Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
VISHNUPRASAD.C.B
Searchthissite
:::MY DRAWINGS:::
Home>
facebook.com/VISHNUL0KAM
69.DNSINTERVIEWQUESTIONS&ANSWERS
MY FACEBOOK PROFILE
facebook.com/cbvishnuprasad
CONTACT ME
Email:cbvishnu@gmail.com
Mob:9739779124
Navigation
Home
1.INTERVIEW QUESTIONS & ANSWERS
2.DOMINO SERVER COMMANDS.......
3.KEYBOARD SHORTCUTS....
4.DFS...
5.INTERESTING TIPS & TRICKS(REGISTRY)...
6.INTERNET CONNECTION SHARING IN
WINDOWS SERVER 2003...
7.LOTUS DOWNLOADS...
8.PORT NUMBERS...
9.RAID DEMO...
10.RAID DETAILS...
11.RECOVERY CONSOLE COMMANDS...
12.RIS...
13.RUN COMMANDS...
14.VPN Coniguration In Server 2003...
15.WINDOWS NT RELEASES...
16.WINDOWS XP SERVICES...
17.WSUS OPERATIONS...
18.WSUS STEP BY STEP...
19.XP OPTIMIZATION GUIDE...
20.XP TRICKS...
>WhatisthemainpurposeofaDNSserver?
DNSserversareusedtoresolveFQDNhostnamesintoIPaddressesandvice
versa.
>Whatistheportnoofdns?
53.
>WhatisaForwardLookup?
ResolvingHostNamestoIPAddresses.
>WhatisReverseLookup?
It?safilecontainshostnamestoIPmappinginformation.
>WhatisaResourceRecord?
ItisarecordprovidestheinformationabouttheresourcesavailableintheN/W
infrastructure.
>Whatarethediff.DNSRoles?
StandardPrimary,StandardSecondary,&ADIntegrated.
>WhatisaZone?
ZoneisasubtreeofDNSdatabase.
>Secureservicesinyournetworkrequirereversenameresolutionto
makeitmoredifficulttolaunchsuccessfulattacksagainsttheservices.
Tosetthisup,youconfigureareverselookupzoneandproceedtoadd
records.Whichrecordtypesdoyouneedtocreate?
PTRRecords
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
1/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
>SOArecordsmustbeincludedineveryzone.Whataretheyusedfor?
SOArecordscontainaTTLvalue,usedbydefaultinallresourcerecordsinthe
zone.SOArecordscontaintheemailaddressofthepersonwhoisresponsible
formaintainingthezone.SOArecordscontainthecurrentserialnumberofthe
zone,whichisusedinzonetransfers.
>Bydefault,ifthenameisnotfoundinthecacheorlocalhostsfile,what
isthefirststeptheclienttakestoresolvetheFQDNnameintoanIP
address?
PerformsarecursivesearchthroughtheprimaryDNSserverbasedonthe
networkinterfaceconfiguration.
>Whatisprimary,Secondary,stub&ADIntegratedZone?
PrimaryZone:zonewhichissavedasnormaltextfilewithfilename(.dns)in
DBSfolder.Maintainsaread,writecopyofzonedatabase.
SecondaryZone:maintainsareadonlycopyofzonedatabaseonanotherDNS
server.Providesfaulttoleranceandloadbalancingbyactingasbackupserverto
primaryserver.
Stubzone:containsacopyofnameserverandSOArecordsusedforreducing
theDNSsearchorders.Providesfaulttoleranceandloadbalancing.
>HowdoyoumanuallycreateSRVrecordsinDNS?
Thisisonwindowsservergotorun>dnsmgmt.mscrightclickonthezone
youwanttoaddsrvrecordtoandchoose"othernewrecord"andchooseservice
location(srv).
>WhatisthemainpurposeofSRVrecords?
SRVrecordsareusedinlocatinghoststhatprovidecertainnetworkservices.
>Beforeinstallingyourfirstdomaincontrollerinthenetwork,you
installedaDNSserverandcreatedazone,namingitasyouwouldname
yourADdomain.However,aftertheinstallationofthedomain
controller,youareunabletolocateinfrastructureSRVrecordsanywhere
inthezone.Whatisthemostlikelycauseofthisfailure?
