question

Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 asked ·

Change on server

Hi,
The server running Active directory is now connected to outside world directly and what change is needed on it, per the comment below?

If the DC is also a DNS server and if you need resolve DNS Queries without internet connection, you just need set the forwarders on the DNS server.

windows-serverwindows-active-directorywindows-server-infrastructure
· 2
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Please feel free to let me know if you have anything unclear about DNS forwarder or DNS root hints.


0 Votes 0 ·

You could accept the useful reply as answer if you want to end this thread up.
If there is anything else we can do for you, please feel free to post in the forum.

Appreciate your understanding!

0 Votes 0 ·
CandyLuo-MSFT avatar image
0 Votes"
CandyLuo-MSFT answered ·

Hi ,

Configure forwarders or root hints for external name resolution in an Internet-connected environment.

Root hints are present by default on Windows servers, but forwarders must be configured manually. DNS Server will contact Root Hints only when it no Forwarders available or when Forwarders cannot resolve the query.

As Dave posted, you can set ISP or pubic DNS as forwarders. E.g. Google Public DNS: 8.8.8.8 and 8.8.4.4.

For difference between DNS forwarder and root hints, you can refer to the following article. This can help you understand better:

Understanding DNS Forwarders and Root Hints in Windows DNS Server

Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.

Please feel free to let me know if you have anything unclear.

Best Regards,

Candy


If the Answer is helpful, please click "Accept Answer" and upvote it.

Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 answered ·

Hi,
For DNS forwarder, what should be added to IPv4 setup?

· 1 ·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

78642-image.png

Did you mean add what IP address here?

0 Votes 0 ·
image.png (62.0 KiB)
CandyLuo-MSFT avatar image
0 Votes"
CandyLuo-MSFT answered ·

The following link list public DNS IP address, you could have a look:

https://github.com/easonjim/dns-server-list

·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 answered ·

How to apply DNS forwarder to my Ethernet below?
78588-a16.png



a16.png (17.2 KiB)
· 2 ·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

You don't need to configure DNS forwarder in IPV4. Just put it in DNS properties forwarders. That's Ok.

0 Votes 0 ·

The DNS address of Domain Controller should be itself .Then configure external DNS address as forwards .

0 Votes 0 ·
Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 answered ·

Where to have DNS properties forwarders on Win 2016 server?

· 1 ·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.


As picture below:

78684-image.png


0 Votes 0 ·
image.png (77.3 KiB)
Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 answered ·

Is it fine below?
78685-a17.png



a17.png (14.2 KiB)
· 1 ·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Yes. it is right.

0 Votes 0 ·
Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 answered ·

How to see DNS forwarder does help, due to traffic issue on Win 2016 server?

· 2 ·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

DNS forwarder just used to forward DNS queries for external DNS names to DNS servers outside that network.

For example, for DNS query of google.com, DNS server cannot resolve locally then it will forward DNS queries to DNS forwarder.

DNS forwarder is not used to troubleshoot traffic issue. And for traffic issue, it seem you have accepted the answer you want on this thread.


0 Votes 0 ·

Hi @Jackson1990-7147,

Do you need further assistance on this thread? If not, you can accept the answer to end this thread up.

If there is anything else we can do for you on this thread, please feel free to post in the forum.

0 Votes 0 ·
Jackson1990-7147 avatar image
0 Votes"
Jackson1990-7147 answered ·

Hi all,
DSPatrick,
Issue is that traffic of Win 2016 server suddenly jumps to 600/700 Mbps.

·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.