there are multiple options to work with when you're actually trying to configure your D N s zones. So let's go ahead and get back to our Deena's own counsel here from Sarah. Manager Tools,
No idea. Ask counsel going Make that expanded out, Thio. Larger size
don't need to, but you can if you want to.
And once again, we have our
local server locally Network server. He had four look of zones, reverse lookup zones, trust points
condition foreigners and global logs.
do you have for lack of zones and reverse cubs odes we're gonna actually start with conditional Ford is, although technically not a zone is frequently used to supplement dear zone infrastructure, so we could take a look at conditional Ford or so, in this case, we don't actually have a conditional foreigner. So first thing we're going to do is create a conditional foreigner. So go ahead and right Click on there,
click on new conditional forger,
and you're going to say
what the D. N s domain names base that you're going to forward is so in this particular case, we're going to put in Kyoto, so dot com
contest that calm, then we need to put in an I p address for the D. N. A server that's authoritative for tosa dot com,
where it's located. So you come down here to the I P address space and you put in an I P address, for example, will point in 131.107
0.1 dot two. It could be
any number that's viable. It could be a internalize pianists around Herbal i p address doesn't matter. You have toe choose what you want to do,
had forgiven Net. And obviously it's not going to succeed in terms of
validating because it doesn't have access to that domain at the moment. But you just hit the enter button and let it resolve their go through the process of attempting to resolve
fella did it and ideally, would do both would actually resolve and validated if you actually had it configured properly.
In this particular case, we just don't have access externally because we're working a lab environment
and that's what you do. And you just go ahead and click on okay, and that would guess you create a conditional Ford or to you,
um, one of things you actually run into from time to time is that you're dealing with a environment where you have
cash information that may need to be updated. So we also want to take on our server
going click on your local server there
and right click on it, and you can actually clear the cache is clear is the local cached information for the D. N s look up
environment. That's not the
Deanna's cash on this physical box. It's the Deanna's cash with Indian s environment itself. They just took a clear cash, and that actually clears the cash. We can also manage that conditional, afford his own from our power shell environment. So we go down here and stick a quick look in our power shell environment will bring it up.
There's a partial environment. We actually we want to go through the process of actually
working with that air D. N s environment within power show, so this particular case will start with our basic command Here, you get
D. N s right, and then we also want to type what we're going to do to get DNA. Sarah. So
there's our get DNA server. We go ahead and
that would give us information about our d n a server environment. This is enabled,
and there's a whole lot of information in there. Just so you know, this is basically all the information you could find in the gooey,
separated out like theirs are root server hits. There's our zone name. So here's our various his own names and the type of zone it is primary foreigner. So it's like here we have a tosa dot com is a forger. We have trust anchors, anything that we would have in here that you could see into gooey you would have in here. Now, you can always pipe this output if you want to
come in and with it, you know, actually give you a page of the time, but just diseases to scroll up here and take a look at it. You can even play the outlook,
to an actual file if you want. You were actually gonna go do that so it takes to take a look at piping the outlet to a file.
So let's go ahead. Scroll back down here to our input line. Here
the first thing we want to do is show what we would do for that same thing. So if we have to get d n a server that we want our pipe command so we'll go ahead and put in our pipe command. There's our pipe, and then we
put in If you want to, actually, do you screen my screen, you put in the word war Annette, enter. So that's one option you would have.
And we also have the option to export information, which is what we're gonna do next. So this time I'm going to get that same de ns information and we're going to export it.
Yeah. What are we gonna export? We're gonna export the cli XML
and you don't need to capitalize any of this. You can capitalize anything. You want to make it easier for you. Then we have to tell it where we're going to actually output that
export information too. So next thing you know, you need to put in the path.
So the fact is fairly straightforward.
Did you type in, for example, see
colon backslash and then wherever you wanted to put it, it could be anywhere. No. See, Dr is not necessarily the best choice, but for the simplicity purposes, we're just going to do directly to see Dr and we type in the information we want. So it's going to be D and s
so d n s export. And then you're gonna put in the file Dave's which is
So there's your dot xml Will you put in? It would call whatever you want.
Deanna's export dot xml is pretty self explanatory. So you go ahead and eat.
Enter this. His name is Raj Do boot. Not ethical on a d n a server, which is fine.
And it puts it now we actually want to go ahead and take a look at our file here. So go down here
and look at our C drive. There's a D in this export
a double click on it. It'll actually launched an Internet Explorer
because that's the default
application for extremophiles.
And unless we get the scent of an instance here, if you scroll down on this list, you would see all the information that you had
previously in the other windows that both too gooey and the power shelf. So I hear you got for example, a seven a right here.
So that's one that says the D n a server zone Name space. We got things like bullying classes
head. It's a very long list because obviously it's all the data that was also available. It are gooey and our power show
So we could actually exploit that work with that every what?
think it's us, our export information. And now we're gonna should do the next step here where should go to use our power shell to add a
conditional forwarders out. So in this particular case,
D s s right. So I got my dash.