Thezoneyoucreatedwasnotconfiguredtoallowdynamicupdates.Thelocal
interfaceontheDNSserverwasnotconfiguredtoallowdynamicupdates.
>Whichofthefollowingconditionsmustbesatisfiedtoconfigure
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
2/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
dynamicDNSupdatesforlegacyclients?
Thezonetobeusedfordynamicupdatesmustbeconfiguredtoallowdynamic
updates.TheDHCPservermustsupport,andbeconfiguredtoallow,dynamic
updatesforlegacyclients.
>Atsomepointduringthenameresolutionprocess,therequesting
partyreceivedauthoritativereply.Whichfurtheractionsarelikelytobe
takenafterthisreply?
Afterreceivingtheauthoritativereply,theresolutionprocessiseffectivelyover.
>Name3benefitsofusingADintegratedzones.
ActiveDirectoryintegratedDNSenablesActiveDirectorystorageandreplication
ofDNSzonedatabases.Windows2000DNSserver,theDNSserverthatis
includedwithWindows2000Server,accommodatesstoringzonedatainActive
Directory.
WhenyouconfigureacomputerasaDNSserver,zonesareusuallystoredastext
filesonnameserversthatis,allofthezonesrequiredbyDNSarestoredinatext
fileontheservercomputer.
ThesetextfilesmustbesynchronizedamongDNSnameserversbyusinga
systemthatrequiresaseparatereplicationtopologyandschedulecalledazone
transferHowever,ifyouuseActiveDirectoryintegratedDNSwhenyouconfigure
adomaincontrollerasaDNSnameserver,zonedataisstoredasanActive
Directoryobjectandisreplicatedaspartofdomainreplication.
>Yourcompanyusestendomaincontrollers,threeofwhicharealso
usedasDNSservers.YouhaveonecompanywideADintegratedzone,
whichcontainsseveralthousandresourcerecords.Thiszonealsoallows
dynamicupdates,anditiscriticaltokeepthiszoneuptodate.
Replicationbetweendomaincontrollerstakesupasignificantamountof
bandwidth.Youarelookingtocutbandwidthusageforthepurposeof
replication.Whatshouldyoudo?
ChangethereplicationscopetoallDNSserversinthedomain.
>YouareadministeringanetworkconnectedtotheInternet.Yourusers
complainthateverythingisslow.Preliminaryresearchoftheproblem
indicatesthatittakesaconsiderableamountoftimetoresolvenamesof
resourcesontheInternet.Whatisthemostlikelyreasonforthis?
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
3/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
DNSserversarenotcachingreplies..Localclientcomputersarenotcaching
repliesThecache.dnsfilemayhavebeencorruptedontheserver.
>WhatarethebenefitsofusingWindows2003DNSwhenusingAD
integratedzones?
IfyourDNStopologyincludesActiveDirectory,useActiveDirectoryintegrated
zones.ActiveDirectoryintegratedzonesenableyoutostorezonedatainthe
ActiveDirectorydatabase.ZoneinformationaboutanyprimaryDNSserverwithin
anActiveDirectoryintegratedzoneisalwaysreplicated.
BecauseDNSreplicationissinglemaster,aprimaryDNSserverinastandard
primaryDNSzonecanbeasinglepointoffailure.InanActiveDirectory
integratedzone,aprimaryDNSservercannotbeasinglepointoffailurebecause
ActiveDirectoryusesmultimasterreplication.
Updatesthataremadetoanydomaincontrollerarereplicatedtoalldomain
controllersandthezoneinformationaboutanyprimaryDNSserverwithinan
ActiveDirectoryintegratedzoneisalwaysreplicated.
ActiveDirectoryintegratedzones:Enableyoutosecurezonesbyusingsecure
dynamicupdate.
Provideincreasedfaulttolerance.EveryActiveDirectoryintegratedzonecanbe
replicatedtoalldomaincontrollerswithintheActiveDirectorydomainorforest.
AllDNSserversrunningonthesedomaincontrollerscanactasprimaryservers
forthezoneandacceptdynamicupdates.
