Has anyone found a solution for this issue?
I have the same problem and daily about scan in my network and in my AD.
I know that the initial planning was wrong to create the network domain in AD equal to the zone's dns domain.
But now I would like some help on how to solve this problem, since the same as parent folder records are necessary for the internal network and the machines join the domain, but I would not like the records to appear in the authoritative dns zone microsoft dns server.