Advertisement
Colin
Visitor
 
Domain Naming Conventions - 2006/12/16 13:29 Greetings All,

I have downloaded all the episodes and decided to watch them from the beginning. After viewing the first two episodes I have a question about Domain Naming for your Active Directory domain. I know some people will use a tertiary domain name and name their domain "ad.itidiots.com" while others prefer to separate the internal and external domains by naming their domain "itidiots.local".

Unfortunately, I don't know the arguments in either direction and possibly what Microsoft would recommend.

I have setup one production domain and named it "example.com". The drawback to this is now when i want to DNS the domains A record to our main web site, I can't because the Domain Controllers need to own that value. My reaction would be to name the AD domain "example.local" and then I could use the A record for the web site. Now that I have seen the first two episodes and they used a tertiary value it opens up another idea. What if I ever wanted to create a trust with another institution. Having "ad.example.com" would make things more "logical" for the trusted domain.

Just kicking around some ideas and curious what others think.

TIA
-Colin
  | | The administrator has disabled public write access.
Nicky Curtis
Admin
Karma: 22  
Re:Domain Naming Conventions - 2006/12/18 08:06 Hi Colin,

There are basically three main options with domain naming. Lets say our external presense is itidiots.com.

We could use itidiots.local, however .local is not a reserved top level domain and although unlikely this may lead to problems in the future. Also with a .local name you will never be able to host AD on the Internet, this may seem a strange thing to do but you never know what the future will bring.

Option two is to use the same internal name as external, e.g. itidiots.com, the problem here is that you will probably need to manyally add your external servers to the internal DNS namespace, so basically a little bit of hastle.

Option 3, the most common one nowadays is to take a subdomain of your external presence, usually ad or corp to form ad.itidiots.com, the advantages here is that this name is valid on the internet, it is also different so internal clients will easily be able to resolve external names e.g. www.itidiots.com as the internal DNS server will refer it out as it only knows about ad.itidiots.com.

Hope that helps,

Nicky
  | | The administrator has disabled public write access.
Joomla Templates by Joomlashack
Joomla Templates and Joomla Tutorial