Enablereplicationthatpropagateschangeddataonly,compressesreplicated
data,andreducesnetworktraffic.IfyouhaveanActiveDirectoryinfrastructure,
youcanonlyuseActiveDirectoryintegratedzonesonActiveDirectorydomain
controllers.IfyouareusingActiveDirectoryintegratedzones,youmustdecide
whetherornottostoreActiveDirectoryintegratedzonesintheapplication
directorypartition.
YoucancombineActiveDirectoryintegratedzonesandfilebasedzonesinthe
samedesign.Forexample,iftheDNSserverthatisauthoritativefortheprivate
rootzoneisrunningonanoperatingsystemotherthanWindowsServer2003or
Windows2000,itcannotactasanActiveDirectorydomaincontroller.Therefore,
youmustusefilebasedzonesonthatserver.However,youcandelegatethis
zonetoanydomaincontrollerrunningeitherWindowsServer2003orWindows
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
4/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
2000.
>YouinstalledanewADdomainandthenew(andfirst)DChasnotregistered
itsSRVrecordsinDNS.Nameafewpossiblecauses.
ThemachinecannotbeconfiguredwithDNSclientherown.
TheDNSservicecannotberun.
>WhatarethebenefitsandscenariosofusingStubzones?
Understandingstubzones
Astubzoneisacopyofazonethatcontainsonlythoseresourcerecordsnecessaryto
identifytheauthoritativeDomainNameSystem(DNS)serversforthatzone.
AstubzoneisusedtoresolvenamesbetweenseparateDNSnamespaces.Thistypeof
resolutionmaybenecessarywhenacorporatemergerrequiresthattheDNSserversfor
twoseparateDNSnamespacesresolvenamesforclientsinbothnamespaces.
Astubzoneconsistsof:
?Thestartofauthority(SOA)resourcerecord,nameserver(NS)resourcerecords,and
theglueAresourcerecordsforthedelegatedzone.TheIPaddressofoneormore
masterserversthatcanbeusedtoupdatethestubzone.Themasterserversforastub
zoneareoneormoreDNSserversauthoritativeforthechildzone,usuallytheDNS
serverhostingtheprimaryzoneforthedelegateddomainname.
Usestubzonesto:
?Keepdelegatedzoneinformationcurrent.
Byupdatingastubzoneforoneofitschildzonesregularly,theDNSserverhostingboth
theparentzoneandthestubzonewillmaintainacurrentlistofauthoritativeDNS
serversforthechildzone.
?Improvenameresolution.
StubzonesenableaDNSservertoperformrecursionusingthestubzone'slistofname
serverswithoutneedingtoquerytheInternetorinternalrootserverfortheDNS
namespace.
?SimplifyDNSadministration.
ByusingstubzonesthroughoutyourDNSinfrastructure,youcandistributealistofthe
authoritativeDNSserversforazonewithoutusingsecondaryzones.However,stubzones
donotservethesamepurposeassecondaryzonesandarenotanalternativewhen
consideringredundancyandloadsharing.
TherearetwolistsofDNSserversinvolvedintheloadingandmaintenanceofastub
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
5/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
zone:
?ThelistofmasterserversfromwhichtheDNSserverloadsandupdatesastubzone.A
masterservermaybeaprimaryorsecondaryDNSserverforthezone.Inbothcases,it
willhaveacompletelistoftheDNSserversforthezone.
?ThelistoftheauthoritativeDNSserversforazone.Thislistiscontainedinthestub
zoneusingnameserver(NS)resourcerecords.WhenaDNSserverloadsastubzone,
suchaswidgets.example.com,itqueriesthemasterservers,whichcanbeindifferent
locations,forthenecessaryresourcerecordsoftheauthoritativeserversforthezone
widgets.example.com.Thelistofmasterserversmaycontainasingleserverormultiple
serversandcanbechangedanytime.
>WhatarethebenefitsandscenariosofusingConditionalForwarding?
RatherthanhavingaDNSserverforwardallqueriesitcannotresolveto
forwarders,theDNSservercanforwardqueriesfordifferentdomainnamesto
differentDNSserversaccordingtothespecificdomainnamesthatarecontained
inthequeries.Forwardingaccordingtothesedomainnameconditionsimproves
conventionalforwardingbyaddingasecondconditiontotheforwardingprocess.
