domain.local vs. _msdcs.domain.local
Windows Server Forum Index Windows Server
Server discussion on Windows platform.
 
 FAQFAQ   MemberlistMemberlist     RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 
 
Google
 
Web winserverhelp.com
domain.local vs. _msdcs.domain.local

 
Post new topic   Reply to topic    Windows Server Forum Index -> DNS
Author Message
Spin
Guest





Posted: Tue Nov 08, 2005 1:50 am    Post subject: domain.local vs. _msdcs.domain.local Reply with quote

Gurus,

I am slow to get my head around the true meaning of the forest root domain
and how it is represented in the DNS management console. As I understand it,
in MS Windows 2000+ DNS, you basically have two main zones.

domain.local
_msdcs.domain.local

Here is my point-by-point understanding of these zones, and correct me if
I'm wrong.

1) domain.local is the obvious one. That contains all the host , SRV
records and sites locations for the AD domain. This is the first domain
created in the forest so it would also be called the forest root domain.
2) _msdcs.domain.local zone contains the records of all the Global Catalogs
and all domains in the entire forest. This is essentially the forest root
domain also. So now we have two root domains, do we not? :-)
3) Finally, there is the delegation for _msdcs.domain.local in the
domain.local zone. This delegation zone contains NS records that point to
the _msdcs.domain.local - which again is basically the forest root domain.

BUT. The forest name is said to be the same as the first domain name, in
this case domain.local. So what, my scholarly friends, is the true
representation of the forest root domain? Is it domain.local or is it
_msdcs.domain.local?

--
Spin
Back to top
Spin
Guest





Posted: Tue Nov 08, 2005 1:50 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

Sweet! You should be an MVP Al!

--
Spin

"Al Mulnick" <amulnick_No_SPAM@ncDOTrr.com> wrote in message
news:OIr%23If$4FHA.1772@TK2MSFTNGP11.phx.gbl...
Quote:
Have you seen this already?
http://www.windowsitpro.com/Article/ArticleID/43039/43039.html

It's not two domains in the same sense. _msdcs is a sub-domain and it
continues with .domain.com which is the forest name. The forest and
domain name *could* be the same or it could not if you have multiple
domains deployed in the same forest but the _msdcs remains the same across
all domains (it's forest-wide).

Read the doc and post back if still a question. Or drop a note offline if
you prefer.

-ajm
Back to top
Spin
Guest





Posted: Tue Nov 08, 2005 1:50 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

My interpretation of that article is that _msdcs.domain.local contains the
records of all the Global Catalogs and the GUIDs of all domains in the
forest. It is a way for child domains of a multi-domain forest to find all
the other domains. So it is not the forest root but in fact a container of
pointers to all domains.

--
Spin

"Spin" <Spin@spin.com> wrote in message
news:3taa35FrmsaoU1@individual.net...
Quote:
Sweet! You should be an MVP Al!

--
Spin

"Al Mulnick" <amulnick_No_SPAM@ncDOTrr.com> wrote in message
news:OIr%23If$4FHA.1772@TK2MSFTNGP11.phx.gbl...
Have you seen this already?
http://www.windowsitpro.com/Article/ArticleID/43039/43039.html

It's not two domains in the same sense. _msdcs is a sub-domain and it
continues with .domain.com which is the forest name. The forest and
domain name *could* be the same or it could not if you have multiple
domains deployed in the same forest but the _msdcs remains the same
across all domains (it's forest-wide).

Read the doc and post back if still a question. Or drop a note offline if
you prefer.

-ajm

Back to top
Al Mulnick
Guest





Posted: Tue Nov 08, 2005 1:50 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

Have you seen this already?
http://www.windowsitpro.com/Article/ArticleID/43039/43039.html

It's not two domains in the same sense. _msdcs is a sub-domain and it
continues with .domain.com which is the forest name. The forest and domain
name *could* be the same or it could not if you have multiple domains
deployed in the same forest but the _msdcs remains the same across all
domains (it's forest-wide).