And then we're gonna do server
So adequate is no forger zone. So that's what we're gonna do. So we're gonna actually tell what do you do at a conditional forge his own?
And then we're gonna say, Okay, we need a name for that zone name. In this particular case, we'll go ahead and use
against his own name
that we have to tell it
where those oh names resides. So
though, that we called the master servers
at master servers and we can have more than one. But in this particular case, which is gonna put the one in and we don't need an argument tag at this point, we just need to give it the address. So 131.107 dot
Yeah, I cannot possibly argument transformation on Ford or timeout can act everybody fabric came dot com and to type system unit. So in frustrate was not in the correct form. It tells us
we have something is not the correct format. So we have to go back and take a look at this. So you add Deanna Server conditional for his own. And what we have here is just a simple typo.
listening, arguing here, right
for his own right. So if you take a look at this, if we have
name argument here, so
they should be named.
So if we actually didn't type it in properly, we could go back here and probably put it in here. So it's name
and then we scroll down to the end of it.
But you know, the end of our environment and we head enter again
any time you have just a single typo,
Do you have an issue?
It's just being extra space egg. We're missing comma
missing quotation mark with some fantasy bracket created number things, But you need to have it just so capitalization doesn't matter. But the other things D'oh! Now, if we actually go back to our D. N s Council here
and look at our conditional forwarders
and refresh it so we gotta go, everyone to refresh it,
we would now have a another conditional forger called fabric. And
that's how we do that.
Now you take a look at our other zones. So we talked about a connection. Ford's own stopped. Really? A zone is for just a conditional Florida.
But how about our reverse look observes, That's why talk about next. Relax. You wantto take a look at our reverse look observes
in our reverse lookup zones reissue what to
take and created New zone. So if we're gonna go ahead right here and we're gonna right click on that and doing the zone
it is going to say next
and says what type of his own
If unless you are connected with another d N a server pulling that zone transferred for mission down, it's going to be a primary zone.
The secondary zone option here
and the stubs own option require connectivity to and
authorization from another d n a server to chance for that zone information. So we're going ahead and click on Primary Zone here so quick on that
we're going to say what type of his own it is. I pee before I Phoebe *** reverse lookup zone. You choose what you need to do. Remember, if you want both, you have to do them individually. Separate. I'm out.
So we're gonna go ahead and click on the next option here.
It says give you the network i D. And when you type it in, you kept it in the order. You're used to typing in it, but it actually displays it in reverse order. So in this particular case, want to choose a
network. Where did you
right, So it's our network, so it's in a private i p address space
and you go and click on next. What? You do that?
So is there. And I was down here the bottom and it puts it in reverse order. That's the standard format with Indian s.
It says created new file with his name. That gives us a reverse format here. Also for the file name
16 That 1 72 which is actually reverse order.
obviously we could also put in existing file If you want to dio if we already have the information
and it says dynamic update.
So in terms of replicating his data, we're gonna replicate it.
So we either allow allow secure, which is only for 80 integrated,
both secure, not secure if that's a matter or in this particular case, since it sustained low D and s ever, we're going to not allow
dynamic updates. So we don't actually don't want a lot of dynamic updates on that. So we'll leave that would check,
go and click on next
and we get our finish wizard. Hey, we go ahead and click out finished
and that's it. So there's our reverse lookup zone there gives us. Our zone information and notice are starting authority is our local server and our names servers also our local server.
So that gives us the basic information now.
Well, we're done with this. We have share one more step that we need to do to make sure that everything is properly implement. So in this particular case, we should want to go back into our power. Shelagh varmint. So here's a partial environment back up, and we actually want to make sure we register that D. N s information so that we get the all the completed steps
finalized. So this particular case, we do our stated i p config.
So there's our beekeeping and always face flash states this case register D N s
that we're gonna hit. Enter,
This is it's done right away.
This is his registration of the research records are all that is in this computer has been initialized.
If there's ares would be reported within 15 minutes. So we go back to our D. N s console
in our Deanna's console to reverse lookup zones.
there's our reverse club's owned were still here right?
we'll be updated ultimately with the correct information. So we're gonna have once we got 1 72 16 here it says
and appoint a record for
at some point when the somewhere 10 to 15 minutes. Well, should get our
was there. Did you have 16 0 that Ted? Because we have to look at what the i p address of our servers. So if you take a look at our
server itself and we do that same I p config
you take a look at that, it we'll see the
Ivy Anderson server,
for example. We have a 0.21. So at that point, that 21 would be information. We also wanna have showing up in there
naked says our reverse lookup. Don't. And like I said, this could take a
of time to a little bit longer. Order of time.