AconditionalforwardersettingconsistsofadomainnameandtheIPaddressof
oneormoreDNSservers.ToconfigureaDNSserverforconditionalforwarding,a
listofdomainnamesissetupontheWindowsServer2003basedDNSserver
alongwiththeDNSserverIPaddress.WhenaDNSclientorserverperformsa
queryoperationagainstaWindowsServer2003basedDNSserverthatis
configuredforforwarding,theDNSserverlookstoseeifthequerycanbe
resolvedbyusingitsownzonedataorthezonedatathatisstoredinitscache,
andthen,iftheDNSserverisconfiguredtoforwardforthedomainnamethatis
designatedinthequery(amatch),thequeryisforwardedtotheIPaddressofa
DNSServerthatisassociatedwiththedomainname.IftheDNSserverhasno
domainnamelistedforthenamethatisdesignatedinthequery,itattemptsto
resolvethequerybyusingstandardrecursion.
>Whatisthe224.0.1.24addressusedfor?
WINSservergroupaddress.Usedtosupportautodiscoveryanddynamic
configurationofreplicationforWINSservers.Formoreinformation,seeWINS
replicationoverviewWINSservergroupaddress.Usedtosupportautodiscovery
anddynamicconfigurationofreplicationforWINSservers.
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
6/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
>DescribetheimportanceofDNStoAD?
WhenMicrosoftbegandevelopmentonActiveDirectory,fullcompatibilitywith
thedomainnamesystem(DNS)wasacriticalpriority.ActiveDirectorywasbuilt
fromthegroundupnotjusttobefullycompatiblewithDNSbuttobeso
integratedwithitthatonecannotexistwithouttheother.Microsoft'sdirectionin
thiscasedidnotjusthappenbychance,butbecauseofthecentralrolethatDNS
playsinInternetnameresolutionandMicrosoft'sdesiretomakeitsproductlines
embracetheInternet.
WhilefullyconformingtothestandardsestablishedforDNS,ActiveDirectorycan
expanduponthestandardfeaturesetofDNSandoffersomenewcapabilities
suchasADIntegratedDNS,whichgreatlyeasestheadministrationrequiredfor
DNSenvironments.Inaddition,ActiveDirectorycaneasilyadapttoexistina
foreignDNSenvironment,suchasUnixBIND,aslongastheBINDversionis
8.2.xorhigher.WhenMicrosoftbegandevelopmentonActiveDirectory,full
compatibilitywiththedomainnamesystem(DNS)wasacriticalpriority.
ActiveDirectorywasbuiltfromthegroundupnotjusttobefullycompatiblewith
DNSbuttobesointegratedwithitthatonecannotexistwithouttheother.
Microsoft'sdirectioninthiscasedidnotjusthappenbychance,butbecauseof
thecentralrolethatDNSplaysinInternetnameresolutionandMicrosoft'sdesire
tomakeitsproductlinesembracetheInternet.
>Whatisthe"inaddr.arpa"zoneusedfor?
InaDomainNameSystem(DNS)environment,itiscommonforauseroran
applicationtorequestaReverseLookupofahostname,giventheIPaddress.
Thisarticleexplainsthisprocess.ThefollowingisquotedfromRFC1035:"The
InternetusesaspecialdomaintosupportgatewaylocationandInternetaddress
tohostmapping.Otherclassesmayemployasimilarstrategyinotherdomains.
Theintentofthisdomainistoprovideaguaranteedmethodtoperformhost
addresstohostnamemapping,andtofacilitatequeriestolocateallgatewayson
aparticularnetworkontheInternet.
"ThedomainbeginsatINADDR.ARPAandhasasubstructurewhichfollowsthe
Internetaddressingstructure."DomainnamesintheINADDR.ARPAdomainare
definedtohaveuptofourlabelsinadditiontotheINADDR.ARPAsuffix.Each
labelrepresentsoneoctetofanInternetaddress,andisexpressedasa
characterstringforadecimalvalueintherange0255(withleadingzeros
omittedexceptinthecaseofazerooctetwhichisrepresentedbyasinglezero).
