Windows Server – How to configure a Conditional Forwarder in DNS

Home > Blogs > Windows Server > Windows Server – How to configure a Conditional Forwarder in DNS

Windows Server – How to configure a Conditional Forwarder in DNS

Like This Blog 6 Rick Trader
Added by April 16, 2013

Conditional Forwarders are a DNS feature introduced in Windows Server 2003. A Conditional Forwarder allows an organization to resolve names to a private namespace or speed up name resolution to a public namespace.  When a DNS server receives a client query request for a host address that is not part of its authoritative namespace, it starts a resolution process beginning with a root name server and continues the process until the name is resolved. When a Conditional Forwarder is configured the local DNS server will forward the request to a DNS authoritative for the domain namespace of the query. In this blog we will look at how to configure a Conditional Forwarder in DNS.

Scenario.

Two organizations, USSHQ and Dulce Base need to be able to share resources. A trust relationship between the two organizations Active Directory Domain Services is desired, but neither organization name space can be resolved through public name resolution. In order to configure the trust relationship name resolution need to be configured. One option for name resolution is to use Conditional Forwarders. DNS in each domain will be configured to forward request for the other organization name space to a DNS server that is authoritative. All other names needing resolved will use the default name resolution method.

If a computer from Dulce Base attempts to contact a computer in USSHQ it is unable to resolve the name. See figure below, the same result would occur going the other direction.

Configuring a Conditional Forwarder (Same steps will be accomplished in both DNS servers)

  1. Launch the DNS Console.

 

  1. Secondary Click on Conditional Forwarders, click New Conditional Forwarder.

 

  1. Enter the DNS Name of the desired domain to be resolved.

 

  1. Click on Click here to add an IP Address or DNS Name, enter the IP Address of the remote DNS Server, press Enter. Click OK.

 

  1. The DNS Forwarder has been created.

 

  1. Name resolution will now succeed from DulceBase.Local to USSHQ.Local. Once the DNS administrator completes the configuration on the USSHQ.Local DNS server name resolution will succeed from USSHQ.Local to DulceBase.local.

 

As you can see configuring a Conditional Forwarder is a simple fix to resolving names in a private network when public name resolution fails.

Until next time, RIDE SAFE!

Rick Trader
Windows Server Instructor – Interface Technical Training
Phoenix, AZ

Videos You May Like

Windows 10 Managing, Deploying and Configuring – December 2, 2015

0 448 1

In this recorded Windows 10 training webinar from December 2, 2015, Windows Server instructor Rick Trader presents the deployment and management of Windows 10 Enterprise and the new Provisioning capability in Windows 10. Learn how to manage Windows 10 deployments using System Center Configuration Manager, Mobile Device Management and Intune. Also included in his presentation … Continue reading Windows 10 Managing, Deploying and Configuring – December 2, 2015

How to Reset a Windows Client Secure Channel Password

0 2279 3

See our class schedule for complete Course Schedule Training. Instructor: Rick Trader How to Reset a Windows Client Secure Channel Password I’m sure you’ve ran into a situation where a user is attempting to log into a machine but they’re getting prompted that there’s no secure password or a secure channel for the client computer … Continue reading How to Reset a Windows Client Secure Channel Password

How to clone a Windows Server 2012 or 2012 R2 Domain Controller

3 1604 3

One of the coolest new features in Window Server 2012 and Windows Server 2012 R2 is the ability to clone a Domain Controller. In the past, if we had virtualized Domain Controllers and we actually took a snapshot of it and then rolled back to that snapshot, it would break the logon service on that … Continue reading How to clone a Windows Server 2012 or 2012 R2 Domain Controller

Write a Comment

See what people are saying...

  1. Pingback: Skype4B Server Multi-Forest Yapılandırma - İletişime Güç İşinizde Yarar

Share your thoughts...

Please fill out the comment form below to post a reply.