Out to the four. Look observes four. Look observes it. Reversible stones are essentially done exactly the same way. There's
only the only difference between four. Look up zone. A reversal of zone is which order you're trying to get the information it
If you're doing a reverse, you want to start with I p address and go to your name. And if you're doing forward, you're obviously doing the reverse. So in this particular case for themselves, which is the most common type that are used
He added his own there and click on next stick with the primary zone.
Now, can I do a secondary zone?
I could certainly do a secondary zone. If I wanted, I would just need to be able to have connectivity to a another one. Um, actually, because I've seen the primaries Oh, process. Let's go ahead and
do a secondary zone.
So their secondary zone in this case where you got next
and we're gonna have his own name. So this in this case, we want to tell it
what zone we're gonna have a secondary copy.
So this case we're gonna
dot com that zone we want to have a copy of it is good to be a
copy of his own. It's not gonna be an actual zone and go ahead and click on next. It says Now give me the address of the D. N s server for that zone. Well, in this particular case, 1 72.16 dot zero That 10 for example, that's would be the master server. That's authoritative for the
well, one of the master servers authoritative for that Deanna zone.
So you go and hit, enter,
and it's gonna attempt to resolve it, Mrs C. A. Validated it. And that's that right. Validated
then attempted to resolve. Now validate is one thing attempted resolved. There you go. There's our other piece of information. So it's there, so we don't have a
fully executed secondary zones. We click on next
and then click on finish here,
copy of the A datum zone.
Locally on this computer,
there's a zone not loaded by D. N a service. If you take a close look at that, the reason that zones not loaded is because
have that set up transferring.
So even though we created a
zone secondaries Ellen,
we actually haven't transferred the zone data to this computer, which is done separately. We actually have to do that from a separate environment. So that zone data is done separately. We can also, in our environment here, we can actually take and do the same thing we just did from Windows Power Show. We do this earlier with our
conditional forward, and now we're actually going to go ahead and do this with a national
So in this particular case, we're going to actually
on the same environment or get teased.
Get off our shell, which already in here we're gonna
server right. And then we're gonna have Primary Zone is what we're gonna do.
So has added an observer primary zone and that we have to put in
what we're gonna add the name of it. So give our name argument that we're gonna actually call it
in this particular case we call it
So there we go would grow bank.
So we have a name of it dot com, Of course.
Then we have to give the rest the argument. Are we going to
how we're gonna handle dynamic updates so that we put in
So we have dynamic update and then obviously what type of a dynamic update is going to be
then we also want to decide how we're gonna replicate so
extra space there. Sorry
So have replication in an obviously replication scope is what we want. Matches replication were actual. Want the scope.
So where we're gonna replicate that information to this particular Gatien, we want to replicate it to the whole domain. So in that particular case, that's what you want to do. You want to replicate it to the entire to May.
what again? We probably a typo. So says Addie and a surprise f educate zone would grow bank on server
in this particular case,
we tried to add a a d integrated zone. I remember
80 integrated zone with replication of dynamic update on a non domain controller.
So this clearly is what our air is going to be. So if we try to add on the wrong machine that we get an air tells us we can't do it now if we go ahead and get over to our actual domain controller here. So let's go ahead and flip over tired, too many controller
and get tardiness. We don't even need to get a d in this council there yet. We just go to our power shell
is going to make her partial here a little bit different. We have blue power cell on hard to be in control, which is the standard blue format. You can make this any color you want,
so there's a blue flower shell, and we're going to do that same set of commands in there. So we got to go back here and type in the same set of commands. Obviously, we can't use our up error to make our lives easier, but we
timing and again ad d. N s
So that's what we're adding, Dina. Super primaries, Ellen.
Then we're gonna take the name of it,
and we're gonna tape in would grow bank
So we got would grow bank dot com.
this day, we're actually going to go ahead and
make it a dynamic update. So
dynamic update Right.
Secure. So what type of dynamic updated with what
that didn't get typed it properly,
kind ahead of myself.
And then we got a d r
backspace. So replication and
ad replication scripts going for the hole to make
And this time we're actually running the same command on
a environment that is
actor directory. So in this particular case
and actor director viral, we can now assure you to our d. N s council here
And if we look at our
well, this is a would grow bank for the Cubs own there.
That's now how we get it
into the environment that we needed to be it.
Now, obviously, we could actually look at the properties of this of what we could take a right click on it.
Ah, so are four look of zones. We actually have our bank here, and we can actually look at our properties of it
by right clicking on it. And they give us information like
type of updates. There No said secure a jinx. We could send aging of scavenging for this bullet specifically, and you could certainly
scavenge stale resource records if you wanted on that one.
Who the Esso is. If I ever need to change at this where I need to change it for the name servers. That's also I can add, additional name servers, zone transfers if I want to allow his own transfers. That I need to go ahead allows own transfers that we're gonna transfer it
and then security, obviously and wins if I need to do wins.
That's how we go ahead and get our survivors set up for
different temp zones. So there we go. That's how we get our environment set up.