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
7/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
"Hostaddressesarerepresentedbydomainnamesthathaveallfourlabels
specified."ReverseLookupfilesusethestructurespecifiedinRFC1035.
Forexample,ifyouhaveanetworkwhichis150.10.0.0,thentheReverse
Lookupfileforthisnetworkwouldbe10.150.INADDR.ARPA.AnyhostswithIP
addressesinthe150.10.0.0networkwillhaveaPTR(or'Pointer')entryin
10.150.INADDR.ARPAreferencingthehostnameforthatIPaddress.Asingle
INADDR.ARPAfilemaycontainentriesforhostsinmanydomains.Considerthe
followingscenario.ThereisaReverseLookupfile10.150.INADDR.ARPAwiththe
followingcontents:Exp:1.20INPTRWS1.ACME.COM.
>WhataretherequirementsfromDNStosupportAD?
WhenyouinstallActiveDirectoryonamemberserver,thememberserveris
promotedtoadomaincontroller.ActiveDirectoryusesDNSasthelocation
mechanismfordomaincontrollers,enablingcomputersonthenetworktoobtain
IPaddressesofdomaincontrollers.DuringtheinstallationofActiveDirectory,the
service(SRV)andaddress(A)resourcerecordsaredynamicallyregisteredin
DNS,whicharenecessaryforthesuccessfulfunctionalityofthedomaincontroller
locator(Locator)mechanism.
Tofinddomaincontrollersinadomainorforest,aclientqueriesDNSfortheSRV
andADNSresourcerecordsofthedomaincontroller,whichprovidetheclient
withthenamesandIPaddressesofthedomaincontrollers.Inthiscontext,the
SRVandAresourcerecordsarereferredtoasLocatorDNSresourcerecords.
Whenaddingadomaincontrollertoaforest,youareupdatingaDNSzone
hostedonaDNSserverwiththeLocatorDNSresourcerecordsandidentifying
thedomaincontroller.Forthisreason,theDNSzonemustallowdynamicupdates
(RFC2136)andtheDNSserverhostingthatzonemustsupporttheSRV
resourcerecords(RFC2782)toadvertisetheActiveDirectorydirectoryservice.
FormoreinformationaboutRFCs,seeDNSRFCs.
IftheDNSserverhostingtheauthoritativeDNSzoneisnotaserverrunning
Windows2000orWindowsServer2003,contactyourDNSadministratorto
determineiftheDNSserversupportstherequiredstandards.Iftheserverdoes
notsupporttherequiredstandards,ortheauthoritativeDNSzonecannotbe
configuredtoallowdynamicupdates,thenmodificationisrequiredtoyour
existingDNSinfrastructure.
Formoreinformation,seeChecklist:VerifyingDNSbeforeinstallingActive
DirectoryandUsingtheActiveDirectoryInstallationWizard.
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
8/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
Important
TheDNSserverusedtosupportActiveDirectorymustsupportSRVresource
recordsfortheLocatormechanismtofunction.Formoreinformation,see
Managingresourcerecords.ItisrecommendedthattheDNSinfrastructure
allowsdynamicupdatesofLocatorDNSresourcerecords(SRVandA)before
installingActiveDirectory,butyourDNSadministratormayaddtheseresource
recordsmanuallyafterinstallation.AfterinstallingActiveDirectory,theserecords
canbefoundonthedomaincontrollerinthefollowinglocation:
systemroot\System32\Config\Netlogon.dns.
>Whatdoesazoneconsistof&whydowerequireazone?
Zoneconsistsofresourcerecordsandwerequirezoneforrepresentingsites.
>WhatisCachingOnlyServer?
Whenweinstall2000&2003serveritisconfiguredascachingonlyserverwhere
itmaintainsthefrequentlyaccessedsitesinformationandagainwhenweaccess
thesamesitefornexttimeitisobtainfromcachedinformationinsteadofgoing
totheactualsite.
>Whatisforwarder?
WhenoneDNSservercan?treceivethequeryitcanbeforwardedtoanother
DNSonceconfiguredasforwarder.
