,DNSVideos,Forwardlookup,Hostrecord,PrimaryDNSserver,
PTRrecord,Reverselookup,SecondaryDNSserver,VidoesonDNS
Custom Domain & Build Your Own Site Start With A Free 30-Day Trial.
0 Addacomment
Enteryourcomment...
Commentas:
Publish
http://dnsfunda.blogspot.in/
GoogleAccount
Preview
4/4