Sunday, March 8, 2009

Public Name Resolution in Active Directory Domain Environment

If you are running Microsoft Active Directory domain environment (2000 or higher) and you want your users to go to Internet to catch web stuff, you need a mechanism to be able to resolve names of AD resources as well as the Internet hosts.
For all clients, participating in AD domain, you must point the "Internal" DNS server to be used as primary DNS. For Internet name resolution, setup a "Forwarder" on your Internal DNS server so that it listens all requests on its "Internal" interface and forwards all the traffic to "ISP or Public DNS" server for Internet name resolution.