>WhatissecondaryDNSServer?
ItisbackupforprimaryDNSwhereitmaintainsareadonlycopyofDNS
database.
>HowtoenableDynamicupdatesinDNS?
Start>Program>Admintools>DNS>Zoneproperties.
>WhatarethepropertiesofDNSserver?
INTERFACES,FORWARDERS,ADVANCED,ROUTINGS,SECURITY,MONITORING,
LOGGING,DEBUGLOGGING.
>PropertiesofaZone?
General,SOA,NAMESERVER,WINS,Security,andZONETransfer.
>Whatisscavenging?
Findinganddeletingunwantedrecords.
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
9/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
>WhatareSRVrecords?
SRVaretheservicerecords,thereare6servicerecords.Theyareusefulfor
locatingtheservices.
>WhatarethetypesofSRVrecords?
MSDCS:ContainsDCsinformation.
TCP:ContainsGlobalCatalog,Kerberos&LDAPinformation.
UDP:ContainsSitesinformation.
Sites:ContainsSitesinformation.
DomainDNSZone:Conationsdomain?sDNSspecificinformation.
ForestDNSzone:ContainsForest?sSpecificInformation.
>WheredoesaHostFileReside?
c:\windows\system32\drivers\etc.
>WhatisSOA?
StartofAuthority:usefulwhenazonestarts.Providesthezonestartup
information.
>Whatisaquery?
ArequestmadebytheDNSclienttoprovidethenameserverinformation.
>Whatarethediff.typesofQueries?
Recursion,iteration.
>ToolsfortroubleshootingDNS?
DNSConsole,NSLOOKUP,DNSCMD,IPCONFIG,Logs.
>WhatisWINSserver?whereweuseWINSserver?differencebetween
DNSandWINS?
WINSiswindowsinternetnameserviceusedtoresolvetheNetBIOS(computer
name)nametoIPaddress.ThisisproprietaryforWindows.Youcanusein
LAN.DNSisaDomainNamingSystem,whichresolvesHostnamestoIP
addresses.Itusesfullyqualifieddomainnames.DNSisanInternetstandard
usedtoresolvehostnames.
>WhatisnewinWindowsServer2003regardingtheDNSmanagement?
WhenDCpromotionoccurswithanexistingforest,theActiveDirectory
InstallationWizardcontactsanexistingDCtoupdatethedirectoryandreplicate
fromtheDCtherequiredportionsofthedirectory.
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
10/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
IfthewizardfailstolocateaDC,itperformsdebuggingandreportswhatcaused
thefailureandhowtofixtheproblem.Inordertobelocatedonanetwork,every
DCmustregisterinDNSDClocatorDNSrecords.TheActiveDirectoryInstallation
WizardverifiesaproperconfigurationoftheDNSinfrastructure.AllDNS
configurationdebuggingandreportingactivityisdonewiththeActiveDirectory
InstallationWizard.
>SOArecordsmustbeincludedineveryzone.Whataretheyusedfor?
SOArecordscontainaTTLvalue,usedbydefaultinallresourcerecordsinthe
zone.SOArecordscontaintheemailaddressofthepersonwhoisresponsible
formaintainingthezone.SOArecordscontainthecurrentserialnumberofthe
zone,whichisusedinzonetransfers.
Bydefault,ifthenameisnotfoundinthecacheorlocalhostsfile,whatisthe
firststeptheclienttakestoresolvetheFQDNnameintoanIPaddress?Performs
arecursivesearchthroughtheprimaryDNSserverbasedonthenetwork
interfaceconfiguration.
>HowdoIcleartheDNScacheontheDNSserver?
Gotocmdpromptandtypeipconfig/flushdns.
>WhatisthemainpurposeofSRVrecords?
SRVrecordsareusedinlocatinghoststhatprovidecertainnetworkservices.
>Beforeinstallingyourfirstdomaincontrollerinthenetwork,you
installedaDNSserverandcreatedazone,namingitasyouwouldname
yourADdomain.However,aftertheinstallationofthedomain
controller,youareunabletolocateinfrastructureSRVrecordsanywhere
inthezone.Whatisthemostlikelycauseofthisfailure?
