Annoyances.org
Home » Windows Server 2003 Discussion Forum » Message 1183991884 Search | Help | Home
  
DNS and multiple network interfaces
Monday, July 9, 2007 at 7:38 am
Windows Server 2003 Annoyances Discussion Forum
Posted by appleoddity (1826 messages posted)


I have a server 2003 box setup (named Michael) with 5 LAN cards installed. One connection is for the WAN, and the other 4 each go to a different internal subnet. Can I set up the DNS server to handle requests different for each interface? I don't want the public interface responding to requests for items like wpad, or private hosts. Also I want the internal PCs to be able to use recursive queries where as I do not want the public to be able to do that. Where as the internal PC users have to have DNS requests forwarded for proper operation, I do not want the DNS server forwarding requests from external clients. If a internet client requests a host that my server does not know about I want it to say so, not forward the request and give a response. I am running ISA, DNS, Exchange, and ISS on this server. It has to handle requests from the intranet and internet. Are there any tips as to the proper way to set DNS up in a situation like this, and are their security risks I may be missing? Even though I have set the 4 internal NICs to not register their DNS information and have deleted the entries in the zone file once, the 4 internal IPs still show up again in the DNS zone file. Should those IPs be in the zone file, or just the IP for the public interface? Thanks


Responses to this message:
*re: DNS and multiple network interfaces (TOASTER: Monday, July 16, 2007 at 2:06 pm)

All messages in this thread [show all]
-DNS and multiple network interfaces (appleoddity: Mon, Jul 9, 2007, 7:38 am)
*re: DNS and multiple network interfaces (TOASTER: Mon, Jul 16, 2007, 2:06 pm)
Return to the Windows Server 2003 Discussion Forum

All content at Annoyances.org is Copyright © 1995-2008 Creative Elementtm All rights reserved.
Please do not plagiarize; redistributing these pages without permission is strictly prohibited.