G
Guest
My question is that if you have only win2k and or Win2k3 DC's running
integrated DNS on a single domain forest, does having the "Allow Zone
transfers" check box cleared have any effect on zone data replication via AD?
My logic tells me that this setting is only useful if you are using true
"secondaries" that are NOT AD integrated, as the multimaster replication is
not filtered for certain data types, unless you are native win2k3 and are
setting dns replication scopes to only dc's that are running dns. the other
telling point is that there is no schema entry for "allow zone transfer", so
if you don't check it how does it filter the replication of AD updates to do
all the other AD info EXCEPT for the DNS data? Any responses will be
appreciated.
integrated DNS on a single domain forest, does having the "Allow Zone
transfers" check box cleared have any effect on zone data replication via AD?
My logic tells me that this setting is only useful if you are using true
"secondaries" that are NOT AD integrated, as the multimaster replication is
not filtered for certain data types, unless you are native win2k3 and are
setting dns replication scopes to only dc's that are running dns. the other
telling point is that there is no schema entry for "allow zone transfer", so
if you don't check it how does it filter the replication of AD updates to do
all the other AD info EXCEPT for the DNS data? Any responses will be
appreciated.