Thezoneyoucreatedwasnotconfiguredtoallowdynamicupdates.Thelocal
interfaceontheDNSserverwasnotconfiguredtoallowdynamicupdates.
>Whatisthe"."zoneinmyforwardlookupzone?
ThissettingdesignatestheWindows2000orWindowsServer2003DNSserver
tobearoothintserverandisusuallydeleted.Ifyoudonotdeletethissetting,
youmaynotbeabletoperformexternalnameresolutiontotheroothintservers
ontheInternet.
>DoIneedtoconfigureforwardersinDNS?
No.Bydefault,Windows2000DNSusestheroothintserversontheInternet
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
11/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
however,youcanconfigureforwarderstosendDNSqueriesdirectlytoyourISP's
DNSserverorotherDNSservers.Mostofthetime,whenyouconfigure
forwarders,DNSperformanceandefficiencyincreases,butthisconfigurationcan
alsointroduceapointoffailureiftheforwardingDNSserverisexperiencing
problems.
Theroothintservercanprovidealevelofredundancyinexchangeforslightly
increasedDNStrafficonyourInternetconnection.WindowsServer2003DNSwill
queryroothintsserversifitcannotquerytheforwarders.
>ShouldIpointtheotherWindows2000basedandWindowsServer
2003basedcomputersonmyLANtomyISP'sDNSservers?
No.IfaWindows2000basedorWindowsServer2003basedserveror
workstationdoesnotfindthedomaincontrollerinDNS,youmayexperience
issuesjoiningthedomainorloggingontothedomain.AWindows2000basedor
WindowsServer2003basedcomputer'spreferredDNSsettingshouldpointto
theWindows2000orWindowsServer2003domaincontrollerrunningDNS.
IfyouareusingDHCP,makesurethatyouviewscopeoption#15forthecorrect
DNSserversettingsforyourLAN.
>DoIneedtopointcomputersthatarerunningWindowsNT4.0or
MicrosoftWindows95,MicrosoftWindows98,orMicrosoftWindows98
SecondEditiontotheWindows2000orWindowsServer2003DNS
server?
LegacyoperatingsystemscontinuetouseNetBIOSfornameresolutiontofinda
domaincontrollerhoweveritisrecommendedthatyoupointallcomputersto
theWindows2000orWindowsServer2003DNSserverfornameresolution.
>WhatifmyWindows2000orWindowsServer2003DNSserveris
behindaproxyserverorfirewall?
IfyouareabletoquerytheISP'sDNSserversfrombehindtheproxyserveror
firewall,Windows2000andWindowsServer2003DNSserverisabletoquery
theroothintservers.UDPandTCPPort53shouldbeopenontheproxyserveror
firewall.
>WhatshouldIdoifthedomaincontrollerpointstoitselfforDNS,but
theSRVrecordsstilldonotappearinthezone?
Checkforadisjointednamespace,andthenrunNetdiag.exe/fix.
YoumustinstallSupportToolsfromtheWindows2000ServerorWindowsServer
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
12/13
31/05/2016
69.DNSINTERVIEWQUESTIONS&ANSWERSVISHNUPRASAD.C.B
2003CDROMtorunNetdiag.exe.
>HowdoIsetupDNSforachilddomain?
TosetupDNSforachilddomain,createadelegationrecordontheparentDNS
serverforthechildDNSserver.CreateasecondaryzoneonthechildDNSserver
thattransferstheparentzonefromtheparentDNSserver.
NoteWindowsServer2003hasadditionaltypesofzones,suchasStubZones
andforestlevelintegratedActiveDirectoryzones,thatmaybeabetterfitfor
yourenvironment.Setthechilddomaincontrollertopointtoitselffirst.Assoon
asanadditionaldomaincontrollerisavailable,setthechilddomaincontrollerto
pointtothisdomaincontrollerinthechilddomainasitssecondary.
CountTheHits
Comments
Youdonothavepermissiontoaddcomments.
||||||||||THANKYOU||||||||||
ViewasDesktop MySites
PoweredBy GoogleSites
https://sites.google.com/site/vishnuprasadcb/Home/69dnsinterviewquestionsanswers
13/13