Segregate DNS from Active Directory

Husam Eldin Elbagir Mohamed 20 Reputation points
2023-01-21T22:30:26.8733333+00:00

Dears,
I hope all of you are doing great,
There are 4 domain controllers at the same time they are DNS servers

I would like to know how to Segregate the DNS from the domain controller to make it a separate server to prevent the active directory from the internet.

I would like to avoid any issues with the DNS records or a

I really appreciate any help you can provide.
Thanks in advance

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,678 questions
0 comments No comments
{count} votes

Accepted answer
  1. Anonymous
    2023-01-21T22:53:41.4566667+00:00

    I would like to know how to Segregate the DNS from the domain controller to make it a separate server to prevent the active directory from the internet.

    Generally speaking, a much simpler approach may be to implement this at the perimeter via a checkpoint firewall or similar appliance.

    --please don't forget to upvote and Accept as answer if the reply is helpful--

    1 person found this answer helpful.

2 additional answers

Sort by: Most helpful
  1. Thameur-BOURBITA 35,436 Reputation points
    2023-01-22T11:15:56.0033333+00:00

    Hi @Husam Eldin Elbagir Mohamed

    You can create secondary DNS zone on windows server or on another appliance. The secondary zone is a read-only copy of the primary zone that is stored on a your domain controllers.

    The secondary zone cannot process DNS records updates and can only retrieve updates from the primary zone.

    Another feature may help you .It's to create conditional forwarders to forward any DNS request of your internal DNS zone to one of your domain controllers.

    DNS forwarder

    Please o't forget to mark helpful answer as accepted

    1 person found this answer helpful.
    0 comments No comments

  2. Husam Eldin Elbagir Mohamed 20 Reputation points
    2023-01-23T20:53:47.7466667+00:00

    I can't thank you enough for response I will try to follow your advice if there is anything I will get back to you


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.