Read the doc and post back if still a question. Or drop a note offline if
you prefer.

-ajm



"Spin" <Spin@spin.com> wrote in message
news:3ta6pmFqvibcU1@individual.net...
Quote:
Gurus,

I am slow to get my head around the true meaning of the forest root domain
and how it is represented in the DNS management console. As I understand
it, in MS Windows 2000+ DNS, you basically have two main zones.

domain.local
_msdcs.domain.local

Here is my point-by-point understanding of these zones, and correct me if
I'm wrong.

1) domain.local is the obvious one. That contains all the host , SRV
records and sites locations for the AD domain. This is the first domain
created in the forest so it would also be called the forest root domain.
2) _msdcs.domain.local zone contains the records of all the Global
Catalogs and all domains in the entire forest. This is essentially the
forest root
domain also. So now we have two root domains, do we not? :-)
3) Finally, there is the delegation for _msdcs.domain.local in the
domain.local zone. This delegation zone contains NS records that point to
the _msdcs.domain.local - which again is basically the forest root domain.

BUT. The forest name is said to be the same as the first domain name, in
this case domain.local. So what, my scholarly friends, is the true
representation of the forest root domain? Is it domain.local or is it
_msdcs.domain.local?

--
Spin

Back to top
Ace Fekay [MVP]
Guest





Posted: Tue Nov 08, 2005 9:50 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

In news:3taajqFqt769U1@individual.net,
Spin <Spin@spin.com> made this post, which I then commented about below:
Quote:
My interpretation of that article is that _msdcs.domain.local
contains the records of all the Global Catalogs and the GUIDs of all
domains in the forest. It is a way for child domains of a
multi-domain forest to find all the other domains. So it is not the
forest root but in fact a container of pointers to all domains.

Also, to add another doc to Al's post, look at this too:

Q. What's the DNS _msdcs zone for the forest root domain used for:
http://www.windowsitpro.com/Article/ArticleID/43039/43039.html

Ace
Back to top
Paul Williams [MVP]
Guest





Posted: Tue Nov 08, 2005 9:51 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

He is ;-)

--
Paul Williams
Microsoft MVP - Windows Server - Directory Services
http://www.msresource.net | http://forums.msresource.net
Back to top
Paul Williams [MVP]
Guest





Posted: Tue Nov 08, 2005 9:51 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

That's the same doc <g>

Oh well. It must be a good one ;-)

--
Paul Williams
Microsoft MVP - Windows Server - Directory Services
http://www.msresource.net | http://forums.msresource.net
Back to top
Ace Fekay [MVP]
Guest





Posted: Tue Nov 08, 2005 9:51 am    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

In news:3taajqFqt769U1@individual.net,
Spin <Spin@spin.com> made this post, which I then commented about below:
Quote:
My interpretation of that article is that _msdcs.domain.local
contains the records of all the Global Catalogs and the GUIDs of all
domains in the forest. It is a way for child domains of a
multi-domain forest to find all the other domains. So it is not the
forest root but in fact a container of pointers to all domains.

But don't forget it's how other domains know who the forest root is too,
which is essential.

Ace
Back to top
Ace Fekay [MVP]
Guest





Posted: Tue Nov 08, 2005 1:50 pm    Post subject: Re: domain.local vs. _msdcs.domain.local Reply with quote

In news:%238fdhvD5FHA.3636@TK2MSFTNGP09.phx.gbl,
Paul Williams [MVP] <ptw2001@hotmail.com> made this post, which I then
commented about below:
Quote:
That's the same doc <g

Oh well. It must be a good one ;-)

LOL! I found that along with another one, and I meant to post the other one,
but now I can't find it! I think I meant to post this one explaining the
SRVs for Spin but could have sworn there was another one I had found:
http://www.serverwatch.com/tutorials/article.php/1476601

Ace
Back to top
 
Post new topic   Reply to topic    Windows Server Forum Index -> DNS All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum




New Topics Powered by phpBB