Best Practices Domain Controller use self DNS Registration or use static host entry?

Anonymous
2023-11-01T20:56:42+00:00

On a Domain Controller, there are two thoughts on DNS entry in the domain forward lookup group. One line of thought is to create a static host (A) entry for the Domain Controller(s) in the domain Forward lookup. This is in addition to the default entries that automatically create for NS etc. The other line of thought is to check mark "Register this connection's address in DNS" in the DNS Tab in advanced settings for TCP/IP in adapter settings and let the controller maintain its own entry. I have configuring DNS both ways over time, and in each instance got different BPA (Best Practices) or other errors as a result. I'd like some thoughts on how other admins think about this. It is on a local private domain where the computers do not need to be reached from the outside Internet. Thanks in advance.

Windows for business | Windows Server | Networking | Network connectivity and file sharing

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Anonymous
    2023-11-02T09:12:24+00:00

    Hello!

    While dynamic DNS registration can be convenient for end-user devices with dynamic IP addresses, for infrastructure components like DC which IP addresses are static and unlikely to change, static DNS entries may be appropriate. Static entries help maintain network reliability. Stability is crucial. We won't have to deal with unexpected changes in IP addresses.

    Thanks,

    Karlie

    0 comments No comments
  2. Anonymous
    2023-11-02T21:50:08+00:00

    Thank you. I believe you indicated that on a domain where controllers and member servers don't ever change IP addresses, using static host entries in DNS is acceptable, which would also imply it is therefore safe to ignore the DNS BPA entry that the host DC isn't set up to register itself each time it boots.

    0 comments No comments