DNS
management consists of the following tasks:
• Delegating DNS administration
• Configuring logging for DNS
• Aging and scavenging
•
Backing up the DNS database
Delegating
Administration of DNS
By
default, the Domain Admins group has full permissions to manage all aspects of
the DNS server in its home domain, and the Enterprise Admins group has full
permissions to manage all aspects of all DNS servers in any domain in the
forest.
Configuring DNS Logging
By default, DNS maintains a DNS
server log, which you can view in the Event Viewer. This event log is located
in the Applications and Services Logs folder in Event Viewer. It records common
events such as:
•
Starting and stopping the DNS service.
•
Background loading and zone signing events.
•
Changes to DNS configuration settings.
• Various warnings and error
events.
Aging and Scavenging
DNS dynamic updates add resource
records to the zone automatically, but in some cases, those records are not
deleted automatically when they are no longer required..
Aging is determined by using
parameters known as the No-refresh interval and the Refresh interval. The No-refresh
interval is the period of time that the record is not eligible to be
refreshed..
Backing Up the DNS Database
If your DNS zone was
implemented as an Active Directory-integrated zone, then your DNS zone is included
in the Active Directory database ntds.dit file. If the DNS zone is a primary
zone and is not stored in AD DS, then the file is stored as a .dns file in the
%SystemRoot%\System32\Dns folder.
Backing Up Active
Directory-Integrated Zones
Active
Directory-integrated zones are stored in AD DS and are backed up as part of a
System State or a full server backup. Additionally, you can back up just the
Active Directory–integrated zone by using the dnscmd command-line tool.
Backing Up Primary Zones
To back up a
primary zone that is not stored in AD DS, simply copy or back up the individual
zone file, zonename.dns, which is located in the
%windir%\System32\DNS directory. For example, if your DNS primary zone is named
Adatum.com, then the DNS zone file will be named Adatum.com.dns.
0 التعليقات:
إرسال تعليق