G
Guest
I am planning a migration from NT 4.0 to Active Directory, and the first step
is to design the DNS namespace. There are four options. If the company has
the registered Internet domain mycompany.com, for AD you can use:
1. The same namespace as the company's registered domain, i.e mycompany.com.
2. A subdomain, e.g. corp.mycompany.com, internal.mycompany.com,
ad.mycompany.com.
3. A different registered domain, e.g. mycomp.com.
4. A fake TLD, e.g. mycompany.local, mycompany.internal
Since this is a question that anyone designing AD needs to answer before
beginning, I would have expected to find a wealth of information about it.
To my surprise and frustration, I have had a remarkably hard time finding any
good, detailed, specific analysis about the relative merits and demerits of
each option. To be sure, the topic comes up frequently in articles about AD
design and technical forums, but it seems that it is always treated very
superficially. Even Microsoft's own deployment guide doesn't go into the
topic in any depth. Most discussions either just state what the options are,
without saying a whole lot about the reasons to use or avoid each one, or
will simply say "The best practice is X" and "Y is not recommended", without
going into detail about why (and different articles/discussions contradict
each other). Whenever reasons are given, they are always very generic and
vague. I've also tried asking around, but unfortunately I've only been able
to get answers saying "Here's how I suggest that you do it" or "Here's
another possibility" or "There's more than one way to do it, you have to
choose from your options" (thanks, but that was the setup for my question,
not an answer to it). Sometimes people will answer by discussing one
particular advantage or disadvantage to one particular option, or two if I'm
lucky.
There has got to be some better information or discussion out there about
such a commonly faced topic. Can anyone provide or point me toward a source
of specific, detailed, in-depth analysis about the pros, cons, and caveats of
the different options for internal AD DNS namespace with respect to external
namespace?
is to design the DNS namespace. There are four options. If the company has
the registered Internet domain mycompany.com, for AD you can use:
1. The same namespace as the company's registered domain, i.e mycompany.com.
2. A subdomain, e.g. corp.mycompany.com, internal.mycompany.com,
ad.mycompany.com.
3. A different registered domain, e.g. mycomp.com.
4. A fake TLD, e.g. mycompany.local, mycompany.internal
Since this is a question that anyone designing AD needs to answer before
beginning, I would have expected to find a wealth of information about it.
To my surprise and frustration, I have had a remarkably hard time finding any
good, detailed, specific analysis about the relative merits and demerits of
each option. To be sure, the topic comes up frequently in articles about AD
design and technical forums, but it seems that it is always treated very
superficially. Even Microsoft's own deployment guide doesn't go into the
topic in any depth. Most discussions either just state what the options are,
without saying a whole lot about the reasons to use or avoid each one, or
will simply say "The best practice is X" and "Y is not recommended", without
going into detail about why (and different articles/discussions contradict
each other). Whenever reasons are given, they are always very generic and
vague. I've also tried asking around, but unfortunately I've only been able
to get answers saying "Here's how I suggest that you do it" or "Here's
another possibility" or "There's more than one way to do it, you have to
choose from your options" (thanks, but that was the setup for my question,
not an answer to it). Sometimes people will answer by discussing one
particular advantage or disadvantage to one particular option, or two if I'm
lucky.
There has got to be some better information or discussion out there about
such a commonly faced topic. Can anyone provide or point me toward a source
of specific, detailed, in-depth analysis about the pros, cons, and caveats of
the different options for internal AD DNS namespace with respect to external
namespace?